Privacy Policy
Effective Date: March 3, 2026
This Privacy Policy explains how Mirai ("we," "our," or "us") collects, uses, stores, and protects your personal data when you use our website mirai-now.io (the "Site") and related services. We are committed to protecting your privacy in accordance with the EU General Data Protection Regulation (GDPR) and applicable Italian data protection laws.
1. Data Controller
The data controllers for your personal data are Lorenzo Antonini and Teddy Gyabaah, based in Italy.
For any privacy-related inquiries, you can contact us at: communications@mirai-now.io
2. Data We Collect
We collect the following categories of personal data:
- Account information: Name, surname, email address (collected via Google OAuth during registration)
- Profile information: Professional role, experience level, university, company, preparation goals, phone number (optional), profile image
- Usage data: Answers to interview questions, story bank entries, mock interview recordings and transcripts, AI-generated feedback and scores
- Technical data: Cookies, browser type, and basic analytics data necessary for the functioning of the Site
- Consent records: Timestamps and versions of consents you have provided
3. Legal Basis for Processing
We process your personal data based on the following legal grounds under GDPR Article 6:
- Consent (Art. 6(1)(a)): For AI-powered processing of your interview answers, recordings, and story bank entries. You provide this consent during registration and can withdraw it at any time.
- Contract performance (Art. 6(1)(b)): To provide you with the interview preparation services you signed up for, including account management and core platform features.
- Legitimate interest (Art. 6(1)(f)): For platform security, fraud prevention, and service improvement, where our interests do not override your fundamental rights.
4. AI Processing and Third-Party Services
Mirai uses artificial intelligence to provide interview feedback and coaching. When you use AI-powered features, your data may be processed by the following third-party services:
- Deepgram — Processes audio recordings from mock interviews to generate text transcriptions. Audio data is sent to Deepgram's servers for real-time speech-to-text conversion.
- OpenRouter (LLM API Gateway) — Processes interview transcripts, written answers, and story bank entries to generate AI feedback, scores, and suggested improvements. Your text data is sent to language model providers through OpenRouter.
By consenting to AI processing during registration, you acknowledge that your answers, recordings, and written content will be sent to these services for the purpose of providing you with personalized feedback. We do not sell your data to any third party.
5. Other Third-Party Services
In addition to AI services, we use the following third-party providers to operate the platform:
- Supabase — Database hosting and user authentication
- Google OAuth — Secure sign-in authentication
- Jitsi Meet — Video conferencing for mock interviews
- Iubenda — Cookie consent management
- PostHog — Privacy-friendly product analytics (hosted in the EU) to understand how users interact with the platform and improve the experience
- Vercel Analytics — Web performance and usage analytics to monitor site speed and reliability
- AWS — Cloud infrastructure hosting
6. International Data Transfers
Some of our third-party service providers may process your data outside the European Economic Area (EEA). Where such transfers occur, we ensure that appropriate safeguards are in place, such as Standard Contractual Clauses (SCCs) approved by the European Commission, or the service provider's adherence to an adequacy decision.
7. Data Retention
We retain your personal data for as long as your account is active and as necessary to provide you with our services. When you delete your account, we will delete or anonymize your personal data within 30 days, unless we are required by law to retain certain information for a longer period.
8. Your Rights
Under the GDPR, you have the following rights regarding your personal data:
- Right of access (Art. 15): You can request a copy of all personal data we hold about you.
- Right to data portability (Art. 20): You can download your data in a structured, machine-readable format (JSON) from your profile settings.
- Right to erasure (Art. 17): You can delete your account and all associated data from your profile settings.
- Right to rectification (Art. 16): You can update and correct your personal information at any time through your profile settings.
- Right to restrict processing (Art. 18): You can request that we limit how we process your data in certain circumstances.
- Right to object (Art. 21): You can object to processing based on legitimate interest.
- Right to withdraw consent (Art. 7(3)): You can withdraw your consent to AI processing at any time by contacting us. Withdrawal does not affect the lawfulness of processing performed before the withdrawal.
To exercise any of these rights, please contact us at communications@mirai-now.io.
9. Cookies
We use cookies to ensure the proper functioning of the Site and to improve your experience. For detailed information about the cookies we use and how to manage your preferences, please refer to our Cookie Policy, accessible through the cookie consent banner displayed on the Site.
10. Data Security
We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction. These measures include encrypted connections (HTTPS/TLS), secure authentication via OAuth, and row-level security on our database.
11. Children's Privacy
Mirai is not intended for use by individuals under 18 years of age. We do not knowingly collect personal data from children. If we become aware that we have collected data from a child, we will take steps to delete it promptly.
12. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. If we make significant changes, we will update the "Effective Date" above and, where appropriate, notify you via email or a notice on the Site. We encourage you to review this policy periodically.
13. Contact and Complaints
For any questions or concerns about this Privacy Policy or our data practices, please contact us at: communications@mirai-now.io
If you believe that your data protection rights have been violated, you have the right to lodge a complaint with the Italian Data Protection Authority (Garante per la protezione dei dati personali) at www.garanteprivacy.it.