Legal
Privacy Policy
Last updated: August 19, 2026
Mirar reads your internal signals so you don’t have to guess at your own drift. That only works if you trust what happens to what you tell it. This page is the honest, complete answer — not the shortest one.
The short version
- No password, ever — you sign in with a one-time email link.
- We never sell your data, and we don’t run ad trackers on Mirar.
- Your daily check-ins are used to generate your own reflections — nothing else.
- You can ask us to export or delete everything, any time, by emailing us.
What we collect
Account information. Your email address, used only to sign you in (via a one-time link — we never see or store a password) and to send you the notifications described below. Internally, your activity is tied to a randomly generated mirar_id rather than your email, so your check-in history and signals are kept separate from your identity in our own systems wherever possible.
Check-in data. The daily signal you select, and any optional private note you choose to add. The note is stored only to be shown back to you — it is never scored, analyzed for content, or shared.
Progress data. Which day of your cycle you’re on, your streak, and the theme scores Mirar computes from your check-ins, so your dashboard and reports can show you your own patterns over time.
Preferences. Your chosen language (English, Hindi, or Gujarati) and light/dark mode setting.
We do not collect your location, contacts, photos, or device identifiers, and the app itself (mirar-app.vercel.app) contains no third-party advertising or analytics trackers. This marketing site (mirar.life) uses Google Analytics to measure aggregate traffic — see our Cookie Policy for exactly what that sets and why. Either way: no ad trackers, no data sold, no cross-site advertising profile built on you.
How we use it
Your check-in responses are used to generate the AI mirror reflection and periodic reports you see inside the app — a synthesis of your own signals, reflected back to you. We also look at aggregate, pseudonymous usage patterns (via your mirar_id, not your email) to understand which parts of Mirar are actually helping people, so we can improve it. We do not use your data to train third-party AI models, and we do not build an advertising profile of you.
Who we share it with
We use a small number of infrastructure providers to run Mirar. None of them are permitted to use your data for their own purposes.
- Supabase — hosts our database and handles sign-in. Your account and check-in data live here, protected by row-level security so only you (and our systems acting on your behalf) can read your own records.
- Anthropic — the check-in responses relevant to a given reflection or report are sent to Anthropic’s API to generate that reflection’s text. Anthropic processes this under its own API data-use terms and does not use API inputs to train its models.
- Brevo — sends the email notifications you receive (e.g. when a new report is ready), using your email address only.
- Vercel — hosts the Mirar web app and this site.
We do not sell, rent, or trade your personal information to anyone, for any reason.
How long we keep it
We keep your data for as long as your account is active, so your history and patterns stay available to you. If you stop using Mirar, your data simply sits inactive — it is not shared, repurposed, or sold in the meantime. You can request full deletion at any time (see below).
Your rights
You can ask us, at any time, to: see a copy of the data we hold on you, correct anything that’s wrong, export your check-in history, or permanently delete your account and all associated data. We don’t yet have a self-serve delete button in the app — for now, email info@mirar.life and we’ll handle it directly, usually within a few days.
Security
Data is encrypted in transit (HTTPS) and at rest. Access to your check-in records is enforced at the database level (row-level security), not just in application code, so a bug in the app can’t accidentally expose one user’s data to another. No system is perfectly secure, but we treat your reflections with the same care we’d want for our own.
Children
Mirar is not directed at, and should not be used by, anyone under 16. We don’t knowingly collect data from children.
Changes to this policy
If this policy changes in any way that meaningfully affects how we handle your data, we’ll update the date at the top of this page and, for significant changes, notify you directly by email.
Related
This page covers your data specifically. For the terms that govern using Mirar, see our Terms of Service. For what this website stores in your browser, see our Cookie Policy.
Contact
Questions, concerns, or a deletion request — write to info@mirar.life anytime. A real person reads it.