Privacy Policy
Who Operates Mivo
Mivo is operated by the individual developer identified as the Seller on Mivo’s App Store product page (“Mivo,” “we,” or “us”). This policy covers the Mivo iOS app, its first-party gateway, account and cloud-memory services, and the public legal pages. Contact: support@mivoplay.com. Mivo is local-first, has no advertising or third-party behavioral analytics SDK, and does not track you across apps or websites. Most features stay on your device; AI network processing occurs only after the separate permission described below.
1. Photo Library and On-Device Processing
With the Photos permission you choose, Mivo reads photos, videos, metadata, thumbnails, favorite status, and library identifiers to show memories, compare items, calculate storage, find possible similar or duplicate photos, group bursts and screenshots, and carry out deletions you confirm. Browsing, cleanup analysis, general visual feature caches, and full conversation history are stored or processed on device by default. Mivo does not run human face detection, create faceprints or biometric templates, cluster people, recognize identities, or determine whether the user appears in a photo. It never deletes media automatically; deletion requires Apple’s system confirmation.
2. Pet Recognition
Mivo may use Apple’s Vision framework on device to detect cats or dogs, crop the animal region, and create general image feature representations that help distinguish pets after you confirm a pet name in conversation. Pet feature representations stay on the device and are not uploaded or included in cloud memory. A limited text label, such as a user-confirmed pet name or an uncertain match, may be included in an AI request. You can remove this local data with Clear AI Memory. This is animal matching, not human face recognition.
3. Optional AI Data Sharing
AI is optional. Before Mivo sends the first AI request, it presents a separate disclosure and asks you to agree. Only when you deliberately invoke AI for the current photo does Mivo create a JPEG copy reduced to about 512 pixels and send it through Mivo’s encrypted gateway to Alibaba Cloud Model Studio’s Qwen service in the United States (Virginia). The request can also include capture time, favorite status, and a coarse city or place label derived locally from the photo’s GPS metadata. Mivo does not send precise coordinates or access live location. Qwen returns a temporary text visual summary. Mivo then sends that summary, prompts, the current conversation, and selected AI memory or profile clues to the DeepSeek API for the opening, later replies, and memory distillation. DeepSeek does not receive the photo copy. Photos for which you do not invoke AI, and all videos, are not uploaded for AI.
4. Account, Purchase, and Security Data
Sign in with Apple provides Mivo with an app-specific Apple user credential; Mivo does not request your Apple name or email scopes. Mivo creates an internal account identifier and processes session tokens, account status, deletion requests, and login timestamps. For subscriptions and usage limits, Mivo processes verified StoreKit transaction or entitlement information, product and tier, quota counters, and billing-related status; Apple handles payment details. Security and delivery data can include IP address, an app-scoped random installation identifier, App Attest proofs and challenges, request timestamps, hashed photo-session identifiers, and authentication or abuse signals. Tokens are stored in Apple’s Keychain.
5. AI Memory and Local Data
Full AI conversations, browsing and deletion history, favorites, PhotoKit identifiers, and visual feature caches remain on the device. To continue personalization across devices, Mivo may sync a deliberately limited document tied to your Mivo account: distilled stable facts from conversation, inferred preferences, persona parameters, and pet names. Cloud memory excludes photos, videos, full transcripts, PhotoKit identifiers, and pet visual feature representations. On-device AI data is isolated to the signed-in Mivo account; signing out or switching accounts clears that local AI data before the next account is loaded. The current version deletes any legacy human-face feature records left by an older version and no longer creates them.
6. Operations and Analytics
Mivo uses a small allowlist of first-party events to measure activation, reliability, cost, subscription conversion, and feature availability. Records may include salted or hashed identifiers, event name, count, entitlement tier, quota state, model/provider route, token usage, latency, and failure category. They do not include photo pixels, full prompts, full AI responses, full conversation text, or precise tap coordinates. Mivo does not use IDFA, third-party behavioral analytics, advertising profiles, or cross-app tracking.
7. Why We Process Information
Mivo processes information to provide features you request; authenticate accounts; protect subscriptions and enforce quotas; personalize conversations and sync limited memory; secure, debug, and improve service reliability; communicate about support or material service changes; prevent fraud and abuse; and comply with legal obligations. Depending on applicable law, the legal basis is performance of the service contract, your consent for optional AI sharing, our legitimate interests in security and operation, or compliance with law. You may withdraw AI permission for future requests at any time by turning AI off.
8. Recipients and International Transfers
Information is disclosed only as needed to: (a) Apple for Sign in with Apple, StoreKit, App Attest, and platform services; (b) Mivo’s hosting, database, and security infrastructure for accounts, memory, and gateway delivery; (c) Alibaba Cloud Model Studio’s Qwen service for the compressed photo and limited clues described above; and (d) DeepSeek’s Open Platform API for the text inputs described above. These recipients can process information outside your country. Qwen is currently routed to a U.S. Virginia region; DeepSeek processing may occur in China or other locations used for its API. We may also disclose information when legally required, to protect rights and safety, or as part of a business transfer with continued privacy obligations.
9. Sale, Advertising, and Model Training
Mivo does not sell or rent personal information, share it for cross-context behavioral advertising, or use AI request content to train a Mivo model. Mivo submits AI content to obtain the requested output, not for Mivo advertising. Provider-side retention, service improvement, and model-use practices depend on the provider’s current API terms and the Developer’s account configuration; Mivo does not promise a provider-side no-training rule unless its applicable terms expressly provide one. Mivo will not affirmatively authorize a materially broader use of your content without updating this policy and obtaining any consent required by law or Apple rules.
10. Retention and Deletion
Ordinary local data remains until you clear it or remove the App, subject to iOS Keychain behavior. Mivo’s gateway does not intentionally log AI request bodies or persist AI photo copies; the on-device visual summary cache is session memory. Limited cloud AI memory remains until you clear AI memory or delete the account. Account deletion removes the account and associated cloud memory and revokes sessions. Security, quota, transaction, fraud-prevention, backup, and aggregate records may remain for the period reasonably necessary for service integrity, accounting, disputes, or law. AI providers may retain inputs or logs under their API terms; deleting Mivo data may not erase copies they must or are permitted to retain.
11. Your Choices and Privacy Rights
You can limit Photos access in iOS Settings; turn off AI and withdraw future AI-sharing permission; clear local and cloud AI memory; reset browsing history; sign out; or permanently delete the account in Mivo. You may email support@mivoplay.com to request access, correction, deletion, or a copy of account-level personal information, or to appeal a denied request. We may verify the request and retain information where an exception applies. Authorized agents may submit requests where law permits. Mivo does not discriminate for exercising privacy rights. Because Mivo does not sell personal information or conduct cross-context behavioral advertising, “Do Not Track” and Global Privacy Control signals do not change the App’s current behavior.
12. Children and Security
Mivo is not directed to children under 13 and does not knowingly collect their personal information. Users who are 13 but under the age of majority should use Mivo with a parent or guardian’s approval. Contact us if you believe a child’s information was processed. Mivo uses transport encryption, access controls, app attestation, token protection, and other reasonable safeguards, but no internet or storage system is completely secure. Avoid submitting highly sensitive documents or information to AI.
13. Changes, Language, and Contact
We may update this policy as features, providers, or law change and will display the new date. Material changes will be presented conspicuously; if a new use requires consent, Mivo will ask before that use begins. The English text is the primary version for the U.S. release; mandatory law controls. Operator: the individual developer identified as Seller on Mivo’s App Store product page. Privacy and support contact: support@mivoplay.com.