Privacy Policy
Mio Sync is built on a simple promise: your wellbeing data belongs to you. This policy explains what we collect, how we protect it, and the choices you control.
Last updated: June 16, 2026
1. Information We Collect
We collect only what is necessary to provide the service. You are never required to share health data you are uncomfortable providing.
1.1 Account Information
- Name and email address — used for account creation, authentication, and essential service communications.
- Profile picture — optional; sourced from Google Sign-In if you choose to connect it.
- Authentication identifiers — securely issued tokens that keep you signed in without storing passwords on our servers.
1.2 Wellness Data You Log
This is the core of Mio Sync and is stored with the highest protection:
- Mood entries — ratings, notes, tags, and time-stamped check-ins.
- Hydration logs — water intake amounts, timestamps, and trends.
- Nutrition logs — meals, photos (if you choose), calorie estimates, and macro breakdowns.
- Activity & sleep — steps, exercise, meditation sessions, and sleep notes.
- Chat history with Unwind — your conversations with the AI buddy, stored so it can remember context and reference past discussions.
1.3 Optional Health Profile Data
You may choose to provide additional context to improve personalization:
- Age, weight, height, and gender.
- Dietary preferences, allergies, and conditions.
- Wellness goals (e.g., daily water target, mindfulness minutes).
None of this is required. You can use Mio Sync fully without providing any of it.
1.4 Device & Technical Data
- App version and OS version — for compatibility and bug fixes.
- Crash logs and diagnostics — only when you opt in to share them.
- Notification preferences — stored locally and synced with your account.
2. How We Use Your Data
Every use of your data serves a specific, disclosed purpose. We do not use your wellness data for advertising or unrelated product development.
- To provide the service — displaying your logs, calculating trends, generating insights, and powering Unwind's memory and context awareness.
- To personalize AI interactions — Unwind uses your recent mood, hydration, meals, and chat history to offer relevant, empathetic responses. This processing happens securely; we do not train general AI models on your individual data.
- To sync across devices — so your data is available when you sign in on a new phone or after reinstalling.
- To send wellness reminders — only the reminders you explicitly enable (e.g., hydration nudges, mood check-in prompts).
- To improve reliability — aggregated, anonymized metrics help us fix bugs and optimize performance. These metrics cannot identify you.
3. Offline-First Storage
Mio Sync is built with an offline-first architecture. This means your data lives on your device first, and syncs to the cloud when a connection is available.
3.1 Local Storage
All wellness data you log is stored locally on your Android device using encrypted local databases. You can view, edit, and analyze your data entirely without an internet connection. Your local data is protected by Android's app sandbox and, where supported, device-level encryption.
3.2 Cloud Sync
When you are online, your local data syncs to our secure cloud infrastructure. Sync is:
- Encrypted in transit using TLS 1.3.
- Encrypted at rest using AES-256.
- Differential — only changes since the last sync are transmitted, minimizing data exposure.
- Resilient — if a sync is interrupted, it resumes cleanly without data corruption.
3.3 What Syncs vs. What Stays Local
- Mood, hydration, nutrition logs
- Chat history with Unwind
- Profile & goals
- Caregiver relationships
- Notification timing preferences
- UI theme & display settings
- Cached AI responses (temporary)
- Crash logs (until opted-in upload)
3.4 Network Independence
You are never locked out of your own data. Even if our servers become temporarily unavailable, you retain full read/write access to everything on your device. When connectivity returns, sync catches up automatically.
4. AI Processing & Unwind
Unwind, the AI buddy inside Mio Sync, processes your messages to generate empathetic, context-aware responses.
4.1 How Unwind Uses Your Data
- Context window — recent chat history and wellness logs are included in the prompt so Unwind can reference your day and past conversations.
- System prompt — includes your 3-day mood trend, hydration level, recent meals, and steps to ground responses in your actual state.
- Memory summaries — rolling summaries of conversations are stored so Unwind can recall topics from days or weeks ago.
4.2 AI Model Providers
Unwind's responses are generated using third-party AI services (e.g., Google AI). When you send a message:
- Your message and the relevant context are transmitted securely to the AI provider.
- Providers process the data only to generate a response and do not retain it for model training unless they have separate consent mechanisms, which we do not authorize on your behalf.
- We select providers with strong data protection commitments and evaluate them regularly.
4.3 AI Is Not a Substitute for Professional Care
Unwind is a wellness companion, not a therapist, doctor, or crisis counselor. It cannot diagnose conditions, prescribe treatment, or replace human professionals. See Section 9 for crisis resources.
5. Caregiver Oversight
Mio Sync includes a Caregiver Mode that lets trusted individuals — family members, partners, or caregivers — view your wellbeing data. This feature is built on explicit consent and strict access controls.
5.1 How Caregiver Access Works
- You generate an invite code from your Settings. This code is a single-use, time-limited token.
- You share the code directly with the person you trust. We do not broker introductions or suggest contacts.
- The caregiver creates a read-only account linked to yours. They can see your wellness dashboard but cannot edit, delete, or add data.
- You can revoke access at any time from Settings. Revocation is immediate and retroactively hides all previously shared data from the caregiver's view.
5.2 What Caregivers Can and Cannot See
- Mood trends and daily ratings
- Hydration & nutrition summaries
- Activity and sleep logs
- Wellness goal progress
- Inactivity alerts (48h check-in)
- Private chat messages with Unwind
- Detailed meal photos (if flagged private)
- Personal notes marked sensitive
- Account credentials and settings
- Revoked-access history
5.3 Technical Safeguards
Caregiver access is enforced at the database layer using Row-Level Security (RLS). Even if the app's frontend were compromised, the database would still reject any write attempt from a caregiver account. Privilege escalation is structurally impossible.
