Draft - owner publishes; legal review not obtained (owner decision for V1). This text describes what the V1 code does as of 2026-10-10 (verified against the repository). Fill the placeholders in square brackets, then publish it (see
policy-hosting.md). Delete this box when you publish, or keep it if you prefer to publish as a draft. The Arabic fileprivacy-policy.ar.mdis the primary text; this English file says the same thing.
Effective date: October 10, 2026 Last updated: October 10, 2026 Who is responsible for the app: Jorapps Contact: dev.asab94@gmail.com
Soso Look ("the app", "we") is a style and beauty assistant, in Arabic and English, published by Jorapps. If you have a question about this policy or your data, write to dev.asab94@gmail.com.
These things are saved only on your phone, in storage that belongs to the app. They are never sent to us:
The app asks your phone's system not to include this data in its automatic cloud backups. We do not receive it.
When you pick or take a photo of a clothing piece, the app makes a smaller copy, removes the hidden information in the photo (such as the place it was taken), and keeps that copy in the app's private folder. The original stays wherever it was.
The app works without the internet for your closet, looks and most advice. The features below are the only ones that send anything. Each one runs only when you use it.
Only if you switch it on (the app asks you first). When you ask for outfit ideas, the app prepares a short summary and sends it to our server (on Cloudflare), which passes it to Cloudflare Workers AI to put your ready-made looks in a better order.
What is sent: for each piece, only its type (for example top or shoes) and colour family; how many days ago it was worn (0 to 14); the occasion (everyday, work, social or travel); the looks to order; and random labels (like "piece 123") instead of your pieces. The labels change with every request.
What is not sent: photos, names, notes, look names, your profile, feedback, style preferences, your location, or anything that identifies you. The assistant is not used at all if you set a modesty, hijab or abaya preference.
What happens to it: our server does not save or log it. According to Cloudflare's published page "Workers AI - Data usage" (last updated 21 April 2026; read by us on 10 October 2026, https://developers.cloudflare.com/workers-ai/platform/data-usage/), Cloudflare does not use your content to train the AI models offered on Workers AI or to improve its services without explicit consent, and may store content only if the customer uses a storage service together with it. We do not use such a service for your content. That page speaks about the content of requests; it does not describe technical connection data, which is covered in 4.7.
The answer can only be labels and fixed reason codes. The app checks the answer on your phone and uses it only if it makes sense. If anything fails, you simply see the local result.
You can turn this off at any time (Me > Privacy and photos). Turning it off stops future sending; it cannot take back what was already sent.
There are two separate options, each with its own consent screen, and each asks you to confirm that you are 18 or older:
The app sends one photo (re-encoded as a plain image, with hidden information such as the place it was taken removed) for that single request, together with your language and a fixed list of ideas to choose from. Our server passes it to Cloudflare Workers AI and returns a short answer (a type and colour, or a few idea codes). The photo is used right away; we do not store it, and the app does not keep it. The selfie is never described, and we do not judge your skin. Cloudflare's published position is described in 4.1.
For the clothing photo, please photograph the piece alone, without faces or other people.
If you tap to turn it on, the app asks your phone for your approximate location (Android: "approximate"; iPhone: "while using the app"). Nothing is requested when the app opens. The app takes a city-level position and rounds it at once to one decimal place (an area of about 11 km), and the precise position is dropped.
The rounded position is sent to our server, which rounds it again and asks Open-Meteo (open-meteo.com) for today's forecast. Open-Meteo sees our server's address, not your phone's, and an area of about 11 km. Our server sends back only simple words and numbers (for example "warm", "rain", a high and a low). We do not store the position, and our server keeps the answer for 30 minutes for that area only, under a scrambled name.
Open-Meteo says in its terms (https://open-meteo.com/en/terms, read by us on 10 October 2026) that its server logs may contain geographical coordinates and are deleted after 90 days. Open-Meteo is operated by OpenMeteo GmbH in Switzerland. Weather data is licensed CC BY 4.0, and the app shows "Weather data by Open-Meteo.com". If you decline permission or switch it off, you can still choose the weather in words.
