Privacy Policy
Version 2026-08-28-v1 · effective 28 August 2026
This says what theLookFeed collects about you, why, who else sees it, where it goes, how long we keep it, and how to get it back or have it deleted. It is written to be read, not to be survived.
Who is collecting this
Rohit Mahaseth, sole proprietor, trading as theLookFeed. There is no company yet, so the person responsible for your data is named rather than an entity — and it is the same person you reach at the addresses below.
- Data protection contact
- support@thelookfeed.com
- Grievance Officer
- Rohit Mahaseth, Founder and Grievance Officer — grievance@thelookfeed.com
- Service address
- to be confirmed
What we collect
Field by field, rather than in categories:
- To create your account: your phone number or your Google email address, your display name, your public @handle and your date of birth.
- To build your fitting room: your height, your weight, your body type and your style preferences.
- Photographs: the selfie and full-body photo you upload, the avatar generated from them, and every look image generated of you.
- Garments: the images and details fetched from merchant links you paste, and the garments you add.
- What you do here: posts, comments, likes, saves, follows, and impression and dwell telemetry about what you looked at.
- Technical: your IP address, recorded on sign-in events, and your quota and upgrade-request records.
- Shop links: the fact that you tapped a buy link, and which garment and look it came from.
Two things worth saying plainly, because they are easy to miss: your selfie is also the picture shown next to your name in the app, and our team may look at uploaded photographs to keep the service safe.
Why we collect it
- Your phone number or email signs you in, and does nothing else.
- Your date of birth enforces the 18-and-over rule.
- Your height, weight and body type shape the avatar, so a garment renders at your proportions rather than a mannequin’s.
- Your photographs are what the avatar and the look images are built from. Nothing else uses them.
- What you do here orders your feed and counts towards your quota.
- IP addresses on sign-in events let us detect and stop abuse.
Who receives it
- Google Cloud — Firestore, Cloud Storage, Cloud Run and Firebase Authentication hold the data and run the service.
- Google Vertex AI — builds your avatar and generates every look image from your photographs.
- Affiliate networks — when you tap a buy link, the network that converts it (for example Cuelinks, Admitad or INRDeals) sees the click, so the merchant can attribute the visit.
We do not sell your data, and your photographs go nowhere beyond the processing described above.
Where it is stored, and where it is processed
Your photographs, avatar, generated images and account records are stored in Google Cloud's Mumbai region (asia-south1). Image generation itself runs on Google servers outside India — so the photograph leaves the country to be processed, and the result comes back to Mumbai to be stored. Both halves are true and we say both; “stored in Mumbai” on its own would be accurate and misleading.
How long we keep it
| Data | Kept for |
|---|---|
| Selfie, and a selfie waiting to be used | Until the avatar is generated and accepted, or 30 days — whichever comes first |
| Avatar, and the version before it | Life of the account |
| Generated look images | Life of the account, or until you delete the look |
| Garment images and link records | Life of the account, while they are linked to you |
| Impression and dwell telemetry | 90 days with your id on it, then aggregated without it |
| Sign-in events containing an IP address | 180 days |
| Registration record after you close the account | 180 days |
| Upgrade requests | Until the decision, then one year |
Withdrawing consent starts the deletion for what it covered. It does not wait for a scheduled job.
Your choices
- Ask what we hold. Write to us and we will tell you.
- Correct it. Name, handle and body details are editable in the app; for anything else, ask.
- Delete it. Ask, and we delete the account and the data above — except records we are required to keep for the periods in the table.
- Withdraw consent. As easy as giving it, and it stops the processing it covered.
- Stop your looks being shared outside the app. One switch in the app, and it takes down every public look page at once.
Security
Every request is authenticated and every read is re-checked against who you are now, transport is HTTPS only, image links are signed and short-lived, and administrative access is restricted and logged. No system is perfect; if something goes wrong we will tell you, and the authorities, within the time the law allows.
Children
theLookFeed is for adults. We collect a date of birth and refuse accounts under 18. If you believe a minor has an account here, write to us and we will remove it.
Changes
When this changes we publish the new version here with a new version number and effective date, and tell you in the app. The version you agreed to is recorded against your consent, so we can always show you the exact text you saw.
Complaints
If you are unhappy with how your data has been handled, the grievance page names the officer, the channel and the deadlines we hold ourselves to.