DressOS

Privacy Policy

Last updated

This Privacy Policy explains how Aniverse ("Aniverse", "we", "us") collects, uses and protects personal data when a business uses DressOS (dressos.app, the "Service") — the web and mobile management console for rental and dry-cleaning businesses — and when anyone visits the public pages of dressos.app. This policy is published in English; if it is translated, the English text prevails in case of conflict.

Who this policy covers

DressOS is a business management tool, and three kinds of personal data pass through it:

  • Account data — belonging to the business itself and the people it employs (owners, managers, staff) who sign in to use the Service. For this data, Aniverse is the data controller.
  • Customer data — belonging to a business's own clients (name, phone number, etc.), entered into DressOS by that business to run its bookings. For this data, the business is the data controller and Aniverse acts only as a data processor, on the business's instructions.
  • Visitor data — the little our public website handles about people who visit it before signing up: the aggregated analytics and the sign-up bot check described below. For this data, Aniverse is the data controller.

Information we collect

  • Account and business information: business name, tax ID (if provided), owner and staff name, email address, hashed password, role and branch assignment, login timestamps.
  • Business content: branches, inventory items and product photos, bookings, orders, and payment records a business creates while using the Service. A payment record here means the amount and status a business logs after collecting money itself — DressOS does not process card payments and never receives or stores card numbers.
  • Customer data entered by a business: a customer's name, phone number, email (optional), garment sizes and free-text notes, added by the business's own staff.
  • Technical data: IP address, device and browser information, and crash/error reports, collected automatically to keep the Service running and to diagnose bugs.
  • Website analytics: aggregated page-view and performance data about the public pages of dressos.app, collected only where a visitor allows it in the banner on the website. See Website analytics below.

Cookies

The DressOS web app uses a single essential cookie to keep you signed in. It carries no advertising or analytics identifiers, is not shared with third parties, and cannot be disabled without also disabling sign-in. We do not use advertising or analytics cookies.

The web app also keeps a few preferences in your browser's local storage: your colour theme, your language, your display size, and the analytics choice you made in the banner on our public website. These stay on your device and are never sent to us. Clearing your browser's site data removes them.

Website analytics

On the public pages of dressos.app we use Cloudflare Web Analytics — and only after you allow it in the choice banner on the website. It sets no cookies and does not fingerprint your device. It collects aggregated page-view and performance data: the page URL, the referring page, your country, and your browser type. We use it to see which pages are read and how quickly they load.

If you choose "Essential only", nothing is loaded. You can change your mind at any time from the analytics link in the website's footer. Analytics runs on the public website only, never inside the signed-in app.

Bot protection

Creating an account on the web is guarded by Cloudflare Turnstile, which tells people from automated sign-ups. To make that check, Cloudflare processes your IP address and some signals from your browser, under Cloudflare's privacy policy. We receive only the outcome of the check — whether the sign-up may go ahead — and never the signals behind it.

How we use this information

  • Provide and maintain the Service — authentication, bookings, inventory, branches, staff.
  • Send transactional email — verification codes, staff invites, password resets.
  • Diagnose bugs and crashes through automatic error reporting.
  • Enforce plan limits (seat count), keep accounts secure, and keep automated sign-ups out.
  • Communicate with business owners about their account or the Service.
  • See, in aggregate, which pages of the public website are read and how they perform — only where a visitor allows analytics.

We do not sell personal data, and we do not use it for advertising.

Who we share it with

We use a small number of providers to run the Service, each processing data only on our behalf:

  • Cloudflare — hosting, content delivery, and file storage (e.g. product photos) for the Service; web analytics on the public website, where a visitor allows it; and the Turnstile bot check on sign-up.
  • Sentry — error monitoring. The web and mobile apps report crashes and errors to Sentry so we can find and fix bugs; the moments around an error are replayed with all text masked.
  • Google (Gmail) — delivery of transactional email.
  • Google (Gemini API) — understanding a spoken product note, where a staff member chooses to add stock by speaking. The recording is sent for that one request and is not stored by us. Typing the product in instead sends nothing.

None of these providers may use the data for their own purposes. We do not share personal data with anyone else, except when required by law or to protect the rights and safety of Aniverse, our users, or the public.

Data retention

Account and business content data is kept for as long as the business's account is active. If a business closes its account, we delete or anonymise the data within a reasonable period, except where we must keep it for legal, tax or accounting reasons. A business can delete a specific customer's record at any time from its own console, or ask us to.

Security

Passwords are stored hashed, never in plain text. Traffic between your device and DressOS is encrypted (HTTPS/TLS). Access inside a business account is controlled by role, so staff only see what their role allows. No method of transmission or storage is perfectly secure, and we cannot guarantee absolute security.

Your rights

Depending on where you are located, you may have the right to access, correct, export or delete your personal data, or to object to certain processing. Account holders and staff can exercise most of these rights directly inside DressOS; for anything else, contact us at info@dressos.app. If you are a customer of a business that uses DressOS and want to exercise a data right, please contact that business directly — as the controller of your data, it is best placed to act on your request. We will assist the business if it asks us to.

Children

DressOS is a business tool and is not directed at children. We do not knowingly collect personal data from anyone under 16.

International transfers

DressOS runs on Cloudflare's global network, so data may be processed in countries other than the one where you or your business are located. Where this happens, we rely on our providers' own safeguards for cross-border transfer.

Changes to this policy

We may update this Privacy Policy as the Service evolves. If a change is material, we will notify account owners by email or an in-app notice before it takes effect. The "Last updated" date above always reflects the current version.

Contact

Questions about this Privacy Policy, or requests about your personal data, can be sent to info@dressos.app. Aniverse operates under the laws of the Republic of Azerbaijan, and this policy is governed by that law.