← Legal

Chrome Extension Privacy Policy

How Outfello for Google Chrome handles data when you find and save clothing to your wardrobe. This policy covers the extension; our main Privacy Policy covers your Outfello account and website use.

Effective 6 October 2026

1. Who is responsible

The controller of your personal data is BNSM s. r. o., IČO 57731152, registered in the Slovak Republic. Our registered seat is given on the imprint page.

Contact for all data protection matters: [email protected].

2. What happens on your device

When connected and enabled, the hover feature checks images and nearby clothing labels, captions and links on the page. Clothing detection runs on your device using a model included in the extension. Hovering does not send page content or images to Outfello or an external AI service.

Detection may download an image from its original website or image host. When you save an image, Chrome may use that website's cookies to retrieve it. Those cookies are not sent to Outfello.

If a selected image cannot be downloaded, the extension may capture the visible tab and crop the selected image on your device. Only the cropped area is uploaded, not the full screenshot. Content visible inside that area may be included.

Website access and scripting enable the save button and image retrieval. The contextMenus permission adds the save command, storage keeps connection data and preferences, and offscreen runs the bundled detection model in a hidden extension page.

3. Data handled by the extension

  • Connection and account data: an extension access token, connection ID and email address; your plan, remaining imports, wardrobe capacity, category list and recent imports are retrieved to show account status and save destinations.
  • Saved content: the image you choose, resized or cropped for upload, a generated filename, import identifiers, and any favorite or category choice. Outfello processes the image to detect garments and create wardrobe images and attributes.
  • Import diagnostics: your account ID, upload and garment IDs, source website and image-host domains, save entry point, download or screenshot method, extension version, language, operating-system platform, image dimensions and byte size, timings, plan and allowance context, garment attributes, selections, retries and structured outcome or failure codes. Source domains in these events exclude page paths and URL query parameters.
  • Technical data: our service and infrastructure providers may process IP addresses, user-agent information and request logs to secure the service and diagnose problems.

The extension does not request your password, payment card details or Chrome browsing history. It does not record keystrokes or upload complete web pages. Saving an image can include personal information visible in that image.

4. Why we use this data

We use connection and image data to provide the clothing import you request, apply your save choices and show import progress. We use import diagnostics to measure and improve the reliability of this feature, investigate failures and prevent abuse.

Providing account connections and imports is necessary to perform our contract with you. Security and reliability diagnostics rely on our legitimate interests in operating a dependable service. See our main Privacy Policy for further legal bases and safeguards.

5. Service providers and sharing

Selected images are processed by our hosting and storage providers, including Cloudflare, and the configured AI provider, OpenAI or Google Gemini, to analyze clothing and generate wardrobe images. The local hover detector does not send images to these AI providers.

PostHog processes account-linked import events and technical diagnostics for feature reliability. Extension product events do not contain image bytes, full page or image URLs, filenames, garment or category names, or authentication tokens.

Our sub-processor list explains provider roles, locations and international-transfer safeguards. Data may also be disclosed when required by law or necessary to investigate security threats or abuse.

6. Browser storage and security

Your access token, connection ID and cached email address are stored in Chrome's local extension storage. Token access is restricted to the extension's trusted pages and background process; content scripts on other websites cannot read it. A temporary connected flag is kept in session storage.

The hover-button preference is stored using Chrome Sync storage and may be synchronized by Google according to your browser settings. Your extension access token is not stored in Sync.

The production extension sends uploads and account requests to Outfello over HTTPS. Our backend stores a hash of the extension token rather than the token itself.

7. How long data is kept

Local connection data is removed when you sign out of the extension. Connections can be revoked from account settings and expire after 180 days without use. Chrome manages synced preferences according to its sync settings. Saved garments and images are kept while they remain in your account; source images may be retained for imports and saved-item previews.

Account, billing, log and analytics retention periods are described in our main Privacy Policy. Removing or disconnecting the extension does not delete clothing already saved to Outfello.

8. Your choices and rights

You can turn off the hover feature in the extension popup, restrict site access in Chrome, sign out, revoke a connection in Outfello's extension settings, or remove the extension.

You can delete saved items, export account data or delete your account from Outfello. Account deletion also removes its extension connections.

Your access, correction, deletion, portability, restriction and objection rights, and how to complain to a supervisory authority, are explained in our main Privacy Policy. To exercise your rights or ask a privacy question, contact [email protected].

9. Limited use of extension data

Our use of information obtained through Chrome APIs follows the Chrome Web Store User Data Policy, including its Limited Use requirements.

Extension data is used for saving clothing and related security and reliability operations. We do not sell it or use it for advertising, creditworthiness or lending decisions.