Kittyfit
Privacy Policy
Effective date: 8 October 2026
In short
- Undertone, wardrobe and outfit analysis happen on your device. Those photos are not uploaded or kept on any server.
- No account, no advertising, no tracking and no third-party analytics.
- The cloud assistant and virtual try-on are optional and only work after you explicitly allow them. For virtual try-on, your photo is kept by the AI service for at most 1 day.
- Kittyfit Pro is paid through Apple; a subscription service sees an anonymous ID and your App Store transactions, never your payment details.
- A random install identifier protects free usage limits from abuse; it is not linked to your name or Apple ID.
- You can delete your data on the device at any time: Settings → Delete all data.
Who we are
Kittyfit (the “app”) is developed and published by Ahmet Fatih Yavaşi, an independent developer based in Türkiye (“we”, “us”). We are the data controller for the limited personal data described in this policy, within the meaning of the Turkish Personal Data Protection Law No. 6698 (KVKK) and the EU/UK General Data Protection Regulation (GDPR).
Contact: hello@afatihyavasi.com
This policy applies to the Kittyfit iOS app, its widget and share extensions, and this website.
How Kittyfit works with your data
Kittyfit is built to work on your device. You do not create an account and we do not run a user database. Most features never send anything over the internet. A few features need the network; each one is described below with exactly what is sent, to whom and for how long.
| Feature | What leaves your device | Sent to | Kept |
|---|---|---|---|
| Undertone, seasonal palette, wardrobe, outfits, live color check, share extensions | Nothing | — | On your device until you delete it |
| Cloud assistant (optional, with your OK) | Your message, undertone, palette, weather, city, wardrobe summary; name, age, gender if you shared them | Our server → third-party AI services | Message content is not stored by our server |
| Virtual try-on (optional, with your OK) | Your photo and an image of the chosen clothes | Our server → third-party AI image services | Photo: at most 1 day |
| Usage limits and app integrity (cloud assistant, virtual try-on) | A random install identifier and an Apple App Attest proof | Our server; Apple | Usage counters on our server |
| Kittyfit Pro subscription | An anonymous app user ID and App Store transaction information | Apple; RevenueCat (subscription service) | As long as needed to manage your subscription |
| Weather-aware picks (optional) | Approximate location | Apple (WeatherKit and geocoding) | Under Apple’s policy |
Data stored only on your device
The following stays on your iPhone or iPad and is never sent to us:
- Your undertone result and the numbers behind it (quiz answers, color measurements, confidence), your palette and seasonal color result.
- Face, wrist and clothing photos you take for analysis. They are analyzed on the device using Apple’s Vision framework and color science, and are not stored; only the resulting numbers are kept.
- Your wardrobe: cut-out images of your pieces, their names, categories, colors and match scores; your outfits and outfit plans.
- Profile details you choose to enter (name, age, gender). You can also add local profiles for other people — please only do this with their permission.
- Preferences, reminders, your virtual try-on history, cached assistant answers and, if weather is on, your last approximate location (for background forecast updates).
- Assistant conversations: unless you turn on the cloud assistant, Kitty answers with Apple’s on-device language model or built-in rules, and nothing is sent anywhere.
Like other app data, this information may be included in your device backups (for example iCloud Backup) if you have turned them on. Those backups are handled by Apple under its own privacy policy; we cannot access them.
Cloud style assistant (optional)
Kitty, the style assistant, answers on your device by default. If you want smarter, more personal answers, you can turn on the cloud assistant. It only works after you tap Allow on its consent screen, and you can turn it off at any time in Settings → Cloud assistant.
What is sent with each question: your message and the recent messages of that conversation; your skin undertone and color palette; today’s weather and your city name (only if weather is on); your name, age and gender if you shared them in the app; and your wardrobe described only as category, sub-category, color and match level, with each piece referred to by a short code (P1, P2…).
What is never sent: photos, piece names you typed, and your exact location or coordinates.
Who receives it: the request goes over an encrypted connection to Kittyfit’s own server, which passes only the conversation text to one or more third-party AI services that write the answer (if one is unavailable, the next one is used). Our server does not log or store the content of your messages, and the AI services do not receive your install identifier. Each AI service processes the request under its own terms and privacy policy.
Usage limits: free use of the cloud assistant is limited. To apply these limits, requests carry the random install identifier and an App Attest proof (see below), and, for Kittyfit Pro, your anonymous subscription ID so our server can confirm Pro with RevenueCat.
Turning it off stops all sending immediately and deletes the cached cloud answers from your device. Kitty then answers on your device again.
