Privacy Policy
Last updated: 5 September 2026
GENOVEVA BOTĂNESCU ("we", "us") makes MiMeMo. This policy explains what MiMeMo does with your information, in plain language and without hedging. If anything here is unclear, write to support@mimemo.art and ask.
The short version
MiMeMo works on your device. The posts you make, the photographs you bring, the templates you use and the projects you save all stay in the app's own storage on your phone. You can sign in with Apple if you want an account, but nothing requires it and signing in uploads none of your work. We do not run analytics, we do not advertise, and we do not track you.
There is one exception, and it matters: the AI tools send your picture to a third party. Section 3 says exactly what that means.
The app also asks our own server, once in a while, whether there are new stickers, frames or backgrounds. That request carries no picture and nothing about you — it is the same kind of request your browser makes when it loads an image.
1. Who is responsible
GENOVEVA BOTĂNESCU
Email: support@mimemo.art
We are the data controller for the information described here.
We are not required to appoint a Data Protection Officer, because MiMeMo does not monitor people on a large scale and does not process special categories of data. Privacy questions go to support@mimemo.art.
2. What stays on your device
Almost everything. The following never leaves your phone unless you send it somewhere yourself:
- Projects, slides, layers, text and every edit you make
- Photographs and videos you import from your photo library
- Exported posts, until you save or share them
- Your favourites, your recently used templates and your settings
- Whether you have finished the first run, and which membership you hold
We cannot see any of it. It is stored in MiMeMo's own container, which iOS keeps separate from other apps, and it is included in your device backup if you have one switched on. Deleting the app deletes all of it.
3. What leaves your device
AI tools
MiMeMo's AI tools — removing an object, expanding a picture beyond its edges, and generative editing — cannot run on the phone. When you use one, the app sends the image you are editing and the instruction for that edit to OpenAI, which returns the altered image.
- The picture is sent for that one edit and is not stored by us.
- OpenAI states that data sent through its API is not used to train its models, and is retained for a limited period for abuse monitoring before deletion. Their terms govern what happens on their side: openai.com/policies
- No identifier of you or your device is attached to the request.
- If you would rather no picture ever left your phone, do not use these three tools. Everything else in MiMeMo works without them.
Downloading the library
MiMeMo's stickers, frames, backgrounds and layouts are in the app when you install it. So that new ones can arrive without waiting for an app update, the app asks our library server whether the list has changed — when you open it, and at most once an hour — and downloads the pictures for anything new.
The meme pictures are not in the app, because there are 690 of them. The first time you open Match, MiMeMo downloads the small versions — about 4 MB, once — and fetches a full-size picture only when you actually choose that meme. The descriptions the matching runs on are in the app, so a photograph can be matched on a phone that has never been online.
- Nothing about you or your phone is sent. No account, no identifier, no cookie, and never one of your own pictures. These are ordinary requests for public files, exactly like loading images on a web page — and nothing about which memes you looked at is recorded by us.
- Like every web server, ours receives the IP address the request came from, and the standard connection information any server sees. We do not use it to build a profile, we do not join it to anything else, and there is nothing to join it to.
- The files are served by Supabase, which hosts our storage, through Cloudflare, which is the network that delivers it. Neither is given anything beyond the request itself.
- These are the only routine requests MiMeMo makes. If the server cannot be reached you keep the library the app came with, and Match will tell you it could not fetch the memes rather than failing silently.
Crash reports
When MiMeMo stops working, it sends a report so the fault can be found and fixed. The report is the technical account of the failure — where in the code it happened, which version of the app and of iOS, what kind of device — and it is handled by Sentry.
- No picture is ever attached. Sentry can send a screenshot of the screen at the moment of a crash, and MiMeMo switches that off, because a crash in the editor would send a picture of your photograph. The view hierarchy, which would carry any caption you were typing, is switched off for the same reason.
- No identifier is attached, and no IP address. Sentry's own recommended setup sends the reader's IP with every report; MiMeMo does not.
- No usage tracking. Session reporting and performance monitoring are both switched off. MiMeMo does not tell us that you opened it, only that it broke.
- A short trail of what the app was doing rides along with the failure — which screens you passed through on the way to it, whether the phone was on wifi, which way up it was being held. It is what turns a stack trace into something explicable. It carries nothing you typed, nothing you photographed, and no record of which memes you looked at.
- You can turn it off, in More → Support → Send Crash Reports. It stops immediately.
- Sentry processes these in the United States: sentry.io/privacy
Signing in
Signing in is optional, and everything in MiMeMo works without it. It exists so that an account can eventually carry your work between devices.
The only way to sign in is Sign in with Apple. When you use it, Apple asks you what to share and then hands MiMeMo a signed token, which is passed to Clerk, who keep the account.
- Clerk receives the token from Apple, and from it your user identifier and the email address Apple gives us — which is a private relay address unless you chose to share your real one. Your name is included only if Apple sends it, which Apple does only the first time you sign in.
- We never see your Apple password, and there is no MiMeMo password to lose.
- Your projects are not part of your account. They are on your phone, and signing in does not upload them.
- You can delete the account from inside the app, in More → Account → Delete Account. It deletes, it does not deactivate, and it cannot be undone.
- Clerk processes this in the United States: clerk.com/legal/privacy
Subscriptions
If subscriptions are switched on and you buy one, Apple handles the payment. Apple tells us that a subscription is active; we never see your card, your address or your Apple ID. Apple's own privacy policy covers that transaction.
Support email
If you write to us, we have your email address and whatever you put in the message. We keep support threads so that a second message about the same problem makes sense.
4. What we do not do
To be explicit, because most apps do some of these:
- No analytics SDK, no usage tracking, no session recording
- No advertising, no ad identifiers, no attribution or conversion tracking
- No third-party trackers of any kind. MiMeMo contains exactly two third-party components — Sentry, which reports crashes and can be switched off, and Clerk, which holds your account if you choose to make one. Both are described in Section 3
- No cookies, no device identifier, and no identifier of any kind attached to the library request described in Section 3
- No selling or sharing of personal information, in any sense the CCPA uses those words
- No password. The only way to sign in is with Apple, so there is nothing for us to store and nothing for you to lose. An account is optional and everything works without one
5. Permissions the app asks for
Photo library. To let you bring pictures in, and to save what you export. iOS asks you, not us, and you can change your mind in Settings. MiMeMo only reads the pictures you actually choose.
Notifications. Optional, and only asked once during the first run. Decline and nothing else changes. You can change this in Settings at any time.
MiMeMo does not ask for location, contacts, microphone or your camera roll in the background.
6. Legal bases for processing
Under the GDPR:
- Performance of a contract, Article 6(1)(b) — running the AI edit you asked for, providing the subscription you bought, and keeping the account you chose to create.
- Legitimate interests, Article 6(1)(f) — answering your support message, and protecting the app against abuse. Our interest is in a working, safe product; it does not override your rights, and you may object.
- Consent, Article 6(1)(a) — notifications, and photo library access. Withdraw either in Settings at any time.
- Legal obligation, Article 6(1)(c) — keeping records of purchases where tax law requires it.
7. Who else is involved
| Who | What they get | Why |
|---|---|---|
| OpenAI | The image and instruction for one AI edit | The edit cannot run on the phone |
| Apple | Your purchase | Apple sells the subscription, we do not |
| Supabase | The IP address a request for a library or meme file came from | They host the files the app downloads |
| Cloudflare | The same request, in transit | They are the network that delivers those files |
| Sentry | A crash report: where the app failed, its version, the kind of device | So the fault can be found and fixed |
| Clerk | Your Apple user identifier and the email address Apple provides, if you sign in | They hold the account, so that it can one day carry your work between devices |
That is the complete list. When that changes — and Section 11 explains that it will — this table changes with it, before the feature ships.
8. Where your information goes
OpenAI processes data in the United States. Our library storage is hosted in the United States (Oregon), and Cloudflare delivers it from wherever is nearest to you. Sentry processes crash reports in the United States, and Clerk holds accounts there. Where personal data is transferred out of the European Economic Area, the transfer relies on the European Commission's Standard Contractual Clauses.
9. How long we keep things
| What | How long |
|---|---|
| Everything on your device | Until you delete it, or delete the app |
| Images sent to an AI tool | Not stored by us. OpenAI's retention is described in their policy |
| Requests for library and meme files | Kept by our hosts in their ordinary server logs, for a short period, and not read by us |
| Crash reports | 90 days, Sentry's default, then deleted |
| Your account, if you make one | Until you delete it, which you can do in the app at any time |
| Support email | 3 years from the last message in the thread |
| Purchase records | As long as tax law requires, typically 7 years |
10. Keeping it safe
Requests leave the app over TLS. Your work sits inside the app's own container, which iOS isolates from other apps and protects with the device's own encryption when your phone is locked with a passcode.
No system is perfect. Use a passcode, keep iOS up to date, and tell us at support@mimemo.art if you see something wrong.
11. Features that are not switched on yet
MiMeMo is being built in the open. Two things this section promised have now shipped, and this policy was updated before each of them, as promised: the hosted library described in Section 3, and signing in.
Signing in exists but is not finished. What it does today is create an account. What it is for — carrying your projects between devices — is not built, and no project has ever left your phone.
One planned change remains:
- Syncing your work, so that the account you can already make becomes useful
It is not live. When it ships, this policy will be updated before it does, and the change will be announced in the app. Until then, nothing in this document is aspirational: it describes what the app does today.
12. Children
MiMeMo is not for children under 16, and we do not knowingly collect anything from them. If you believe a child has sent us information, write to support@mimemo.art and we will delete it.
13. Your rights
Wherever you live, you may ask us to:
- Access what we hold about you
- Correct anything that is wrong
- Delete what we hold
- Restrict or object to how we use it
- Receive it in a portable form
- Withdraw consent, at any time, without affecting what came before
In practice we hold almost nothing about you: unless you have written to us or bought a subscription, there is nothing to send. Everything else is on your phone, where deleting the app deletes it.
Write to support@mimemo.art. We answer within one month, and it is free unless a request is plainly excessive.
You may also complain to the data protection authority in the country you live in.
14. California
If you live in California, the CCPA gives you the right to know what is collected, to have it deleted, to opt out of sale or sharing, and not to be treated differently for asking.
We do not sell or share personal information, and we do not collect the categories a CCPA disclosure usually lists. Write to support@mimemo.art with "California Privacy Rights" and we will confirm that in writing.
15. Do Not Track
MiMeMo has no browser and does no tracking, so there is no Do Not Track signal for it to honour.
16. Refunds
If you ask Apple for a refund, Apple may ask us for information about how the purchased content was used, to decide the claim. We share only what is needed to answer that question.
17. Changes
We will update this policy when the app changes. The date at the top always says when. If a change is material — a new recipient of your data, a new category collected — we will tell you in the app before it takes effect, not afterwards.
18. Contact
GENOVEVA BOTĂNESCU
Email: support@mimemo.art
General questions: within 5 working days. Requests about your rights: within one month.