Legal
Privacy Policy
What Miradora collects, where your photographs go, how long anything is kept, and how to delete all of it.
Last updated 2026-09-08. This document is published in English only; the English version is the one that governs.
The short version
You upload photographs of a space. We send them to third-party AI providers so they can produce a design, and we store the photograph and the result on your account until you delete them.
We do not train any model on your images, and we have no training pipeline of any kind.
The free plan may show a non-personalized banner ad. Paid plans do not show ads.
You can delete your account, and everything in it, from inside the app or from this website — you do not need the app installed to do it.
What we collect
Only what the product needs to work:
- Your email address, if you create an account. You can use the app without one.
- Photographs you upload, and the renders produced from them.
- Room details you enter yourself — dimensions, room type, style choices.
- Your plan, credit balance and credit history.
- Boards you create, and the comments and votes on them.
- For free-tier advertising, Google AdMob may process your IP address (including to estimate general location), device or app identifiers, ads shown and interactions with them, and SDK diagnostics and performance data.
Where your photographs go
Producing a design means sending your photograph to an AI provider. We cannot do it on our own hardware and we are not going to pretend otherwise. Whatever you asked for, your photograph is sent to one company:
- OpenAI — scene understanding, image generation and masked image editing.
What we do on our own infrastructure
The structural analysis — working out where the walls, floor, ceiling, windows and doors are, so that a redesign cannot move them — runs on our own servers, on models we host ourselves. Your photograph is not sent to a third party for that step.
OpenAI handles your photograph under its own terms as a processor for us. We do not send a provider-specific no-retention flag with these requests, so their standard API retention applies. If that matters to you, read the terms of the provider listed above.
Until this version, that list named four companies: Google (Gemini), Black Forest Labs, OpenAI and Recraft. It is one now. Three companies that used to receive your photographs no longer do; anything they received before this date was received under the policy in force then.
Training
We do not train models on your images. There is no training pipeline in our systems.
The setting called "Let Miradora learn from my images" is off by default and stays off unless you turn it on. With it off, nothing you upload is used for any model improvement. Turning it on does not currently enable anything, because there is nothing for it to enable — it exists so that consent is recorded before any such feature could ever be built.
How long we keep things
Photographs and renders stay on your account until you delete them or delete your account. There is no automatic expiry, because a room you designed a year ago is exactly the room you want to come back to.
Accounts created without an email address are deleted automatically after 30 days, along with everything in them. Link an email to keep them.
Deleting everything
There is a Delete Account button in the app, and the same control on the web at /delete-account, which is the route to use if you have already removed the app. Either one deletes your account, your profile, your rooms, your photographs, your renders, your credit history and your boards, and removes your files from our storage.
It is not reversible and there is no copy we can restore for you afterwards.
If you have a subscription bought through the App Store or Google Play, deleting your account does not cancel it — only Apple or Google can, and you should cancel it there first. A subscription bought on the web is cancelled for you as part of the deletion.
Payments
Purchases are handled by Apple, Google or Stripe. We never see or store your card details. We store which plan you are on, when the period ends, and your credit balance.
Other processors
Besides the AI providers above, we use:
- Supabase — the database, authentication and file storage behind the product.
- RevenueCat — subscription and purchase state.
- Resend — transactional email, such as a sign-in code or a board invitation.
- Google AdMob — non-personalized banner advertising for free-tier users, including ad delivery, measurement, diagnostics and fraud prevention. The ads SDK is not initialized until Google’s consent system says an ad request is permitted.
Security
Photographs and renders are held in private storage. They are served through short-lived signed links that expire after 30 minutes, so a link that leaks stops working. Access to your rows is enforced by the database itself rather than by application code.
Contact
This service is operated by Muhammad Haris Siddiqui, 535 Fessler Ave, Naperville, IL 60565-1215, United States. For any question about this policy or your data, contact hello@miradora.ai.