Last updated: October 2, 2026
The data controller is AYORKA LTD, 71-75 Shelton Street, Covent Garden, London, United Kingdom, WC2H 9JQ. For any privacy question or request, email ayorkateam@gmail.com.
What you and your partner say in a session belongs to you. MIRRA retains session transcripts, reflections, and continuity notes in your account so future conversations can build on your history. We do not sell this information or use it for advertising. You can delete session history or your account from Settings.
We collect your account email and name, session transcripts, generated reflections, continuity notes, optional personal-book selections and drafts, session duration and status, product feedback, and billing status from Stripe, plus technical data such as your IP address and browser type, which our hosting and database providers process for security. We do not receive your full payment-card number.
OpenAI processes voice audio in real time, provides the AI guide and spoken reflections, and writes your reflection. MIRRA does not record call audio and asks OpenAI not to store the conversation; under OpenAI’s API data policy, content may still be kept for up to 30 days for abuse monitoring and is then deleted. Live transcription stays enabled because the transcript is needed to create your reflection and continuity; the transcript is kept by us, in your account, and you can delete it from Settings.
My Book is optional and private to your account. You choose up to ten completed solo reflections. OpenAI uses those reflections and exact verified lines from their transcripts to prepare a draft. Together sessions and your partner’s private sessions are excluded. You can review and edit the draft before hearing it in Mirra’s AI voice. Listening does not use your microphone.
Clear My Book removes its saved text and selection without deleting your original reflections. Deleting a selected source also clears the book built from it. Account deletion removes the book and its usage receipts. Minimal usage receipts contain timestamps and usage amounts, not your book text. New drafts replace the previous draft; MIRRA does not keep a book version history.
Session transcripts, reflections, and continuity notes remain in your account until you clear your history or delete the account; deletion is immediate and permanent. Voice audio is streamed for live transcription and is not recorded by MIRRA. Our processors keep only the operational logs and call metadata they need to run and secure their services, for the limited periods set out in their own published privacy policies; they do not receive your account beyond what each step requires.
We use a small set of processors to run the service: Supabase (database & authentication), OpenAI (real-time speech, the AI guide, reflections, and optional personal books), Stripe (payments), and Vercel (hosting & analytics). Each receives only what it needs to do its job.
MIRRA does not routinely have people read private conversations. Limited access may occur when it is necessary to investigate a security or support issue, comply with law, or operate the service, and only by authorized people with a legitimate need.
Product analytics records operational events such as account creation, checkout, session start, session completion, and reflection opening. It must not include session topics, transcript text, reflections, partner notes, sentiment, or crisis disclosures. Page analytics is switched off on authentication, session, reflection, book, settings, and invitation pages.
To provide the service you asked for (your account, sessions, reflections, continuity notes, My Book, billing) we process your data to perform our contract with you. Session content can reveal sensitive things about you: your relationship, your sex life, your emotional and mental state, your health. We process that content only with your explicit consent, which you give in the one-time agreement before your first session and can withdraw at any time by clearing your history or deleting your account. We keep billing records to meet our legal obligations, and we run minimal security and product analytics on the basis of our legitimate interest in keeping the service safe and working.
Our processors (OpenAI, Supabase, Stripe and Vercel) may process your data in the United States. For data from the European Union we rely on the EU standard contractual clauses, or on the EU-US Data Privacy Framework where the provider is certified; for data from the UK we rely on the UK Addendum to those clauses or on the UK-US data bridge. You can ask us for a copy of the safeguards in place. Each processor is bound by a data processing agreement and receives only what its step requires.
You can ask us for a copy of your data, correct it, delete it, restrict or object to its processing, receive it in a portable format, and withdraw consent at any time. Most of this you can do yourself from Settings; for anything else, email ayorkateam@gmail.com and we will answer within one month. If you are unhappy with how we handle your data you can complain to the UK Information Commissioner’s Office (ico.org.uk) or, if you live in the European Union, to the data protection authority of your country.
You can clear your session history or delete your whole account from Settings; deletion removes your transcripts and reflections, and deleting your account also cancels your membership. Email us at ayorkateam@gmail.com for any data request and we’ll act on it promptly. Deletion is permanent and has no recovery window.
Each partner can have their own login. When you invite your partner, the two accounts share one space: together sessions, and their transcripts and reflections, are visible to both of you. Solo sessions are private to the person who had them and are never shown to the other partner. One membership covers both accounts. A partner can also join a together session on your device without a login; they confirm on screen before each session, and the first name they type and the time of their confirmation are kept with that session. Together sessions are stored with the partner who started them: clearing your history or deleting your account removes the sessions you started, for both of you, while sessions your partner started stay with them until they clear or delete theirs. Deleting the account that created the space also removes the shared space.