Privacy Policy
Last updated June 2026
mmmry (“mmmry,” “we,” “us”) is a private, AI-assisted place to save the things you find and surface the ones that match your goals. This policy explains what we collect, why, and the control you keep over it. The short version: we collect the minimum needed to run the service, we encrypt your saved content with a key unique to you, and we never sell your data, run ads, or use third-party behavioral tracking.
Who we are
What we collect
- Things you save (your content). The cards you capture — notes, quotes, web pages, images and the text inside them, plus any title, tags, or goals you add. The sensitive text of each card is encrypted at rest with a per-user key (see “How we protect it”).
- Account basics. Your email address and, if you use single sign-on, the account identifier returned by your provider (Google or Apple). We support passwordless email sign-in and SSO; we do not store passwords.
- Image and file assets. Stored in object storage under a per-user prefix.
- Derived search data. To make search work without decrypting your library on every query, we store non-human-readable derived artifacts — a full-text search index, numeric “embedding” vectors that represent meaning, and dominant-color values. These are computed from your content and used only to find and rank it for you.
- Operational counters. Aggregate, first-party counts (for example, how many cards were created or searches run on a given day). These carry no payload — no search text, no card content, no profile of you.
- Billing data (paid plans only). If you subscribe, our payment processor (Stripe) handles your card details directly. We receive only a customer/subscription identifier and plan status — we never see or store your full card number.
- Basic technical logs. Standard server logs (such as IP address and request metadata) needed to operate the service, keep it secure, and debug problems. We keep these for a limited period.
What we do NOT collect
How we use it
- To provide the core service — store, organize, search, and surface what you save.
- To run AI enrichment (see below): summaries, tags, OCR, color, semantic search, and goal-alignment scoring.
- To send you transactional and reminder emails you've enabled (see “Email”).
- To keep the service secure, prevent abuse, enforce limits, and fix bugs.
- To process payments and manage subscriptions, for paid plans.
AI processing — read this
How we protect it
- Per-user encryption at rest. Sensitive text columns are encrypted with AES-256-GCM using a per-user key, which is itself wrapped by a master key. A database or disk dump alone does not reveal your readable content.
- Honest limit. Because AI features run server-side — including while you are logged out — the running server must be able to decrypt content to process it. Encryption protects against a stolen database or disk; it does not protect against a fully compromised, running application server. We design and operate to reduce that risk but state it plainly rather than over-promise.
- Transport is encrypted (HTTPS/TLS). Access to production systems is limited.
Cookies
Sharing & disclosure
Retention
Your controls & rights
- Export — download all of your data (cards as plain text, collections, goals, and image files) as a single zip from Settings.
- Delete — permanently delete your account and everything in it, including object-storage assets, from Settings. This is irreversible.
- Access / correction — you can view and edit your content directly in the app at any time.
Depending on where you live, you may have additional rights — to know, access, correct, delete, or port your personal information, and to be free from discrimination for exercising them. California residents (CCPA/CPRA): we do not sell or share personal information and do not use sensitive personal information for purposes requiring an opt-out. EU/EEA/UK residents (GDPR/UK GDPR): you may also object to or restrict processing and lodge a complaint with your supervisory authority. To exercise any right, email [email protected] — we'll verify and respond within the period your law requires. Many of these rights are already self-serve via Export and Delete above.