On your phone, the app keeps the rounded area and the last forecast so it works offline. It uses that forecast only for the same day and for less than 12 hours. Switching weather off deletes both. The weather never goes to the AI assistant.
If you subscribe, you do it with Google Play on Android. Google Play handles your payment. We never see your card, your name, or your Google account, and we have no payment details.
What happens in the app:
Reminders are off by default. If you turn one on, the app asks permission to show notifications and sets a daily alarm on your phone. The reminder uses fixed wording, plus your first name if you gave one. Nothing about it is sent anywhere. Reminders are set again automatically after your phone restarts.
In Me you can create a backup of your closet, photos, looks and choices. The app encrypts it on your phone with a passphrase you choose, then offers your phone's share menu so you pick where it goes (for example a file app or your own cloud storage). We never receive it and cannot open it. If you lose the passphrase, nobody can open the file. Restoring reads a file you choose.
Whenever the app talks to our server, the internet works as usual: the server is on Cloudflare's network, so Cloudflare and the network see your IP address and basic connection details. Our server does not write requests, photos or answers to logs (logging is switched off in our server settings). We use your network address only inside the scrambled daily counter described in 4.4. How long Cloudflare itself keeps technical connection data is described in Cloudflare's own privacy policy (https://www.cloudflare.com/privacypolicy/); we have not verified those details and cannot promise them.
| Who | For what | What they get |
|---|---|---|
| Cloudflare, Inc. (hosting and Workers AI) | Runs our server and the AI model | The requests in 4.1 to 4.4, and technical connection data |
| Open-Meteo (OpenMeteo GmbH, Switzerland) | Weather forecast | A rounded position (about 11 km), through our server |
| Google Play (Android) | Subscriptions, payment | Your purchase with Google. We ask Google to confirm it |
| Google Play services (Android) | Gives the phone's approximate location when you use automatic weather | Handled on your phone under Google's terms |
We do not use any advertising or analytics company.
| Data | Where | How long |
|---|---|---|
| Closet, photos, looks, choices, name | Your phone | Until you delete them or erase all data |
| Backup files you create | Where you save them | Under your control |
| Assistant and photo requests | Not stored by us | Processed during the request only |
| Daily limit counters (scrambled codes) | Our server | About two days, then removed automatically |
| Weather answer for an 11 km area | Our server cache | 30 minutes |
| Weather area and last answer | Your phone | Until switched off or erased; shown only for the same day and under 12 hours |
| Open-Meteo server logs | Open-Meteo | Up to 90 days, per Open-Meteo's terms |
| Subscription records | Under Google's policy | |
| Emails you send us | Our mailbox | While needed to reply and keep a record of your request |
Depending on where you live, the law may give you rights over your personal data. In simple terms:
Write to dev.asab94@gmail.com with any request. Because we do not know who you are, we may not be able to find anything and will tell you so.
Soso Look is designed for adults, and we recommend that you are 18 or older to use it. The photo features ask you to confirm that you are 18 or older before you use them. The closet and looks work on your phone without an age check. We do not knowingly collect information from children. Whether an 18+ rule satisfies the laws of your country has not been reviewed by a lawyer.
Cloudflare runs on a global network, and the data centre that handles your request may be in another country than yours. Open-Meteo is operated from Switzerland, and the locations of its servers are not stated on the pages we read. Google processes data in many countries. The details of how the law in each country treats these transfers have not been reviewed by a lawyer. If you do not want any of this, do not use the optional features; the rest of the app works on your phone.
All traffic to our server uses HTTPS. Backups are encrypted with a key made from your passphrase. Our server does not store your content, and its logging is off. No system is perfectly safe, so please keep your phone locked and your passphrase safe.
If we change what the app does with data, for example by adding ads, a new partner or a new kind of data, we will update this policy before the change and show a notice in the app when it matters. The "Last updated" date at the top says when the text last changed.
Jorapps dev.asab94@gmail.com