This Privacy Policy explains how Mirror Diary: Daily Glow Up ("Mirror Diary", "the app", "we", "us") collects, uses, stores, and protects your information. Mirror Diary is operated by an individual developer based in Türkiye. By using the app, you agree to the practices described in this policy.
When you take a scan, the app processes that photograph to generate your reading. Photos are only captured when you actively take them, never automatically and never in the background. They are not stored on our servers. See the section "Face Data and Scan Photos" below for full details.
The app stores the numeric results generated for your scans (your scores and the change between scans), your daily habit log, and basic app data such as your onboarding answers (for example age range, gender, and goals) used to phrase your notes.
Mirror Diary uses anonymous authentication. A random account identifier is created for you automatically. We do not require your name, email address, or phone number to use the app.
If you subscribe to Mirror Diary Premium, the purchase is processed by Apple. Our subscription partner, RevenueCat, receives a pseudonymous identifier and purchase receipt data to validate and manage your subscription. We never receive or store your payment card details.
Basic technical information (such as app version and device type) may be processed to operate the app and diagnose problems.
When you take a scan, the photo is sent through our secure server to our AI provider for a single reading, and is then discarded. We do not keep a copy. The only lasting copy of your photo lives in the app's private storage on your own device, where it is used to show your timeline and to line up your next scan.
We do not collect biometric identifiers, facial geometry, facial recognition templates, or Face ID data. We do not generate or store any template that could be used to identify you or to match you against any other person or database.
Numbers only: your scan scores, the change between scans, your daily habit log, and the dates. These are linked to a random anonymous account identifier, not to your name, email address, or phone number.
Your photo is used for one purpose: to generate the reading for that scan. It is never used for identification, advertising, profiling, or training AI models.
To generate your reading, your photo is transmitted through our secure server (a Supabase Edge Function with authenticated access) to OpenAI, a third-party AI service provider. OpenAI processes the photo only to return the reading and, per its API data usage policy, does not use API-submitted content to train its models. No other third party receives your photos. Our server deletes the image once the reading is returned.
Because photos stay on your device, deleting the app removes them. You can also delete every stored photo at any time using "Delete my photos" in Settings, without deleting your account. "Delete account" in Settings permanently removes your photos from this device along with your scan history, habit log, and account data from our servers.
The app asks for your explicit permission before your first scan and records the date and time of that consent. You can withdraw it at any time in Settings ("Withdraw AI analysis consent"), after which no photo is sent until you consent again.
We do not sell your personal data. We do not use your data for third-party advertising.
We use a small number of service providers to operate the app. Each provider processes data only as needed to provide its service:
These providers are bound by their own privacy and security commitments that provide protection equal to or greater than the practices described in this policy.
Your photos are stored only on your device and are removed when you delete them or delete the app. Your scores, habit log, and account data are retained until you delete them. "Delete account" in Settings permanently removes them from our servers. Subscription records may be retained by Apple and RevenueCat as required for financial and legal purposes.
Depending on your location (including under the GDPR and similar laws), you may also have rights to access, correct, or port your data, and to lodge a complaint with a supervisory authority. To exercise any of these rights, contact us at the email below.
We take reasonable technical measures to protect your data, including authenticated access to our backend, row-level security rules that restrict your results to your own account, and encrypted connections (HTTPS/TLS) for all data transmission. Because scan photos are never written to our servers, they are not exposed to server-side risk at all.
Mirror Diary is not intended for children under 13, and we do not knowingly collect personal information from children under 13. If you believe a child has provided us with personal data, please contact us so we can delete it.
Mirror Diary measures change in your own appearance over time compared only to your own earlier scans. It does not rank you against other people, does not assess attractiveness, and does not provide medical advice, diagnosis, or treatment. The readings are general wellness information for self-reflection only.
We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated "Last updated" date. Continued use of the app after changes means you accept the updated policy.
If you have any questions about this Privacy Policy or your data, contact us at: