Mirynna logo MIRYNNA
Platform Capabilities Rynna Integrations Security Pricing Join early access
LEGAL

Privacy Policy

Last updated: September 23, 2026

Mirynna is an AI-enabled business operating system that connects services a business chooses to authorize. This policy explains the categories of information Mirynna may process, why that information is used, how connected-service data is handled, and the choices available to users and merchants.

1. Scope

This policy applies to Mirynna websites, applications, and services operated under the Mirynna brand. It does not replace the privacy policies of third-party services that you choose to connect, such as Google Workspace or Shopify.

2. Information Mirynna processes

  • Account and workspace data. Name, email address, organization membership, role, connected-business settings, preferences, and authentication metadata.
  • Connected-service data. Data made available by services you explicitly authorize, limited to the permissions and product features you enable.
  • Business content. Tasks, approvals, generated drafts, product information, business notes, and other content created or stored through Mirynna.
  • Usage and security data. Application events, error information, authentication events, device or request metadata, and logs used to operate, secure, and troubleshoot the service.
  • Support communications. Information you provide when requesting support or communicating with Mirynna.

3. Google Workspace data

If you connect Google Workspace, Mirynna may access the Google services you authorize, which can include Gmail, Calendar, Drive, Docs, Sheets, Tasks, Contacts, and Google Chat. Mirynna requests access to provide visible user-facing productivity features such as searching business context, summarizing requested information, opening files or messages, organizing work, and preparing or executing user-authorized actions.

Google Workspace content is retrieved in response to user requests and is treated as untrusted external content. Mirynna does not use Google Workspace data for advertising, does not sell it, and does not use it to create, train, or improve a general-purpose AI or machine-learning model. Where an AI service provider is used to fulfill a user-requested feature, only information relevant to that feature should be transmitted and the transfer is limited to providing the user-facing function.

Google Limited Use. Mirynna's use of information received from Google Workspace APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.

Read the dedicated Google API Data Use disclosure →

4. Shopify data

If a merchant connects Shopify, Mirynna may process store configuration, products, variants, collections, orders, reports, and other data permitted by the merchant's granted scopes. Protected customer data is requested only when required for an enabled merchant-facing feature and only after Shopify permits that access. Mirynna does not sell Shopify customer data or use it for unrelated advertising.

5. How information is used

  • Provide, authenticate, and operate Mirynna.
  • Deliver features requested by the user or merchant, including connected-service retrieval, analysis, workflow preparation, and approved actions.
  • Maintain organization and role-based access controls.
  • Provide Rynna's user-facing AI assistance and business context.
  • Detect abuse, investigate failures, protect accounts, and maintain service reliability.
  • Provide support and communicate about the service.
  • Comply with applicable law and enforce agreements.

6. AI service providers

Mirynna may use AI infrastructure providers to deliver user-requested AI features. Relevant content can be sent to those providers when necessary to produce a requested response or action. Mirynna does not authorize providers to use Google Workspace data to train general-purpose models. Current material service providers are listed on the Subprocessors page.

7. Service providers and subprocessors

Mirynna uses service providers for cloud hosting, database infrastructure, authentication, AI inference, and transactional email. Providers receive only the information reasonably necessary to perform their service and are expected to handle it under applicable contractual and security obligations.

8. Data retention and deletion

Mirynna is implementing a documented production retention schedule designed to keep personal data only as long as needed for the feature, legal obligation, security purpose, or merchant instruction that justified collection. Connected-service authorization credentials are retained only while a connection remains active or until they are revoked or removed. Google Workspace content is not intended to be retained as a permanent copy merely because it was retrieved; persistent storage should occur only when the user explicitly creates or saves a Mirynna object such as a task, approval, note, or memory.

Mirynna maintains and continues to refine retention and deletion controls for account closure, connection removal, Shopify privacy requests, and applicable user requests. Retention periods are limited to what is reasonably necessary for the applicable feature, security need, legal obligation, or merchant instruction.

9. Security

Mirynna uses technical and organizational safeguards appropriate to the service. Current controls include Firebase/Google Identity authentication, organization membership checks, server-side provider credentials, encrypted Google and Shopify OAuth token storage, Google Cloud Secret Manager for application secrets, HTTPS transport, separated development and production projects, and approval gates for consequential connected-service actions. See Security & Control for more information.

10. Human access

Access to connected-service content by Mirynna personnel is restricted to situations where it is necessary to provide support with the user's affirmative permission, investigate security or abuse, comply with law, or operate the service in another manner permitted by applicable provider policies.

11. Your choices and rights

You may disconnect supported integrations, revoke provider authorization, clear supported conversation state, and request access, correction, or deletion of personal information as applicable. Additional rights may apply based on your location. Privacy and data-rights requests can be submitted to privacy@mirynna.com.

12. International processing

Service providers may process information in jurisdictions other than the user's own. Where required, Mirynna will use appropriate contractual or legal transfer mechanisms before public commercial launch.

13. Children

Mirynna is a business service and is not directed to children. The service is not intended for use by individuals under the age required to enter a binding business-service agreement in their jurisdiction.

14. Changes

Mirynna may update this policy as the service evolves. Material changes will be reflected by updating the date above and, where appropriate, providing additional notice.

15. Contact

For privacy, data-access, deletion, or data-protection questions, contact Mirynna at:

  • Business name: Mirynna
  • Privacy and data requests: privacy@mirynna.com
  • General support: support@mirynna.com
  • Company phone: +1 (702) 789-7604
Mirynna logo MIRYNNA

AI Business Operating System

Product Platform Capabilities Rynna Integrations Pricing
Company About Security How it works Subprocessors
Legal Privacy Terms Data Processing Google API Data Use
© 2026 Mirynna. All rights reserved. Built to make work lighter.