Privacy Policy

Last updated: September 2, 2026

Plummy asks for photographs of your clothes, your face and your body. That is more personal than most apps ask for, so this says plainly what happens to all of it.

The short version

  • Your photographs are private. They sit in storage no other account can read, and they are never public and never for sale.
  • They are sent to OpenAI so a model can read them and answer you. OpenAI does not use content sent through its API to train its models.
  • Location is optional, and what leaves us is rounded to about a kilometer.
  • We set no advertising or tracking cookies, which is why you have never seen a cookie banner here.
  • Deleting your account deletes your photographs and everything Plummy worked out about you.

Who is responsible for your data

Wearwell LLC, a Washington limited liability company doing business as Plummy, at 3020 Issaquah Pine Lake Rd SE #1008, Sammamish, WA 98075, is the controller of the personal data described here. Write to privacy@askplummy.com about anything in this policy, including a request to exercise your rights.

What you give us

  • Your email address and a password, held by our authentication provider. We never see the password itself.
  • Photographs of your garments, and photographs of you — a portrait and a full-length shot — if you choose to add them.
  • What you tell us about yourself: a display name, your height, your occupation, the brands and budgets you like, what you like and dislike wearing, and the year you were born.
  • Your home location, if you set one, and your location during a session if you allow it.
  • Everything you say to your stylist.

What Plummy works out on its own

Most of what Plummy knows about you is inferred rather than given. From your photographs and your conversations it builds and stores a read of your coloring, a read of your fit and body shape, preferences it thinks you have, the outfits it has put together, the verdicts it has given on individual garments, and a record of what you have said you wore.

You can see the preferences it has inferred, and delete any of them, on the profile screen.

What we collect automatically

  • Product events — that a screen was opened, a photo was added, a verdict was asked for. These are attached to your account and are used to work out which parts of Plummy are worth building.
  • Error reports, which include the browser and device that hit the error and can include the address of the page you were on.
  • Ordinary server logs kept by our host, including IP addresses, for security and diagnosis.

We do not build advertising profiles, and there is no third-party analytics or advertising code in Plummy.

Why we use it, and on what legal basis

For people in the UK and the EU, the UK GDPR and the GDPR require us to name a lawful basis for each purpose:

  • To run your account and give you the service you asked for — because it is necessary to perform our contract with you.
  • To read your photographs and generate advice, outfits and renders — the same basis: it is the service.
  • To keep Plummy secure, prevent abuse and fix what is broken — our legitimate interest in a working, safe product.
  • To understand which features are used — our legitimate interest in building the right thing, balanced against how little the events reveal.
  • To use your location — your consent, which you give by turning it on and withdraw by turning it off.
  • To email you about the service — performance of the contract for the messages you need, and consent for anything else.

Your photographs, specifically

Photographs are the most personal thing Plummy holds, so they get their own rules.

  • They are stored in private buckets. There is no public URL for any of them. When a screen needs to show you one, the server mints a link that expires.
  • Row-level security in the database means one account cannot read another account's photographs, even if a bug tried to.
  • They are sent to OpenAI to be read, and to be edited when you ask for a render. They are not sent anywhere else.
  • They are never used to advertise, never sold, and never shown to another user.

A photograph of your face is personal data, and where you are in the UK or the EU some readings of the law treat a facial image processed to build a likeness as a special category of data. We ask for one only because you chose to add it, we use it only to make your avatar and to read your coloring, and you can delete it at any time.

Location

Location is off until you turn it on, and Plummy works without it.

We keep the coordinates of the home location you set, and the coordinates of where you were during a session if you allowed that, so advice can account for the weather and for you being somewhere else.

What leaves us is rounded to two decimal places — roughly a kilometer — before it goes to the weather and place-name services below. Neither of them is told who you are.

Who else touches your data

We use a small number of providers to run Plummy. Each one is bound to use your data only to provide its service to us.

ProviderWhat it doesWhere
OpenAIReads your photographs and messages and generates the advice, the outfits and the renders.United States
SupabaseHolds the database, your account and the private storage your photographs sit in.United States
VercelHosts and serves the site and the app.United States
SentryReceives error reports when something breaks, so we can fix it.United States
Open-MeteoReturns the weather for a rounded location, so advice can account for it.European Union
BigDataCloudTurns a rounded location into a place name, so a screen can show where it thinks you are.United States

AI providers, and training

Your photographs and messages are sent to OpenAI's API so a model can read them and answer. OpenAI states that content submitted through its API is not used to train its models, and that it retains API content for a limited period for abuse monitoring before deleting it.

We do not train any model on your data ourselves, and we do not license it to anyone who does.

Where your data goes

Plummy is run from the United States, and most of the providers above are US companies. If you are in the UK or the EU, that means your data is transferred outside your country. We rely on the standard contractual clauses, and the UK addendum where it applies, to make those transfers lawful, and we do not use a provider that will not sign them.

How long we keep it

  • Your account, photographs and everything derived from them: until you delete them, or delete your account.
  • Error reports: about 90 days.
  • Product events: kept while your account exists, and removed with it.
  • Backups: deleted content can persist in an encrypted backup for a short period before the backup itself expires.

Deleting everything

Your profile has a delete screen. It asks you to type your email address, and then it removes your account, your garments, your photographs from both storage buckets, your conversations, your outfits, your verdicts and everything Plummy inferred about you. It is immediate and it cannot be undone.

If you would rather we did it, write to privacy@askplummy.com from the address on the account.

Your rights

If you are in the UK or the EU you have the right to see the data we hold about you, to correct it, to delete it, to get a copy in a portable form, to object to or restrict what we do with it, and to withdraw consent for anything you consented to. Using any of them costs you nothing and we answer within a month.

If you are in California or another US state with a privacy law, you have comparable rights to know, delete, correct, and to opt out of the sale or sharing of your personal information. We do not sell or share personal information, and we do not process it for cross-context behavioral advertising, so there is nothing to opt out of. We will not treat you differently for asking.

Ask by writing to privacy@askplummy.com. If we get it wrong, people in the UK can complain to the Information Commissioner's Office, and people in the EU to their national supervisory authority.

Cookies and what is stored in your browser

Plummy keeps your sign-in session in your browser's local storage so you are not signed out between visits, and stores a few things you have dismissed or chosen. That is functional, it is not shared with anyone, and it is not used to follow you around the internet.

There are no advertising cookies, no analytics cookies and no third-party trackers on either the site or the app.

Children

Plummy is for people 18 and over. We do not knowingly collect data from anyone younger. If you believe a child has an account, write to privacy@askplummy.com and we will delete it.

Security

Data is encrypted in transit and at rest. Photograph storage is private and access is enforced per account in the database itself rather than in application code. Provider keys stay on the server and are never in the app you download.

No system is perfect. If we discover a breach that puts you at risk, we will tell you and the relevant regulator as quickly as the law requires.

Changes to this policy

New versions are posted here with a new date. If a change materially affects how we use your data we will email you before it takes effect.

Contact

privacy@askplummy.com reaches us for anything in this policy, including a request to exercise your rights.