Virtual try-on (optional)
Virtual try-on creates an AI-generated preview of an outfit on you. It runs in the cloud, so before your first try-on the app asks for your explicit OK; without it nothing is uploaded.
What is sent: the photo of yourself that you take or choose for the try-on, and one combined image of the clothing pieces you chose (it shows only clothes, not you), with a generic description of the piece types (for example “a top and trousers”). Your name, piece names, location and other profile details are not sent.
Who receives it: the images go over an encrypted connection to Kittyfit’s server, which forwards them to a third-party AI image service (currently Genlook; if it is unavailable, fal.ai) that generates the preview. The AI service receives a new random reference for each request — never your install identifier or any other ID that could link your photos together. Our server does not log or keep the images or the result.
How long: your photo is kept by the AI service for at most 1 day and then deleted. The combined clothing image, which contains no person, may be kept by the service for up to 7 days. The preview is shown on your device and kept in your try-on history there; it is saved to your Photos only if you choose to save it.
Usage limits: the number of free and Pro try-ons is counted on our server with your install identifier (and, for Pro, your anonymous subscription ID), as described below.
Please only use photos of yourself. We do not use your photo for facial recognition, to identify you, or for advertising. Generated previews are labelled as AI-generated and may differ from real life; depending on your region the image may carry a visible “AI” label and it may contain metadata stating that it was created with AI.
Weather and approximate location (optional)
If you turn on weather-aware outfit picks and allow location access, Kittyfit asks iOS only for your approximate location (the precise location option is not used, and coordinates are rounded). This approximate location is sent to Apple Weather (WeatherKit) to get the forecast, and to Apple’s geocoding service to find your city name. It is not sent anywhere else.
The last approximate location is stored only on your device so the forecast can refresh in the background. It is deleted when you turn weather off. If you also allow the cloud assistant, only your city name (never coordinates) is included in assistant requests.
Install identifier and app integrity
- Install identifier: a random identifier created on your device the first time you use the cloud assistant or virtual try-on. It is stored in your device’s secure keychain (not synced to iCloud), so it stays the same if you delete and reinstall the app; this prevents free usage limits from being reset by reinstalling. It is sent only to our own server, where it is used as the key for usage counters (for example how many free try-ons or assistant messages have been used). It is not linked to your name, email, Apple ID or advertising identifier, and it is never sent to the AI services.
- Apple App Attest: to stop abuse of our server, the app proves with Apple’s App Attest service that requests come from a genuine copy of Kittyfit. This creates a cryptographic key on your device; Apple and our server see only an attestation of the app, not personal data. Our server keeps the public key and a counter under your install identifier.
- Apple services: downloading and updating the app, in-app purchases, WeatherKit, geocoding and App Attest are provided by Apple under Apple’s Privacy Policy. Speech for voice questions and the default assistant model run on your device.
Kittyfit Pro and subscriptions
Kittyfit Pro is an optional auto-renewable subscription (monthly or yearly; a free trial or a first-year introductory price may be offered). All payments are handled by Apple through the App Store; we never see your payment details, name or email.
To check whether your subscription is active and to restore purchases, the app uses RevenueCat (RevenueCat, Inc., United States), a subscription management service. RevenueCat receives an anonymous app user ID created by the app, your App Store transaction and subscription status information, and basic technical details such as the app version, device platform and storefront country. We see this information in RevenueCat’s dashboard, including aggregated subscription statistics. Our server may also ask RevenueCat whether a given anonymous ID has Pro, to apply Pro usage limits. RevenueCat processes this data under its own privacy policy.
You can manage or cancel your subscription at any time in your Apple Account settings (Settings → your name → Subscriptions).
Analytics, advertising and tracking
Kittyfit contains no advertising and no third-party analytics or tracking SDKs. We do not use the advertising identifier (IDFA) and do not track you across apps or websites.
The app records a small set of anonymous product events (for example “onboarding step viewed” or “a photo step was skipped”). They contain no photos, no colors or undertone results and no names, and they are currently written only to your device’s local system log for troubleshooting — they are not sent to us or anyone else. If we ever start collecting usage statistics, we will update this policy and the App Store privacy labels first.
If you have chosen in iOS settings to share analytics with app developers, Apple may provide us with anonymous crash reports and usage statistics under its own policy.
Device permissions
Kittyfit asks for permissions only when you use a feature that needs them, and you can change them at any time in the iOS Settings app.
- Camera: face, wrist and clothing photos (analyzed on your device), live color check, and the photo for virtual try-on (sent only with your OK).
- Photos: you choose photos with Apple’s picker, so the app only sees the photos you select. “Add only” access is used to save a try-on preview or share card when you ask.
- Microphone: for asking Kitty by voice; speech is converted to text on your device and audio is not saved or sent.
- Location (approximate, while using the app): weather-aware picks only.
- Calendar (optional): read on your device only to guess the occasion of each day for outfit plans; event titles are not saved or sent.
- Notifications: reminders you turn on, such as outfit reminders or a reminder before a free trial ends. They are scheduled on your device; we do not send push notifications from a server.
Share extensions and widget
Kittyfit adds “Add to wardrobe” and “Search outfit in Kittyfit” to the iOS share menu, and a home screen widget. Images you share with these extensions are handed to the app through your device’s secure storage (not synced to iCloud), deleted as soon as the app receives them, and analyzed on your device. The extensions and the widget do not use the network.
Legal bases for processing
Most of Kittyfit’s processing happens only on your device and we have no access to it. Where data leaves your device, we rely on the following legal bases under KVKK (Art. 5) and GDPR (Art. 6):
- Your explicit consent for the cloud assistant and virtual try-on. You can withdraw it at any time in the app; this does not affect processing that already happened.
- Performance of a contract for Kittyfit Pro (checking and restoring your subscription), and providing the service you asked for for weather, which runs only when you turn it on.
- Legitimate interests in keeping the service secure, applying fair usage limits and preventing abuse (the install identifier, App Attest and usage counters).
International transfers
Our servers run on a global cloud hosting provider, and the third-party AI services and RevenueCat may process data in other countries, including the United States. This means data from the cloud assistant, virtual try-on and subscriptions may be transferred outside Türkiye or your country. Such transfers happen only for features you use, on the basis of your explicit consent, the performance of a contract and the other safeguards permitted under KVKK Art. 9 and GDPR Chapter V.
How long data is kept
- On your device: until you delete it in the app or delete the app.
- Cloud assistant: our server does not store message content.
- Virtual try-on: your photo at most 1 day at the AI service; the clothing-only image up to 7 days. Our server keeps no copies.
- Install identifier and usage counters: the identifier stays in your device’s keychain until the device is erased. Usage counters and App Attest records on our server are kept so that free usage limits keep working; they contain no personal details. Monthly Pro counters are deleted automatically after about 40 days, and a cached subscription check after 5 minutes.
- Subscription data: kept by Apple and RevenueCat as long as needed to manage your subscription and to meet legal obligations.
- Emails to support: kept as long as needed to answer you and then deleted within 12 months, unless the law requires longer.
Deleting your data
- Delete all data: in the app, go to Settings → Delete all data. This removes your undertone result, profiles, wardrobe, outfits, consents, assistant conversations and try-on history from the device. It does not reset the install identifier or your free usage limits.
- Turn off the cloud assistant in Settings: sending stops and the cached answers are deleted.
- Turn off weather: the stored approximate location is deleted.
- Delete the app: iOS removes the app’s data from the device; the install identifier in the keychain may remain until the device is erased.
- Subscription: cancel in your Apple Account settings. To ask RevenueCat to delete subscription records, contact us.
Because there is no account, we hold no profile about you. Usage counters are stored under a random identifier that we cannot link to you; if you want them deleted, write to us and we will help as far as we can identify them.
Your rights
Depending on where you live, you have rights under KVKK (Art. 11) and GDPR (Arts. 15–22), including the right to know whether your data is processed and to receive information about it, to access, correct or delete it, to restrict or object to processing, to data portability, to withdraw consent, and to compensation for unlawful processing.
To use these rights, email hello@afatihyavasi.com. We will answer within 30 days at the latest. Since we do not keep data linked to you, we may not be able to find information about you on our side; data on your device is always under your control. You also have the right to complain to a data protection authority — in Türkiye the Personal Data Protection Authority (KVKK), or the supervisory authority in your country.
Children
Kittyfit is not directed at children under 13, and we do not knowingly collect personal data from them. If you are under the age required for consent in your country, please use the cloud features and purchases only with a parent’s or guardian’s permission. If you believe a child has sent us personal data, contact us and we will delete it.
Security
All network requests use encrypted connections (HTTPS). The keys for the AI services are kept only on our servers and are never included in the app. Apple App Attest and usage limits protect the service from abuse. No method of transmission is perfectly secure, but we keep what leaves your device to the minimum needed.
Changes to this policy
We may update this policy when the app changes. The new version will be published on this page with a new effective date. If a change affects what leaves your device, we will tell you in the app and ask for consent again where required.
Contact
Ahmet Fatih Yavaşi — Kittyfit, Türkiye
Email: hello@afatihyavasi.com