Sartor ("the App", "we", "our") is developed and operated by Eren İnan Yılmaz as an independent developer. This Privacy Policy explains what personal data we collect, how we use it, and what rights you have over it.
By creating an account or using Sartor, you acknowledge that you have read and understood this Policy. If you disagree with any part, please discontinue use of the App.
We use the data we collect to:
We do not use your data to serve third-party advertising, build advertising profiles, or sell your information to any third party.
To deliver our service, we share data with the following trusted third parties. Each is bound by contractual obligations to protect your data:
| Service | Purpose | Data Shared |
|---|---|---|
| Anthropic (Claude API) | AI outfit recommendations, photo analysis, and assistant responses | Style preferences, clothing descriptions, photos (photos not retained by Anthropic after processing per their API terms) |
| Railway | Backend infrastructure and database hosting | All account and usage data stored in our database |
| Resend | Transactional email delivery | Email address, email content (verification, password reset) |
| Google (Sign-In) | Optional authentication | OAuth token exchange; name and email if you choose Google sign-in |
| Apple (Sign-In) | Optional authentication | OAuth token exchange; name and email if you choose Apple sign-in |
| Apple App Store / Google Play | Subscription payment processing | Subscription status only (we do not receive payment card details) |
We do not sell, rent, or trade your personal data with any third party for their own marketing purposes.
Your data is stored on servers operated by Railway, located in the United States. We implement the following technical safeguards:
While we take reasonable and industry-standard measures to protect your data, no system can guarantee absolute security. In the event of a data breach that affects your rights, we will notify you as required by applicable law.
| Data Type | Retention Period |
|---|---|
| Account and profile data | Until you delete your account |
| Wardrobe and style data | Until you delete your account |
| Photos (photo analysis) | Not retained — deleted immediately after processing |
| AI assistant chat history | Until you delete your account or clear chat history |
| Usage and analytics logs | Up to 12 months, then anonymized or deleted |
| Email delivery logs | Up to 6 months |
| Error and crash logs | Up to 3 months |
When you delete your account, we will delete or anonymize your personal data within 30 days, except where we are required by law to retain certain records longer.
Sartor is intended for users 13 years of age and older. We do not knowingly collect personal information from children under 13. If we learn that we have inadvertently collected data from a child under 13, we will delete it promptly. If you believe we may have collected data from a child under 13, please contact us immediately.
For users in the European Union: certain EU member states set the age of digital consent at 16. If you are between 13 and 15 years old and reside in such a country, please ensure a parent or legal guardian has reviewed this Privacy Policy and consented on your behalf before you use the App.
If you are located in the European Economic Area, you have the following additional rights under the General Data Protection Regulation:
Legal bases for processing: We process your data on the basis of (i) contract performance — to provide the service you signed up for; (ii) legitimate interests — for analytics and security, balanced against your rights; and (iii) consent — for any optional communications or features.
Turkish users have the following rights under the Kişisel Verilerin Korunması Kanunu (Law No. 6698):
California residents have the right to know what personal information is collected, request deletion, and opt out of the sale of personal information. We do not sell personal information. To exercise your rights, contact us at the address below.
Your data may be transferred to and stored in countries outside your own, including the United States, where our infrastructure providers (Railway, Anthropic) operate. When transferring data from the EU/EEA, we rely on standard contractual clauses and appropriate safeguards as permitted under GDPR. By using Sartor, you consent to such transfers.
We may update this Privacy Policy from time to time. When we make material changes, we will notify you by displaying a prominent notice within the App and/or by sending an email to your registered address at least 14 days before the changes take effect. The "Last Updated" date at the top of this page always reflects the most recent revision. Continued use of the App after changes take effect constitutes your acceptance of the revised Policy.
If you have questions, concerns, or wish to exercise any of your rights under this Privacy Policy, please contact:
Eren İnan Yılmaz
Email: ereninanyilmazz@gmail.com
Website: sartorapp.net
We will respond to all privacy-related requests within 30 days.