Privacy Policy

Last updated: February 23, 2026

1. Introduction

Welcome to Mirror ("we," "our," or "us"). Mirror (mirrorchats.com) is an AI character chat and social platform operated by nudgIQ, Inc. You can chat with AI characters, create profiles, share posts, and connect with other users. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our service.

You must be at least 13 years old (or the minimum age required in your jurisdiction) to use our Service. Certain features or content may require you to be older to access them. If you are under 18, you must have your parent's or legal guardian's permission to use the Service. We may collect date of birth or age-related information during account creation. By using Mirror, you agree to the collection and use of information in accordance with this policy. If you do not agree, do not use our service.

2. Information We Collect

Some of the information we collect (e.g., messages, preferences) may be considered "sensitive" or "special category" under certain laws. We use it to provide and improve the Service (including reviewing conversations to evaluate and improve our AI, e.g. system prompts and character behavior), for safety and moderation, and as described in this policy. We do not use your conversations to train the underlying AI models (e.g. neural network training).

2.1 Account Information

When you create an account, we collect:

  • Email address
  • Username
  • Display name
  • Password (stored in encrypted form)
  • Profile information (avatar, bio) if provided

2.2 Messages and User-Generated Content

We collect and store:

  • Messages you send through the platform, including to AI characters and other users
  • Images you upload or generate through the service
  • Posts you create, including captions and images
  • Interactions such as likes, follows, and comments

2.3 Technical Data

We automatically collect certain technical information, including:

  • IP address
  • Device information (type, operating system, browser)
  • Cookies and similar tracking technologies
  • Usage data (pages visited, features used, time spent)
  • Log files and analytics data

2.4 Payment Information

When you subscribe to our Pro plan, payment processing is handled by a third-party payment processor. We do not store your full payment card details. The processor collects and processes payment information in accordance with its privacy policy. We receive and store limited billing information (e.g., subscription status, billing email) necessary to manage your account.

2.5 Cookies and Similar Technologies

We use cookies and similar technologies (e.g., local storage) for essential operations such as authentication and session management, and to remember your preferences. We may use analytics tools that rely on cookies or similar technologies to understand how the service is used and to improve it. You can control or disable cookies through your browser settings; some features may not work correctly if you disable essential cookies.

3. How We Use Your Information

3.1 Service Provision

We use your information to:

  • Provide, maintain, and improve our service
  • Process and deliver messages and content
  • Enable AI character interactions
  • Manage your account and subscriptions
  • Process payments and manage billing

3.2 Service Improvement

We use aggregated and anonymized data to:

  • Analyze usage patterns and trends
  • Improve AI responses and character interactions
  • Enhance user experience and platform features
  • Debug technical issues

3.3 Safety and Moderation

We use your information to:

  • Detect and prevent fraud, abuse, and illegal activity
  • Enforce our Terms of Service and content policies
  • Moderate user-generated content when needed
  • Respond to user reports and support requests

3.4 Communications

We may use your email address to:

  • Send important service updates and notifications
  • Respond to your inquiries and support requests
  • Send marketing communications (you can opt out)

4. Third-Party Services

4.1 AI Providers

We use third-party AI services to power character interactions, image generation, and search-related features. Your messages and other input you provide are sent to these providers as necessary to generate responses and content in real time. We may also review conversations internally to evaluate and improve our AI (e.g. system prompts and character behavior). We do not use your conversations to train the underlying AI models (e.g. neural network training). Each provider processes data in accordance with its own privacy policy.

4.2 Hosting and Infrastructure

We use cloud hosting services to store and process your data (e.g., databases, file storage, content delivery).

4.3 Payment Processing

Payment processing is handled by a third-party payment processor. The processor collects and processes payment information in accordance with its privacy policy. We do not store your full payment card details.

4.4 Authentication

We use Google OAuth for sign-in. When you sign in with Google, Google processes your authentication in accordance with their privacy policy.

5. Data Retention

We retain your account information for as long as your account is active or as needed to provide services. If you delete your account, we will delete or anonymize your personal information, subject to legal retention requirements. Messages and user-generated content are stored until you or we delete them; deleted data may remain in backups for a limited period.

6. Your Rights and Choices

You can access and update your account information in account settings. You can request deletion of your account and associated data by contacting us. You can opt out of marketing emails via unsubscribe links or by contacting us. Most browsers allow you to refuse or limit cookies; some features may not work properly if cookies are disabled.

6.1 California (CCPA/CPRA)

California residents have the right to know what personal information we collect, to delete personal information, to correct inaccuracies, and to opt out of the "sale" or "sharing" of personal information. We do not sell or share personal information for cross-context behavioral advertising. To exercise these rights, contact us at the email below.

6.2 European Economic Area, UK, and Switzerland (GDPR / UK GDPR)

If you are in the EEA, UK, or Switzerland, we process your personal data on the legal bases of contract (to provide the service), consent (where we ask for it), and legitimate interests (e.g., security, analytics, improving the service). You have the right to access, rectify, erase, restrict processing, data portability, object to certain processing, and withdraw consent where applicable. You also have the right to lodge a complaint with a supervisory authority in your country. To exercise these rights, contact us at the email below.

7. Data Security

We use technical and organizational measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction. No method of transmission over the Internet or electronic storage is 100% secure; we cannot guarantee absolute security.

8. Age Requirement and Children

You must be at least 13 years old (or the minimum age required in your jurisdiction) to use our Service. Certain features or content may require you to be older to access them. If you are under 18, you represent that you have your parent's or legal guardian's permission to use the Service and that they have agreed to our Terms of Service and this Privacy Policy on your behalf. We do not knowingly collect personal information from anyone under 13.

The Service is not directed to children under 13. In the United States, the Children's Online Privacy Protection Act (COPPA) requires verifiable parental consent before collecting personal information from children under 13. We do not knowingly collect such information. If we learn that we have collected personal information from a child under 13 without verifiable parental consent, we will delete it promptly. If you are a parent or guardian and believe your child under 13 has provided us with personal information, please contact us at the email below and we will delete it.

If you believe we have collected personal information from someone under 13 without proper consent, please contact us so we can delete it.

9. International Data Transfers

Your information may be transferred to and processed in countries other than your country of residence, including the United States, where our service and many of our providers operate. Where required by law, we rely on adequacy decisions, standard contractual clauses, or other approved transfer mechanisms to protect your data. By using our service, you consent to such transfer to the extent permitted by applicable law.

10. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of changes by posting the new policy on this page and updating the "Last updated" date. Review this policy periodically.

11. Contact Us

If you have questions about this Privacy Policy or wish to exercise your rights, contact us at:

Email: support@nudgiq.io
Service: Mirror (mirrorchats.com)
Company: nudgIQ, Inc. (Delaware C-Corporation)