Poron Privacy Notice
We believe customer photos and biometric likenesses demand absolute protection. This notice explains how Poron collects, processes, encrypts, and deletes wearer photos, garment references, and workspace data.
Zero AI Training
Inference is executed exclusively via paid enterprise Google Gemini APIs. Customer photos are never used to train public AI models.
Tenant Logical Isolation
All database queries enforce Row Level Security (RLS). Storage objects are stored in private buckets with signed time-limited URLs.
Strict Retention Lifecycles
Wearer photos and try-on results expire automatically (1–90 days, default 7 days). Purges cascade across all derivatives.
1. Information We Collect
Poron collects only the data strictly necessary to provide high-fidelity virtual apparel visualization:
- Wearer Imagery: Photos of models or individuals uploaded by authorized workspace members. Uploading wearer photos requires explicit, documented consent in compliance with our Wearer Consent Policy.
- Garment References: Product photographs, flat-lays, and apparel catalog images.
- Generated Outputs: High-resolution virtual fitting results rendered by the AI synthesis engine.
- Workspace & Account Metadata: User email, display name, workspace role (Owner, Admin, Editor, Viewer), credit wallet balance, and audit logs.
- Sanitized Telemetry: System performance metrics and error rates. All logs are filtered through automated redaction pipelines that strip image bytes, API keys, and authorization tokens prior to storage.
2. Configurable Data Retention
Every workspace owner configures their own data retention policy (from 1 to 90 days, defaulting to 7 days). Our automated retention worker applies expiration timestamps to all ready assets and purges expired files permanently:
| Data Category | Retention Period | Access Restrictions |
|---|---|---|
| Unfinished Uploads | 24 hours max | Uploader & Normalizer Worker only |
| Wearer Model Photos | Configured (1–90 days, default 7) | Workspace Editors, Admins & Owners |
| Generated Try-On Outputs | Configured (1–90 days, default 7) | Workspace Editors, Admins & Owners |
| Consent Records | Indefinite (audit trail) | Workspace Admins & Owners |
| Credit Ledger | Life of workspace | Workspace Owner & Billing Systems |
3. Deletion Guarantees & Tombstones
When you delete an asset or revoke consent for a wearer photo:
- Signed download URLs are immediately invalidated.
- All associated generation derivatives and cropped versions are soft-deleted and scheduled for storage object purge.
- A cryptographic deletion tombstone is recorded to ensure that any future disaster recovery database restore will never resurrect previously deleted customer photos.
4. Subprocessors
We partner with trusted infrastructure providers to deliver Poron. Review our complete Subprocessor Registry for full details on Google Cloud, Supabase, and Stripe.
5. Your Rights and Contact
Depending on your jurisdiction, you may have rights to access, rectify, export, or erase your personal information. To submit a data request or report a privacy concern, email our privacy team at privacy@poron.studio.