← Back to app

Privacy Policy

Last updated: April 2, 2026

1. Introduction

Saphierra ("we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, store, and share your personal information when you use our AI-powered fashion sourcing platform ("the Platform"). By using the Platform, you consent to the practices described in this policy.

2. Information We Collect

Information you provide directly

Data typePurpose
Name, email, passwordAccount creation and authentication
Brand name, business typeProfile setup and matching
Design files, sketches, tech packsAI matching and manufacturer communication
Project details (fabric, quantity, budget, deadline)Manufacturer matching and quote comparison
Messages between usersFacilitating communication
Payment informationSubscription billing (processed by Stripe)
Manufacturer details (location, MOQ, certifications, pricing)Profile creation and AI matching

Information collected automatically

Data typePurpose
Device information and browser typePlatform optimization
Usage data (pages visited, features used)Service improvement
IP addressSecurity and fraud prevention
Cookies and local storageSession management and preferences

3. How We Use Your Information

We use your information to: provide and maintain the Platform; match Designers with Manufacturers using AI algorithms; process subscription payments; send service-related communications; improve and personalize your experience; ensure platform security and prevent fraud; comply with legal obligations; and provide customer support.

4. AI Processing

We use artificial intelligence services, including OpenAI's API, to power features such as manufacturer matching, design generation, tech pack creation, and cost estimation. When you use these features, relevant project data (such as fabric type, design specifications, and production requirements) is processed by these AI services. We send only the minimum data necessary for each AI operation. AI-generated outputs are stored in your account. Design images and creative content are processed for feature functionality only and are not used to train AI models.

5. How We Share Your Information

We do not sell your personal information. We share information only in the following circumstances:

With other users: When you match with a Manufacturer, they can see your project details, design specifications, and messages you send them. Similarly, Designers can see Manufacturer profiles, proposals, and sample photos. This sharing is essential to the Platform's core function.

With service providers: We use third-party services to operate the Platform, including Supabase (database and authentication), Netlify (hosting), Stripe (payment processing), and OpenAI (AI features). These providers access your data only as necessary to perform their services and are bound by their own privacy policies.

For legal reasons: We may disclose information if required by law, legal process, or government request, or to protect our rights, safety, or property.

6. Payment Data

All payment processing is handled by Stripe, Inc. We do not store your full credit card number, CVC, or other sensitive payment details on our servers. Stripe's privacy policy and PCI-DSS compliance govern the handling of your payment information. We store only your subscription status and Stripe customer identifier.

7. Data Storage and Security

Your data is stored on Supabase's cloud infrastructure with encryption at rest and in transit. We implement industry-standard security measures including: encrypted connections (HTTPS/TLS); row-level security policies on all database tables; secure password hashing through Supabase Auth; and access controls limiting data visibility to authorized users. While we take reasonable precautions, no method of electronic storage is 100% secure, and we cannot guarantee absolute security.

8. Data Retention

We retain your data for as long as your account is active or as needed to provide services. If you delete your account, we will delete or anonymize your personal data within 30 days, except where retention is required by law or for legitimate business purposes (such as resolving disputes). Design files and project data will be permanently deleted upon account deletion. Messages between users may be retained in anonymized form.

9. Your Rights

Depending on your location, you may have the following rights regarding your personal data:

Access: Request a copy of the personal data we hold about you.

Correction: Request correction of inaccurate or incomplete data.

Deletion: Request deletion of your personal data, subject to legal obligations.

Portability: Request your data in a machine-readable format.

Objection: Object to certain processing of your data.

Withdrawal of consent: Withdraw consent at any time where processing is based on consent.

To exercise these rights, contact us at privacy@saphierra.com. We will respond within 30 days.

10. Cookies

We use essential cookies and local storage for session management and authentication. We do not use advertising cookies or third-party tracking cookies. We do not sell data to advertisers or use your information for targeted advertising.

11. Children's Privacy

The Platform is not intended for individuals under the age of 18. We do not knowingly collect personal information from children. If we become aware that we have collected data from a child, we will delete it promptly.

12. International Data Transfers

Your data may be processed in countries other than your own, including the United States, where our service providers operate. By using the Platform, you consent to the transfer of your data to these countries. We ensure that appropriate safeguards are in place for international data transfers.

13. California Residents (CCPA)

If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA): the right to know what personal information we collect and how it is used; the right to delete your personal information; the right to opt out of the sale of personal information (we do not sell personal information); and the right to non-discrimination for exercising your privacy rights.

14. European Residents (GDPR)

If you are a resident of the European Economic Area (EEA), we process your data based on the following legal grounds: contractual necessity (to provide our services); legitimate interest (to improve and secure the Platform); consent (for optional features and communications); and legal obligation (to comply with applicable laws). You have additional rights under GDPR as described in Section 9.

15. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by posting the updated policy on the Platform and updating the "Last updated" date. Your continued use of the Platform after changes constitutes acceptance of the updated policy.

16. Contact Us

For questions or concerns about this Privacy Policy or our data practices, contact us at:

Email: privacy@saphierra.com
Website: saphierra.com