GDPR Compliance
Introduction
At Hairstyle.Studio, we are committed to protecting your personal data and respecting your privacy. This GDPR Compliance Statement explains how we comply with the General Data Protection Regulation (GDPR) when processing your personal data.
Data Controller
Hairstyle.Studio is the data controller responsible for your personal data. If you have any questions about this GDPR Compliance Statement, including any requests to exercise your legal rights, please contact us at privacy@hairstyle.studio.
Your Rights Under GDPR
Under the GDPR, you have the following rights:
- Right to Access - You have the right to request copies of your personal data.
- Right to Rectification - You have the right to request that we correct any information you believe is inaccurate or complete information you believe is incomplete.
- Right to Erasure - You have the right to request that we erase your personal data, under certain conditions.
- Right to Restrict Processing - You have the right to request that we restrict the processing of your personal data, under certain conditions.
- Right to Object to Processing - You have the right to object to our processing of your personal data, under certain conditions.
- Right to Data Portability - You have the right to request that we transfer the data we have collected to another organization, or directly to you, under certain conditions.
How We Process Your Data
We process your personal data for the following purposes:
- To provide our hairstyle visualization services
- To create and manage your account
- To process payments and subscriptions
- To improve our services and develop new features
- To communicate with you about your account and our services
- To comply with legal obligations
Legal Basis for Processing
We process your personal data on the following legal grounds:
- Contract - Processing is necessary for the performance of a contract with you (our Terms of Service)
- Consent - You have given consent for specific processing activities
- Legitimate Interests - Processing is necessary for our legitimate interests, such as improving our services
- Legal Obligation - Processing is necessary to comply with legal obligations
Data Retention
We retain your personal data only for as long as necessary to fulfill the purposes for which we collected it, including for the purposes of satisfying any legal, accounting, or reporting requirements.
For free tier users, we retain account information for as long as the account is active. For premium subscribers, we retain account and payment information for the duration of the subscription and for a period afterward as required by law.
Your uploaded photos are processed to generate hairstyle previews and are retained according to your subscription tier:
- Free tier: Photos are automatically deleted after your session
- Premium tiers: Photos are retained until you delete them or close your account
International Transfers
We may transfer your personal data to countries outside the European Economic Area (EEA). When we do, we ensure a similar degree of protection is afforded to your data by ensuring at least one of the following safeguards is implemented:
- Transferring to countries that have been deemed to provide an adequate level of protection by the European Commission
- Using specific contracts approved by the European Commission that give personal data the same protection it has in Europe
- Transferring data to US-based providers that are part of approved frameworks ensuring adequate protection
Data Security
We have implemented appropriate security measures to prevent your personal data from being accidentally lost, used, or accessed in an unauthorized way, altered, or disclosed. We limit access to your personal data to employees, agents, contractors, and other third parties who have a business need to know.
Data Breach Procedures
We have procedures in place to deal with any suspected personal data breach and will notify you and any applicable regulator of a breach where we are legally required to do so.
Changes to This GDPR Compliance Statement
We may update this GDPR Compliance Statement from time to time. We will notify you of any changes by posting the new statement on this page and updating the "Last Updated" date.
Contact Us
If you have any questions about this GDPR Compliance Statement or our data practices, please contact us at:
Email: privacy@hairstyle.studio
Address: [Your Company Address]
Data Protection Officer: [DPO Name]
Last Updated: May 15, 2025