Privacy Policy
Last updated: 27 August 2025
Your Privacy Matters
At Mira, we understand that your data is personal and sensitive. This Privacy Policy explains how we collect, use, protect, and handle your information when you use our AI-powered notification and calendar management service.
đź”’ Our Promise: We will never sell your personal data, and will never use your data to train third-party AI models
Information We Collect
Calendar Data
- Event titles, descriptions, and timestamps
- Meeting attendees and locations
- Calendar preferences and settings
- Time zone information
- Recurring event patterns
Data from Integrations
- Messages, events, and notifications received from connected services (e.g., Slack, Google Calendar, Gmail, LinkedIn, etc).
- Metadata about these notifications, such as timestamps, participants, and originating application.
- User interaction history with notifications
- Please note: Data is sourced strictly in line with each application's individual guidelines and permissions, which are expressly approved by you before we begin collecting data.
Notification Processing
- We run language models over incoming data to summarize, reformat, and prioritize notifications for you.
- Raw source data may be stored temporarily for processing but is never used to train third-party models.
- Derived insights (summaries, classifications, rankings) are linked to your account for your ongoing use.
Account Information
- Email address (for authentication)
- Name and profile information from Google (if provided)
- Usage patterns and preferences
- Profile picture (if provided)
- Authentication credentials
- Subscription and billing information
Technical Data
- Device type and browser information
- IP address and general location
- Error logs and performance data
Compliance with Google Limited Use Requirements
The use of raw or derived user data received from Google Workspace APIs and/or Photos APIs by Mira will adhere to the Google Workspace API User Data and Developer Policy, including the Limited Use of user data requirements. We do not use Google Workspace or Photos API data to train, improve, or operate generalized AI or ML models. Data access is strictly limited to user-facing features within the app.
How We Use Your Information
- Calendar Management: Analyze your calendar patterns to provide intelligent scheduling suggestions
- AI Processing: Use your personal data to generate personalized recommendations
- Service Improvement: Understand usage patterns to improve our service
- Support: Provide customer support and troubleshoot issues
- Synchronization: Sync your data across devices and with connected services you enable (e.g., Google Calendar).
- Security: Detect, prevent, and investigate fraud, abuse, and unauthorized access.
Data Security
🛡️ Enterprise-Grade Security
- All data is encrypted in transit and at rest
- We use industry-standard security practices and regular audits
- User data is processed in secure, isolated environments
- We implement principle of least privilege for data access
Data Sharing and Third Parties
We do not sell, rent, or trade your personal information. We only share data in the limited circumstances below, with appropriate contractual and technical safeguards:
- Service Providers: With trusted vendors who help us operate Mira (e.g., hosting, authentication, observability, AI processors) strictly for providing the Service and subject to confidentiality and data protection obligations.
- Integrations You Enable: When you connect third-party services (e.g., Slack, Google), we share only what is necessary to provide the features you request, consistent with each integration’s permissions.
- Legal, Safety, and Abuse Prevention: When required by law or valid legal process, or when we believe disclosure is necessary to protect our users, the public, or Mira’s rights, property, or safety.
- Business Transfers: In connection with a merger, acquisition, financing, or sale of assets, we may transfer data to the relevant parties, subject to continued protections consistent with this Policy.
Data Retention
We retain personal data only for as long as necessary to provide the Service, comply with legal obligations, resolve disputes, and enforce agreements. Retention periods vary by data type and context (for example, account data versus logs).
If you request deletion of your account, we begin removal of associated personal data and typically complete deletion within 30 days, subject to limited exceptions (e.g., legal retention requirements, security and abuse-prevention logs). We may retain and use aggregated or de-identified data that does not identify you.
Service Operation
To operate, maintain, and protect the Service, we may access, modify, or delete data when reasonably required for support, security, service continuity, or legal compliance. Any such access is minimized, role-based, and subject to internal controls.
We do not sell personal data, and operational reviews focus on service quality and safety.
We may share data with trusted service providers (e.g., hosting, authentication, AI processors) strictly to operate Mira, under contractual safeguards.
Third-Party Services
Mira integrates with the following services:
- Slack: To access and process your workspace messages and notifications.
- Google Calendar: To manage events, schedules, and reminders.
- Gmail (planned): To ingest and summarize important emails.
- LinkedIn (planned): To surface professional updates and direct messages.
- Auth0: For secure authentication.
- OpenAI: For AI-powered summarization and ranking (data is not stored or reused for training).
Your Rights
You have the right to:
- Access all data we have about you
- Request deletion of your account and all associated data
- Modify or correct your personal information
- Export your data in a portable format
- Withdraw consent and revoke third-party integrations at any time (e.g., via Slack, Google, or within Mira)
- Opt-out of marketing communications. You may unsubscribe from promotional emails at any time. Please note that we may still send you important service-related messages (e.g., security notices, transactional emails, Mira service updates) that are not considered marketing.
Changes to This Policy
We may update this Privacy Policy to reflect changes in our practices, services, or legal requirements. If we make material changes, we will notify you by email (using the address linked to your account) or through an in-app notification, before the changes take effect. The updated policy will be effective as of the date posted. By continuing to use Mira after the effective date of an updated Privacy Policy, you agree to the revised terms.
Questions or Concerns?
If you have any questions about this Privacy Policy or how we handle your data, please contact us at mymira.developer@gmail.com