Mira · 日省
Privacy Policy
This Privacy Policy explains how the Mira mobile app ("we", "us", or "the app") handles your information. Mira is built with a local-first philosophy: your reflections never leave your device, except in the narrow cases described below.
1. Summary in plain English
| What | Where it lives | Who can read it |
|---|---|---|
| Your answers to reflection questions | Your device only (SQLite) | Only you |
| Your personality profile, keywords, insight history | Your device only | Only you |
| Notification preferences, language preference | Your device only | Only you |
| Questions Mira asks you, your profile summary, your keywords, your recent answers | Sent in real time to our AI provider (DeepSeek) to generate the response, then discarded per their stated policy | Mira (transit only, not stored) and DeepSeek (per their policy) |
| A question you long-press and explicitly choose to "Recommend to community" | Uploaded to our community pool, with no link to your identity | Other Mira users (after our moderation) |
We do not:
- Run analytics SDKs that track you
- Sell or share your data with advertisers
- Require an account, email, phone number, or any identifier
- Store your reflections on any server, ever
2. Information we process
2.1 Stored locally on your device
All of the following are stored only on your device using the iOS sandboxed SQLite database. They are not uploaded to any server:
- Your answers to reflection questions
- The personality profile generated from your answers (Markdown)
- Keywords AI extracts from your writing
- Your reflection history (sessions)
- Your favorite questions and experiments
- Weekly and monthly summaries
- Notification settings, app language
Apple's iOS file system encryption applies by default to all app data on your device.
2.2 Sent to AI provider (DeepSeek) in real time
When you tap a button that requires AI processing (generate a question, analyze an answer, write a summary, design an experiment, etc.), Mira's backend (a Supabase Edge Function) sends the necessary context to DeepSeek's API to compute the response.
What is sent includes (depending on the action):
- The reflection question being asked
- Your written answer
- A trimmed snippet of your personality profile (≤ 3000 characters)
- Your top keywords (with definitions)
- A summary of recent sessions (last 5 days, trimmed)
DeepSeek's policy states that API content is not used for training and not stored beyond the request. We cannot guarantee any third party's behavior beyond their stated policy.
We do not store any of this on our own servers. The Mira backend acts as a stateless transit layer between your device and DeepSeek.
2.3 Sent to our community pool (only if you explicitly choose)
When you long-press a question and tap "Recommend to community", the following is uploaded to our community database:
- The text of the question (the AI-generated question, not your answer)
- The question type
- The reason the AI generated it (
why_ask— internal metadata) - Timestamp
We do not upload:
- Your answer
- Your profile or keywords
- Your device ID or any identifier
- Anything that links the question to you personally
Recommended questions go into a pending pool. After basic automated filtering (we reject questions that contain personal names, specific dates, financial amounts, or addresses), they may appear in other users' question feed with a "✦ Community" tag.
You can stop recommending a question at any time. Once submitted, due to the anonymous nature of the system, individual questions cannot be retroactively deleted by the user (but you can email us to remove a specific text).
3. Our servers
We use Supabase (hosted on AWS) to run:
- The Edge Function that proxies requests to DeepSeek
- The community questions table (only for explicitly recommended questions, per §2.3)
Supabase has no record of your reflections, your profile, or your usage patterns. The community table contains only the data described in §2.3.
We use DeepSeek as our AI provider. They process your messages in real time and (per their policy) do not store them.
We may switch or add AI providers (e.g., OpenAI, Anthropic) in future versions. We will update this policy if the provider changes.
4. Children's privacy
Mira is not intended for users under 13. We do not knowingly collect any data from children. If you believe a child has used the app, contact us and we will assist.
5. Your rights
Because all your reflections are stored only on your device:
- To delete all your data: use the "Reset onboarding" button in Settings → Data. This clears everything from your device.
- To delete the app: removes all data immediately and permanently. We retain nothing.
- To remove a community-recommended question: email us with the question text and we will remove it from the pool.
- For data export: you can share your personality profile as Markdown from the Profile page.
We do not have your data on our servers, so there is no "request data" or "request deletion" endpoint needed for your reflections. They are yours, on your device, period.
6. Changes to this policy
If we materially change how data is handled, we will:
- Update the date at the top
- Notify you in-app at next launch
- (For breaking privacy changes) Prompt you to re-accept
7. Disclaimer
Mira is a reflection and self-observation tool. It is not a medical device, therapy app, or substitute for professional mental health care. AI-generated insights are tools for self-reflection, not diagnoses or treatment recommendations.
If you are experiencing a mental health crisis, please contact a qualified professional or a crisis hotline.
8. Contact
For privacy questions, data removal requests, or anything else:
- Email: mira-vista@mira-vista.com