MysticMind

Privacy Policy

Effective date: 2026-02-09

Introduction

MysticMind Labs ("we", "us", "our") respects your privacy. This Privacy Policy explains how your personal data is collected, processed, stored, and protected when you use the MysticMind mobile application and website (mysticmind.com.tr). By downloading the app or using our website, you agree to this policy. If you do not agree, please do not use our services.

Data We Collect

We collect the following data to provide our services: • Account information: Email address, display name, profile photo (optional) • Social login data: Basic profile information (name, email) received from the provider when you sign in with Apple or Google • User-generated content: Dream entries, tarot reading history, and AI interpretations • Device information: Device model, operating system version, app version • Usage data: In-app interactions, feature usage frequency, session duration • Subscription information: Subscription status, plan type (excluding payment details)

How We Use Your Data

We use the data we collect for the following purposes: • To create and manage your account • To provide dream interpretation and tarot reading services • To generate AI-powered personalized insights • To verify your subscription status and enable premium features • To improve app performance and fix bugs • To respond to your support requests • To fulfill our legal obligations

AI Data Processing

MysticMind uses artificial intelligence technologies for dream interpretation and tarot readings: • Your dream texts and tarot selections are sent to third-party AI services (Groq) to generate interpretations. • AI services only process your data during interpretation generation; they do not store it permanently. • For dream visualization, text-based images are generated from third-party image generation services (Pollinations). • Your personal identification information (name, email) is never sent to AI services; only content data is transmitted.

Third-Party Services

We work with the following third-party providers to deliver our services: • Apple App Store / Google Play Store: App distribution and in-app purchases • Apple Sign In / Google Sign In: Social authentication service • Groq: AI-powered text interpretation • Pollinations: AI-powered image generation • Sentry: Error tracking and application stability Each third-party provider is subject to its own privacy policy. Only the minimum necessary data is shared with these services.

Payment Data

MysticMind does not directly collect or store credit card numbers, bank account details, or other financial information on its servers. All payment transactions are processed through Apple App Store or Google Play Store infrastructure. We only receive subscription status, plan type, and purchase confirmation information. Your payment details are managed entirely by Apple or Google.

Data Storage and Security

We implement industry-standard security measures to protect your data: • All data transmission is protected with SSL/TLS encryption • Passwords are hashed using bcrypt algorithm • Our servers are hosted in secure data centers • API access is protected with JWT token-based authentication • Rate limiting prevents abuse • Regular security assessments are conducted While no system is 100% secure, we take all reasonable technical and administrative measures to protect your data.

Data Retention and Deletion

We retain your data only for as long as necessary: • Account data: Retained while your account is active • After account deletion: Production data is permanently deleted within 30 days; backup copies within 45 days • Support requests: Retained for 365 days in accordance with legal requirements • Usage analytics: Stored in anonymous, aggregated form that cannot be linked to personal identity Account deletion requests can be made in-app (Profile > Delete Account) or by emailing [email protected].

Children's Privacy

MysticMind is not intended for individuals under the age of 16. We do not knowingly collect personal data from users under 16. If you are a parent or guardian and become aware that your child has provided us with personal data, please contact us immediately at [email protected]. We will delete the relevant data as soon as possible.

Your Rights

Under the Turkish Personal Data Protection Law (KVKK No. 6698) and applicable regulations, you have the following rights: • To learn whether your personal data is being processed • To request information about the processing if it has been processed • To learn the purpose of processing and whether data is used in accordance with its purpose • To know the third parties to whom your data has been transferred domestically or abroad • To request correction if your data has been processed incompletely or inaccurately • To request deletion or destruction under Article 7 of KVKK • To request notification of corrections and deletions to third parties to whom your data has been transferred • To object to any outcome arising from the analysis of processed data exclusively through automated systems • To claim compensation for damages arising from unlawful processing of your data To exercise these rights, contact [email protected]. Your request will be responded to within 30 days.

Cookies and Tracking

Our website (mysticmind.com.tr) uses essential cookies to remember your language preference. No advertising or third-party tracking cookies are used. Our mobile application does not use cookies. Only the session token and user preferences are stored locally on the device.

Policy Changes

We may update this Privacy Policy from time to time. You will be notified of significant changes through in-app notifications or email. The updated policy takes effect from the moment it is published on this page. Your continued use of our services after changes constitutes acceptance of the updated policy.

Contact

For questions about our privacy policy or your personal data, you can reach us: • Email: [email protected] • Subject: Specify as privacy policy, data request, or KVKK application • Response time: Your request will be responded to within 30 days

Legal Details

  • Company: MysticMind Labs
  • Address: TODO: Add company legal address
  • Jurisdiction: Republic of Turkiye
  • Support: [email protected]
Privacy Policy | MysticMind