PRIVACY POLICY
Last updated: March 9, 2026
Your privacy matters to us. Mirror collects only the information necessary to provide you with a functional and personalized experience. We do not sell your personal data to third parties.
1. Information We Collect
Account Information: Your name, email address, and password (encrypted) when you sign up. If you use Google Sign-In, we receive your name and email from Google.
Profile Photo: An optional selfie you take during onboarding, used to personalize your AI-generated stories. Your camera is accessed only when you explicitly choose to take a photo.
Goals and Dreams: Your dream descriptions, target dates, selected skills, and daily habits. This data powers the core features of the app.
Progress Data: Daily habit completions, sprint progress, and happiness scores you provide. This data is used to generate your AI mirror reflections and track your growth.
Device Information: Your device type, operating system, and push notification token (if you enable notifications).
2. How We Use Your Information
We use your data to: provide and personalize the app experience, generate AI-powered stories and mirror reflections based on your progress, send push notifications (habit reminders and messages, if enabled), and improve our services.
3. AI Processing
Your dream descriptions, habits, and progress data are processed by AI services to generate personalized stories, images, and reflections. This processing is essential to Mirror's core functionality.
4. Camera and Media Permissions
Mirror requests camera access to allow you to take profile photos and dream-related images within the app. Photos are only captured when you explicitly initiate the action. We also request media library access to let you save generated images to your device. These permissions are optional and the app's core features remain functional without them.
5. Data Storage
Your data is stored on our secure servers and locally on your device for offline access. Local data includes cached images and your session information. Authentication tokens are stored securely using your device's secure storage.
6. Data Sharing
We do not sell your personal data. We may share data with: cloud infrastructure providers (to host our services), AI service providers (to generate stories and images), and push notification services (to deliver reminders). All third-party providers are bound by data processing agreements.
7. Your Rights
You have the right to: access your personal data, correct inaccurate data, delete your account and associated data, export your data, and opt out of push notifications at any time through the app settings.
8. Data Retention
We retain your data for as long as your account is active. If you delete your account, we will remove your personal data within 30 days, except where retention is required by law.
9. Security
We implement industry-standard security measures to protect your data, including encrypted connections (HTTPS), secure token storage, and encrypted passwords. However, no system is 100% secure, and we cannot guarantee absolute security.
10. Children's Privacy
Mirror is not intended for children under 13. We do not knowingly collect data from children under 13. If you believe a child has provided us with personal data, please contact us.
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes through the app. Your continued use after changes constitutes acceptance.
12. Contact
For privacy-related questions or requests, please contact us at privacy@mirrorapp.com.