Back to Mirro

Privacy Policy

Last Updated: July 2026

Mirro Technologies Ltd · mirro.london · privacy@mirro.london

1. Who We Are

Mirro Technologies Ltd (“Mirro,” “we,” “our,” or “us”) operates the Mirro relationship architecture platform at mirro.london. We are the data controller for personal data collected through this service. This policy applies to all users in the United Kingdom and European Union and governs our compliance with UK GDPR, the EU General Data Protection Regulation (EU 2016/679), and the Privacy and Electronic Communications Regulations (PECR).

2. Data We Collect

We collect the following categories of personal data:

2a. Identity & Account Data

  • Name, email address, and profile photo (provided via Google Sign-In)
  • Username (if claimed)
  • Date, time, and place of birth (used solely for astrological calculations)
  • Preferred language and pronouns

2b. Psychological Profile Data (Sensitive)

This category may constitute sensitive personal data under UK GDPR Article 9. We process it only with your explicit consent.

  • Your responses to psychological scenario questions during the consultation
  • Derived psychological profile: attachment style, love language, and relationship deal-breakers
  • Astrological profile derived from birth data
  • Free-text notes you provide during post-date debriefs
  • Feedback ratings you provide on AI-generated content
  • Relationship memory notes you save or clear inside Mirro

2c. Matching & Behavioural Data

  • Which candidate profiles you viewed, expanded, connected with, or passed on
  • Compatibility scores and compatibility vector data generated between profiles
  • Venue recommendations shown to you and venues you selected or confirmed
  • Scheduling preferences and confirmed meeting times
  • Post-date outcomes: whether a meeting occurred, self-reported chemistry, and whether you wished to meet again
  • AI coaching conversation logs from the post-date debrief feature
  • Daily check-ins, interaction summaries, and derived memory summaries used to personalise Mirro’s tone and continuity

2d. Voice Data (Sensitive)

Voice recordings are processed only with your explicit consent and are not transmitted to or stored by Mirro’s servers. They are recorded and played back locally on your device only.

  • Optional voice “hello” recordings recorded locally on your device for pre-date introductions

2e. Location Data

  • Approximate device location (used solely to show you nearby venues; not stored)
  • Birth city (for astrological calculations only)

2f. Technical & Usage Data

  • A stable anonymous identifier (“anonId”) stored in your browser’s local storage for unauthenticated users, to enable continuity of service
  • Push notification subscription tokens (if you opt in)
  • Basic analytics via Google Analytics (page views, feature usage)
  • Sparse in-product event summaries such as panel dwell time, maximum scroll depth, selected primary action, and feature completion. We do not store raw mouse movement or raw scroll streams.

3. Lawful Basis for Processing

Data CategoryLawful Basis (UK/EU GDPR)
Account & identity dataContract (Art. 6(1)(b))
Psychological profile dataExplicit consent (Art. 6(1)(a) + Art. 9(2)(a))
Matching & behavioural dataExplicit consent (Art. 6(1)(a))
Voice recordingsExplicit consent (Art. 9(2)(a)) — local only, not transmitted
AI model improvementExplicit consent (Art. 6(1)(a)) — see Section 5
Marketing communicationsConsent (Art. 6(1)(a) + PECR)
AnalyticsLegitimate interests (Art. 6(1)(f))

4. Automated Decision-Making & Profiling

Article 22 disclosure: Mirro uses automated processing to generate compatibility scores and match recommendations between users. This constitutes profiling under UK/EU GDPR.

Specifically:

  • We generate a “compatibility vector” from your psychological and astrological profile using a deterministic algorithm and semantic AI embeddings.
  • This vector is compared against other users’ vectors to produce a compatibility score (0–100).
  • Scores influence which profiles are recommended to you and in what order.
  • No solely automated decision produces legal or similarly significant effects — a human (you) makes the final connection decision.
  • You have the right to request human review of how your compatibility scores are calculated. Contact us at privacy@mirro.london.

5. AI Training & Model Improvement

With your explicit consent (given at sign-in), we may use the following data to improve Mirro’s matching accuracy and personalisation:

  • Your consultation scenario responses and derived psychological profile
  • Your matching decisions (connect, pass) and the compatibility features at decision time
  • Post-date outcome data (chemistry ratings, whether you met, whether you wished to meet again)
  • Optional free-text debrief notes you provide
  • Venue selection behaviour
  • Daily check-ins and compact engagement summaries, such as which surfaces you spend meaningful time with

This data is stored in an internal event log and used to train and evaluate our matching models. Mirro also derives compact memory summaries from these signals so the product can remember relationship patterns without feeding raw telemetry into prompts. It is not shared with third parties for their own training purposes. You may withdraw consent at any time (see Section 7).

6. Third-Party Processors

We share data with the following third-party processors under appropriate data processing agreements:

  • Google LLC — Authentication (Google Sign-In), AI processing (Gemini API), Analytics, Location data for venue recommendations (Places API). Google’s privacy policy: policies.google.com/privacy
  • Foursquare Inc. — Venue search and enrichment data. No personal data is transmitted to Foursquare.
  • Prisma Data Inc. / Neon — Database hosting for your profile and event data.
  • Vercel Inc. — Application hosting and edge delivery.

Where processors are located outside the UK/EEA, we ensure appropriate safeguards are in place (Standard Contractual Clauses or adequacy decisions).

7. Your Rights

Under UK GDPR and EU GDPR you have the right to:

  • Access the personal data we hold about you
  • Rectify inaccurate data
  • Erase your data (“right to be forgotten”) — delete your profiles in-app, or contact us for full account deletion
  • Restrict processing in certain circumstances
  • Data portability — receive your data in a machine-readable format
  • Object to processing based on legitimate interests
  • Withdraw consent for AI training use at any time without affecting prior processing
  • Clear Mirro memory in-app, including relationship memory and behavioural memory summaries used for personalisation
  • Not be subject to solely automated significant decisions without human review

To exercise any right, contact: privacy@mirro.london. We will respond within 30 days.

You have the right to lodge a complaint with the UK Information Commissioner’s Office (ICO) at ico.org.uk, or with your local EU supervisory authority.

8. Data Retention

  • Account and profile data: retained while your account is active, deleted within 30 days of account deletion request
  • Matching and behavioural event data: retained for up to 3 years to support model improvement, then anonymised or deleted
  • Post-date debrief data: retained for up to 3 years, then anonymised
  • Personalisation memory summaries: retained while your account is active unless you clear Mirro memory in-app
  • Voice recordings: never stored on our servers; discarded after local playback
  • Analytics data: retained per Google Analytics’ default retention policy

9. Cookies & Local Storage

We use browser local storage (not cookies) to store:

  • An anonymous session identifier for unauthenticated users (anonId)
  • Temporary profile data before you sign in
  • Your language preference

We use cookies only through Google Analytics and Google Sign-In. You may manage cookie preferences through your browser settings.

10. Changes to This Policy

We will notify you of material changes via in-app notice. Continued use after notice constitutes acceptance. The current version is always available at mirro.london/privacy.

11. Contact

Data Controller: Mirro Technologies Ltd
Email: privacy@mirro.london
Note: This policy was last reviewed July 2026. Mirro Technologies Ltd is in the process of registering as a data controller with the ICO. Registration confirmation will be added here upon completion.