Privacy Policy
Effective Date: 2 June 2026 • Governed by Indian Law
Local Storage Only
Your answers and scores are saved strictly on your own device's browser. They never touch our servers.
No Account Required
You can take all 14 assessments without giving your name, email address, phone number, or credentials.
Zero Ad Tracking
No third-party tracking pixels, marketing cookies, or commercial profiling. We do not sell your data.
1. About This Policy
This Privacy Policy explains how MindMirror (“we”, “us”, “our”) collects, uses, stores, and protects information when you use our website at mindmirror.in (the “Platform”). This policy is written in plain language in compliance with the Digital Personal Data Protection (DPDP) Act, 2023 and the Information Technology Act, 2000.
By using MindMirror, you agree to the practices described in this policy. If you do not agree, please discontinue use of the Platform.
2. What Data We Collect & Process
2.1 Data We Do NOT Collect
MindMirror is designed to be privacy-first. We do not collect or transmit:
- Your name, email address, or phone number (no account registration exists).
- Your assessment answers, progress, or calculated scores — these reside entirely inside your browser's local sandbox on your own device.
- Physical location coordinates, granular IP logs, or identifiers linked to your offline persona.
- Clinical health or medical history records.
2.2 Technical & Anonymous Analytics
For service stability, scaling, and general interface optimization, we may capture anonymous, non-identifiable metrics:
- Anonymised browser version, screen dimensions, and language preferences.
- Aggregate routing patterns (e.g., total hits on our /calm page) using privacy-friendly counts.
- Client-side exception records generated purely to repair program bugs.
2.3 Information You Voluntarily Share
If you choose to write to us via email or utilize a feedback form, you voluntarily disclose your name and return address. We process this transmission solely to address your support query and discard it permanently thereafter. We never share correspondence with commercial brokers.
3. Legal Basis for Processing (DPDP Act, 2023)
Under Section 6 of the Digital Personal Data Protection Act, 2023, the primary legal ground for processing any personal data you voluntarily provide (such as feedback form transmissions) is your free, specific, informed, and unambiguous consent.
You retain the absolute right to withdraw this consent at any point by sending an email notification to support@mindmirror.in.
4. Your Rights as a Data Principal
In accordance with the DPDP Act, 2023, you hold enforceable rights regarding your data:
To submit an access or erasure request, email us at support@mindmirror.in. All queries are resolved within 30 days as mandated by law.
5. Data Retention Limits
We enforce strict data minimization rules. General support correspondence is retained for a maximum of 90 days to complete response tasks, after which it is permanently purged.
Since your screening answers are stored solely in your local browser sandbox, you maintain absolute control over retention. You can wipe your data instantly by clearing your browser cache, clearing local storage, or clicking "Clear All History" in your results dashboard.
6. Local Storage and Tracking Mechanisms
MindMirror uses strictly functional, essential local storage mechanisms (such as browser LocalStorage) required to run client-side states (such as loading your selected dark/light color mode or preventing onboarding modals from popping up repeatedly).
We do not integrate advertising networks, tracking pixels, or cross-site commercial profiling cookies. You can manage or clear local storage via your browser's settings panel, though certain local interface parameters may reset upon reload.
7. Security Standards and Breach Response
Consistent with our obligations under the IT Act, 2000 and the DPDP Act, 2023, we use rigorous technical safeguards. All network packets are transmitted via SSL/HTTPS. Any partner registration details voluntarily provided during the therapist application process are transmitted securely via official email communications and stored on secure, access-controlled cloud infrastructure.
In the highly unlikely event of a secure breach involving voluntary correspondence, we will alert the Data Protection Board of India within 72 hours and notify impacted individuals as dictated under the DPDP Rules.
8. Grievance Officer and Redressal Contact
In compliance with Rule 7 of the Information Technology (Intermediary Guidelines and Digital Media Ethics Code) Rules, 2021, and the DPDP Act, 2023, you can file inquiries or complaints directly with our Grievance Officer:
9. Minor's Confidentiality
MindMirror does not knowingly market to or collect data from children under the age of 18. If a minor has sent an inquiry revealing credentials, parents or guardians should contact us immediately at support@mindmirror.in to trigger immediate erasure.