6. Data Sharing & Third Parties
We do not sell, rent, or trade your personal data. We share data only with the following categories of service providers, and only what is necessary for them to perform their function:
- Cloud infrastructure (e.g., Supabase) — for encrypted database storage, authentication, and sync.
- AI inference providers (e.g., Google AI) — for generating Unwind's responses. See Section 4.
- Push notification services — to deliver reminders you opt into. They receive device tokens, not wellness content.
- Analytics (optional) — if you opt in, anonymized usage metrics help us improve the app. These contain no wellness data.
All providers are contractually bound to use your data only for the purposes we specify and to maintain security standards comparable to our own.
7. Google Sign-In
You can sign in to Mio Sync using your Google account. When you do:
- We request only your basic profile: name, email address, and profile picture.
- We do not request access to Gmail, Google Drive, Google Calendar, Contacts, or any other Google service.
- Your Google credentials are never stored on our servers. Authentication is handled via secure OAuth 2.0 tokens.
- You can disconnect Google Sign-In at any time from Settings. Your account will remain accessible via email/password if you set one up.
8. Data Retention & Deletion
8.1 Retention
- Active accounts: Your data is retained for as long as your account remains active, so you can build long-term wellness insights.
- Inactive accounts: After 24 months of inactivity, we may send you a notification offering data export or deletion. If you do not respond, we schedule automatic deletion after an additional 6 months.
- Caregiver relationships: When access is revoked, the caregiver's view of your data is immediately purged.
8.2 Your Right to Deletion
You can delete your account and all associated data at any time:
- Self-service deletion — available in Settings > Account > Delete Account. This is permanent and irreversible.
- Email request — send a deletion request to support@miosync.live from your registered email. We process verified requests within 30 days.
Deletion removes your data from live systems and backups within 90 days. We may retain minimal transaction records if required by law (e.g., tax or fraud regulations), but these will not contain wellness content.
9. Crisis Resources & Safety
Mio Sync includes features designed to support emotional wellbeing, but it is not a crisis intervention service. If you or someone you know is in immediate danger, please use the resources below.
9.1 In-App Crisis Support
Mio Sync provides one-tap access to crisis helplines from the Safe Space screen:
These are displayed prominently when distress is detected or at any time via the SOS button. We do not monitor these calls or share the fact that you contacted a helpline with caregivers or third parties.
9.2 Safety Protocols
- Distress detection — If a mood log or chat message signals severe distress, the app dims non-essential UI and surfaces calming tools (breathing exercises, grounding prompts, and crisis numbers). This is a local, on-device response; the data is not sent to caregivers or flagged to us automatically.
- No automated alerts — We do not send automatic wellness alerts to caregivers, employers, or emergency services based on your content. The 48-hour inactivity check is the only automated caregiver notification, and it does not disclose any log content.
- Human review — We do not manually review your private chat history or mood notes. AI processing is automated and anonymized where possible.
9.3 Important Disclaimer
Mio Sync is an informational wellness tool. It does not provide medical advice, diagnosis, or treatment. Always seek the advice of a qualified health provider with questions about a medical condition. Never disregard professional advice because of something you read or experienced in the app.
10. Security
We protect your data using a layered security model:
- Encryption in transit: All data transmitted between the app and our servers uses TLS 1.3.
- Encryption at rest: Cloud databases use AES-256 encryption. Local device storage uses Android's encrypted shared preferences and SQLCipher where available.
- Row-level security (RLS): Database policies ensure you can only access your own data, and caregivers can only read what you explicitly share.
- Authentication: OAuth 2.0 and JWT tokens with automatic expiry and refresh rotation.
- Regular audits: We review access logs and infrastructure configurations for anomalies.
No system is perfectly secure, but we are committed to rapid response. If we become aware of a breach that affects your data, we will notify you within 72 hours and take immediate remedial action.
11. Children
Mio Sync is not intended for children under 13. We do not knowingly collect personal data from children under 13. If you believe we have inadvertently collected data from a child under 13, please contact us immediately at support@miosync.live and we will delete the information promptly.
12. Your Rights
Depending on your location, you may have the following rights regarding your personal data:
- Access — request a copy of the data we hold about you.
- Correction — update inaccurate or incomplete data.
- Deletion — erase your data (see Section 8).
- Portability — export your data in a machine-readable format from Settings.
- Restriction — limit how we process your data in specific circumstances.
- Objection — object to certain types of processing (e.g., optional analytics).
- Withdrawal of consent — where processing is based on consent, you may withdraw it at any time.
To exercise any of these rights, email us at support@miosync.live. We will respond within 30 days and verify your identity before acting on the request.
13. International Data Transfers
Our infrastructure providers may process data in regions outside your country of residence. When this occurs, we rely on standard contractual clauses and adequacy decisions to ensure your data receives protection equivalent to that in your home jurisdiction.
14. Changes to This Policy
We may update this Privacy Policy as the app evolves. Material changes will be communicated via:
- An in-app notification when you next open Mio Sync.
- An email to your registered address if the change is substantial.
Continued use of the app after the effective date of an update constitutes acceptance of the revised policy. If you do not agree, you may delete your account.
15. Contact
If you have questions, concerns, or requests about this Privacy Policy or how we handle your data, please reach out: