Privacy Policy
Last updated: April 8, 2026
Overview
Loka ("the Extension") is a Chrome extension that provides astrology-informed fashion recommendations on shopping product pages. This policy explains what data we collect, how we use it, where it is stored, and the third parties involved in delivering the service.
Data We Collect
When you use Loka, we may collect the following information:
- Account information — your email address and authentication identifiers when you sign in with Google or Microsoft, along with authentication/session state needed to keep you signed in.
- Birth profile information — your birth date, birth time, and derived astrological placement data used to generate your style profile.
- Birth location information — the birth city you provide during onboarding and the latitude/longitude derived from that city lookup for astrological calculations.
- Product page data — when the Extension is active on a retail product page, it may read data from that page such as the product URL, title, brand, price, description, image, and materials to generate recommendations.
- Browsing-derived recommendation data — Loka stores recent product interactions and recommendation context so it can personalize future styling suggestions based on what you've recently viewed.
- Optional Outlook receipt and purchase data — if you choose to connect Outlook, Loka uses read-only access to receipt emails and may process merchant, order, item, purchase date, quantity, and price details extracted from those receipts to identify past purchases and display items you already own in styling results. We do not send email on your behalf.
- Saved items and interaction data — actions such as opening the drawer, saving a product, clicking recommendation links, submitting feedback, refreshing pairings, onboarding progress, receipt-sync status, and other in-extension interaction events.
- Usage analytics — event data about how the Extension is used, including onboarding events, product URLs tied to widget events, and extension library/version metadata.
How We Use Data
- Authenticate you and keep your account signed in.
- Generate and store your astrology-based style profile and recommendation context.
- Analyze product pages and produce styling recommendations for the current item.
- Personalize recommendations using recent browsing patterns, saved products, optional receipt-derived wardrobe data, and your explicit feedback.
- Measure onboarding and product usage so we can improve the Extension.
- Open retailer links, affiliate links, or Loka-managed redirect links that you choose to click from recommendations.
- Attribute installs from Loka-owned web properties when a Loka-managed referrer cookie is present.
Data Stored Locally On Your Device
Loka uses Chrome storage for performance, continuity, and user-controlled preferences. Local storage may include:
- Your cached style profile and user association.
- Authentication and session state used to keep you signed in.
- Cached alignment results and garment descriptions.
- Recent browsing history and recommendation summaries for viewed products, with retention limits enforced in the Extension.
- Saved mute preferences for specific sites.
- Queued interaction events pending sync.
- Analytics identifiers used to keep event attribution stable.
Data Sent To Our Servers Or Service Providers
Some Extension functionality depends on sending data to our backend or to service providers acting on our behalf.
- Supabase stores your extension profile, saved products, interaction events, receipt connection records, and receipt-derived purchase data used by Loka features.
- Analytics events are sent to PostHog to measure onboarding, widget usage, and receipt-sync flows.
- City search queries are sent to OpenStreetMap Nominatim when you search for a birth city during onboarding.
- Recommendation prompts may be sent to our server-side LLM endpoint and model providers to generate style recommendations. These prompts can include current product details, recent browsing summary, optional owned-item summary, and your style profile context.
- Microsoft identity and Outlook APIs are used only if you choose Outlook sign-in or receipt sync, including read-only receipt email access and purchase-data extraction.
Third-Party Services
- Supabase — authentication, data storage, and backend functions.
- Google OAuth — optional sign-in.
- Microsoft OAuth and Outlook APIs — optional sign-in and optional receipt sync.
- PostHog — product analytics.
- OpenStreetMap Nominatim — city lookup during onboarding.
- OpenAI-compatible LLM providers — style recommendation generation through our backend endpoint.
Chrome Web Store Limited Use Compliance
The use of information received from Google APIs will adhere to the Chrome Web Store User Data Policy, including the Limited Use requirements.
Where Loka receives Google account information for optional sign-in, we use it only to authenticate you and provide the Extension's user-facing features. We do not use Google API data for personalized advertising.
Data Sharing
We do not sell your personal data. We share data only with service providers that help us operate the Extension, such as our authentication, storage, analytics, geocoding, and model inference providers.
Affiliate Links
Some recommendation links shown by Loka may be affiliate links or may route through a Loka-managed redirect before taking you to a retailer. If you choose to open one of those links and make a qualifying purchase, Loka may earn affiliate revenue.
Security
We use authenticated requests and HTTPS for production network traffic. Access to account-linked data is intended to be limited to the signed-in user through our backend access controls.
Data Deletion
Uninstalling the Extension removes Extension-managed local Chrome storage. To delete account-linked server-side data, contact us at support@tryloka.me.
You can also disconnect Outlook from within the Extension to stop future receipt sync activity.
Changes to This Policy
We may update this privacy policy from time to time. Changes will be posted on this page with an updated revision date.
Contact
If you have questions about this privacy policy, contact us at support@tryloka.me.