This notice explains how Mi Vault ("we", "us") collects, uses, and protects personal data when you use the MiVault platform. Mi Vault is the data controller for personal data collected through accounts and your use of the service.
1. Data we collect
- Account data — name, email, organization, password (hashed).
- Content you put in — resident profiles, notes, documents, forms, photos.
- Usage and security data — IP address, device/browser, login events, error logs.
- Support communications — messages you send us.
Payment data (card details, billing address) is collected by our payments provider, Paddle, not by us.
2. Why we use it
- Provide and operate MiVault (contract performance).
- Protect accounts and prevent fraud or abuse (legitimate interests).
- Improve the product (legitimate interests).
- Respond to support requests (legitimate interests / contract).
- Comply with legal obligations.
3. Who we share data with
- Service providers / subprocessors — hosting, database, email, AI providers used to deliver the service.
- Merchant of Record — Paddle.com, who processes payments, subscriptions, tax, and invoicing.
- Professional advisers — legal and accounting.
- Authorities — where required by law.
We do not sell personal data.
4. Retention
We keep account and content data for as long as your account is active, plus a reasonable period to handle disputes and comply with legal obligations. You can request export or deletion at any time.
5. Your rights
Depending on your jurisdiction, you may have rights to access, correct, delete, restrict, or port your data, or to object to certain processing. Contact us at privacy@mivault.app.
6. Security
We use appropriate technical and organizational measures including TLS in transit, encryption at rest where supported, access controls, and audit logging. No system is perfectly secure; report concerns to security@mivault.app.
7. Cookies
We use strictly necessary cookies to keep you signed in and to remember preferences. We do not use third-party advertising cookies.
8. International transfers
Our providers may process data outside your country. Where required, we rely on appropriate safeguards (such as Standard Contractual Clauses).
9. Changes
We may update this notice. Material changes will be notified by email or in-app.
10. Contact
Mi Vault — privacy@mivault.app.