Privacy Policy

This page explains how Miremo collects, uses, stores, and shares user data across product and extension features, including disclosure of third-party AI services.

Last updated: 2026-04-27

1. Data We Collect

Miremo collects three categories of data to provide a stable and secure product experience. The first is account and authentication data, including your account identifier (such as email or username), authentication token and expiry, and session state, all of which are used to keep your login secure. The second is web and note-related data: when you actively trigger note features, we may process the current page URL, title, body text, selected image content, and note content you have created. The third is local configuration data, including language preference, theme preference, and necessary UI state; this data is stored locally only and is never uploaded to any server.

2. How We Use Data

We use collected data only for lawful, legitimate, and necessary purposes. Specifically, we use it to authenticate you and manage sessions so you can sign in securely and continue using the service; to create, organize, and retrieve notes and power core capabilities directly related to your needs; to provide AI-powered note organization, information retrieval, and writing assistance (see Section 3); and to maintain service reliability and security by analyzing and resolving potential issues.

We commit: all data use is conducted on the basis of lawfulness, legitimacy, and necessity. User data will never be used in any unlawful manner or in ways the user could not reasonably anticipate.

3. AI Features & Third-Party AI Services

Miremo provides AI-powered note retrieval, organization, and writing assistance. To deliver these capabilities, content you input or note excerpts may need to be transmitted to an AI service provider for processing. Our current AI service provider is Alibaba Cloud DashScope. Data transmission complies with Alibaba Cloud's data processing agreement and privacy requirements, and occurs only over secure channels. Only the minimum data necessary to complete the current AI task is transmitted — we do not bulk-upload your note library. User data will not be used to train third-party models, nor will it be shared between different users. If we change AI service providers in the future, we will update this policy and notify users in advance.

If you prefer not to have your data processed via AI services, please contact us at privacy@miremoapp.com for assistance.

4. Data Sharing and Transfer

We transfer data to third parties only when necessary. For our own backend services, data is used for core feature delivery and is not shared externally. For AI features, as described in Section 3, the relevant data is transmitted to Alibaba Cloud DashScope. When subject to a legal obligation or addressing a security incident, we may disclose necessary information to regulators or relevant parties.

We do not sell personal or sensitive user data, and we do not use it for personalized advertising or any commercial transfer purposes.

5. Storage and Security

All sensitive data is transmitted over secure channels (HTTPS/WSS) in production. We apply reasonable technical and organizational safeguards — including access controls and audit logging — to protect data against unauthorized access, disclosure, or tampering. Local caches and session data can be removed by logging out or uninstalling the extension. We regularly review our security measures and notify affected users promptly in the event of a security incident.

6. Cookies and Local Storage

Miremo uses browser local storage (chrome.storage.local) to save login state, language preferences, and privacy consent records. We do not use third-party tracking cookies. The web app may use necessary session cookies to maintain login state; these cookies are not used for tracking or advertising.

7. Your Rights

You have several rights over your data, exercisable at any time by email. You may request a copy of data held about you (right of access), or ask us to correct inaccurate or incomplete personal data (right to rectification). If you request deletion of your data, we will handle it according to our retention policy following account cancellation (right to erasure). You may also withdraw consent to data processing at any time and stop using the service (right to withdraw consent).

To exercise any of these rights, please email us at privacy@miremoapp.com. We will respond within 30 business days.

8. Chrome Extension: Permissions & Limited Use

Miremo's Chrome extension requests the following permissions. The activeTab permission is accessed only when you actively trigger a capture, retrieving the current tab's URL, title, and content to create page-related notes. The storage permission stores your login state, language preference, and privacy consent in chrome.storage.local; this data is never uploaded to any server. The contextMenus permission adds a right-click menu entry so you can quickly save selected text as a note. The host_permissions (<all_urls>) permission allows reading page content on any site you visit to support cross-site note capture; content is processed only when you explicitly initiate a capture — no background data collection occurs.

Use of data obtained via host_permissions strictly complies with the Limited Use requirements of the Chrome Web Store User Data Policy. Data is used only to provide or improve note functionality and will not be transferred to third parties (except as required by law or to address security incidents).

9. Policy Changes

We may update this Privacy Policy from time to time to reflect product or regulatory changes. Significant changes will be communicated to users in advance via in-app notifications or email; minor adjustments will be noted by updating the date above. Continued use of the service constitutes acceptance of the updated policy.

10. Contact Us

For privacy questions, compliance inquiries, or deletion requests, please email us at privacy@miremoapp.com.