MirageHub Privacy Policy

Last updated: 2026-07-08

Controller: Yangjiang Diqu Trading Co., Ltd.

Contact: jackiosaccolski@gmail.com

Privacy Policy — MirageHub

Effective date: 8 July 2026

This Privacy Policy describes how MirageHub (“App,” “we,” “us,” or “our”) collects, uses, stores, shares, and protects information when you download, install, register for, or use our Android social application distributed through Google Play. MirageHub enables content browsing, user discovery, matching, instant messaging (text, images, and voice), video chat, profile management, and related features.

By creating an account or continuing to use MirageHub after the effective date above, you acknowledge that you have read this Privacy Policy. Where required by applicable law, we will obtain your consent for specific processing activities. If you do not agree with this Privacy Policy, please do not use the App.


We process personal data only where we have an appropriate legal basis (also referred to as a lawful basis under applicable data protection laws). The grounds we rely on depend on the nature of the processing, your relationship with us, and the laws that apply in your region.

Performance of a contract. When you register for an account and use MirageHub’s core social features— including browsing feeds, viewing profiles, matching with other users, sending messages, uploading media, participating in voice or video chat, and managing your profile—we process account identifiers, profile information, communications content, and related technical data as necessary to provide the services you request under our User Terms.

Legitimate interests. We may process certain information where doing so is necessary for our legitimate interests, provided those interests are not overridden by your rights and freedoms. Examples include: operating and maintaining the App; ensuring network and account security; detecting abuse, fraud, or policy violations; improving performance and reliability through diagnostics; and communicating with you about service-related matters. Where we rely on legitimate interests, we balance our needs against the impact on you and implement safeguards such as access controls and data minimization.

Consent. Where required by law or by the Android permission model, we rely on your consent—for example, when you grant Camera, Microphone, Photos and media, or External Storage permissions at the system level, or when you confirm that you meet our age eligibility requirements. You may withdraw consent for optional permissions through Android settings; withdrawal may limit related features but will not affect processing based on other legal bases.

Legal obligation. We may process or retain information where necessary to comply with applicable laws, regulatory inquiries, tax or accounting obligations, or valid legal process, and to establish, exercise, or defend legal claims.

The following table summarizes how primary processing purposes map to legal bases:

| Processing purpose | Legal basis |

|---|---|

| Account creation, authentication, and session management | Performance of a contract; legitimate interests (security) |

| Profile, avatar, and user-generated content | Performance of a contract; consent (where applicable for media) |

| Messaging, matching, and social interaction | Performance of a contract |

| Video and voice features | Performance of a contract; consent (device permissions) |

| Subscriptions and entitlement verification | Performance of a contract; legal obligation (financial records where applicable) |

| Analytics, crash reporting, and diagnostics | Legitimate interests (product improvement and stability) |

| Security monitoring and abuse prevention | Legitimate interests; legal obligation where applicable |

| Use of infrastructure and service providers | Performance of a contract; legitimate interests |

If you are located in the European Economic Area, the United Kingdom, or Switzerland, you may have additional rights regarding these legal bases, as described in the Rights and U.S. Notices section below.


Security

We implement administrative, technical, and organizational measures designed to protect personal data against unauthorized access, alteration, disclosure, loss, or destruction. These measures are proportionate to the sensitivity of the data we process and the risks associated with our social and real-time communication features.

Our security practices may include, where appropriate: encrypted transmission of data in transit; access controls limiting employee and contractor access to production systems on a need-to-know basis; authentication safeguards for administrative environments; logging and monitoring of critical infrastructure events; and procedures for reviewing access permissions. No method of electronic storage or transmission is completely secure; while we strive to protect your information, we cannot guarantee absolute security.

If we become aware of a personal data breach that is likely to result in a risk to your rights and freedoms, we will take steps consistent with applicable law, which may include notifying affected users, regulators, or other parties where required. If you believe your account or data has been compromised, contact us promptly at jackiosaccolski@gmail.com so we can investigate and assist with protective steps such as credential review or session termination where technically feasible.

You also play a role in protecting your account. Choose a strong password, do not share login credentials, and log out on shared devices. Report suspicious activity through our support channel.


Rights and U.S. Notices

Depending on where you live, you may have statutory rights regarding your personal data or personal information. This section explains how to exercise those rights globally and provides notices required for certain U.S. state residents.

Global privacy rights

Subject to applicable law and reasonable verification, you may have the right to:

Correction and rectification. If you believe that personal data or personal information we hold about you is inaccurate or incomplete, you may request correction (also called rectification under some laws). To submit a correction request, email jackiosaccolski@gmail.com with sufficient detail to identify your account and the information you wish updated. We will review verified requests and amend records where appropriate. We will respond to privacy-related requests within a reasonable period after verification.

To exercise any other rights described in this section, contact jackiosaccolski@gmail.com. We may need to verify your identity before fulfilling requests. We do not discriminate against users for exercising privacy rights where prohibited by law.

Data Protection Officer (DPO)

We have designated Privacy Officer to oversee data protection compliance and to serve as our contact for data protection matters. Users may contact the DPO regarding the processing of personal data, applicable privacy rights, and related inquiries. You may reach Privacy Officer at jackiosaccolski@gmail.com. The DPO handles questions relating to how MirageHub processes personal data, assists with rights requests where appropriate, and coordinates internal responses to privacy-related concerns.

U.S. State Privacy Rights

California and Virginia privacy rights

This subsection applies to residents of U.S. states with comprehensive privacy laws, including California and Virginia, to the extent those laws apply to our processing.

California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA). California residents have rights that may include: the right to know about personal information collected, used, disclosed, or shared; the right to access personal information; the right to request deletion; the right to correct inaccurate personal information; and the right to limit certain uses of sensitive personal information where applicable. To exercise these rights, email jackiosaccolski@gmail.com. We will respond to privacy-related requests within a reasonable period after verification.

Right to know (California / Google Play disclosure). California residents have the right to know whether we collect, use, or share personal data or personal information with third parties, and to obtain details about categories, sources, purposes, and recipients as required under the CCPA. You may submit a request to jackiosaccolski@gmail.com to learn what personal information we have collected about you and how it has been used or disclosed.

Meaning of “share” under the CCPA. Under California law, “share” and “sharing” have a specific definition under California law that differs from ordinary English usage. Sharing may include making personal information available to a third party for cross-context behavioral advertising—for example, providing identifiers or activity signals to an advertising partner so that partner can display ads to you on other websites or apps based on your activity across contexts. MirageHub does not sell personal and sensitive user data, and our primary sharing is limited to service providers that help us operate the App, as described in Sharing Matrix. For a complete description of recipients and purposes, refer to the Sharing Matrix and Data Inventory sections. California residents may exercise the right to know by emailing jackiosaccolski@gmail.com; We will respond to privacy-related requests within a reasonable period after verification.

Virginia Consumer Data Protection Act (VCDPA). Virginia residents may have rights to access, correct, delete, and obtain a copy of personal data, and to appeal certain denied requests where applicable. To exercise VCDPA rights, contact jackiosaccolski@gmail.com. We will respond to privacy-related requests within a reasonable period after verification.

How to opt out (VCDPA). The following explains how to opt out of certain processing categories under Virginia law:

  1. Targeted advertising: MirageHub is a social application and does not use your personal data for cross-context targeted advertising as a primary business model. If you wish to opt out of any future targeted advertising processing, or to confirm our current practices, email jackiosaccolski@gmail.com.
  2. Sale of personal data: We do not sell personal data. If you wish to opt out of any sale or to receive confirmation that we do not sell personal data, contact jackiosaccolski@gmail.com.
  3. Profiling with legal or similarly significant effects: We do not engage in profiling that produces legal or similarly significant effects concerning you. If you have questions or wish to opt out of any profiling that may be introduced in the future, contact jackiosaccolski@gmail.com.

EEA, UK, and Swiss users

Where the General Data Protection Regulation or equivalent UK/Swiss rules apply, our legal bases are set out in Legal Basis. You may contact jackiosaccolski@gmail.com or our DPO to exercise rights of access, rectification, erasure, restriction, objection, and data portability where applicable. You may also lodge a complaint with your local supervisory authority.


Retention

We retain personal data only for as long as reasonably necessary to fulfill the purposes described in this Privacy Policy, unless a longer retention period is required or permitted by law.

Account and profile data. Information associated with your account (such as email, account identifier, nickname, profile fields, and avatar references) is retained while your account remains active. If you delete your account or request deletion, we will delete or anonymize account data within a reasonable period, subject to backup cycles and legal holds.

Messages and user-generated content. Chat messages, images, voice clips, and other content you send may be retained while your account is active and for a limited period thereafter to support dispute resolution, safety investigations, and technical recovery from backups. Deleted messages may persist in encrypted backups for a limited time before automatic purging.

Device and diagnostic data. Logs, crash reports, and device metrics used for analytics and security are typically retained for shorter periods, often ranging from several days to twenty-four months depending on the data type and operational need, after which they are deleted or aggregated.

Subscription and transaction records. Records relating to subscription status and payment-related metadata processed through Google Play may be retained as required for billing support, fraud prevention, and legal compliance.

When retention periods expire, we delete, anonymize, or aggregate data so it can no longer reasonably identify you. You may request deletion at any time by contacting jackiosaccolski@gmail.com or through in-app account deletion options where available.


Permissions

MirageHub requests Android permissions only when you initiate features that require them. Permissions are not used to collect unrelated data. You may revoke permissions at any time through your device’s Android settings; doing so may disable the related feature until permission is granted again.

Camera

Uses: Capturing a new profile avatar when you choose “take photo,” and transmitting live video during video chat sessions you start or accept.

Background usage: The camera is not used in the background. MirageHub does not silently record video, monitor your environment, or access the camera outside active avatar capture or an ongoing video chat you have entered.

Microphone

Uses: Recording voice messages when you press the record control in chat, and capturing audio during active video chat sessions.

Background usage: The microphone is not used in the background. We do not continuously listen, ambient-record, or activate the microphone outside explicit voice-message recording or an active video call you have joined.

Photos and media

Uses: Letting you select images from your device gallery to send in chat, set as your avatar, or attach in other in-app flows where you choose local media.

Background usage: Photos and media access is not used in the background. We read only the specific items you select through the system picker or scoped storage APIs; we do not scan your entire gallery or upload unselected files.

External Storage

Uses: Supporting read/write access to media files you explicitly choose to share or save within MirageHub on Android versions where scoped storage or legacy storage permissions apply to those user-initiated actions.

Background usage: External storage access is not used in the background for unrelated file harvesting. Access is tied to user-initiated media selection or saving.

Browsing feeds, viewing profiles, and using matching features without sending media or entering calls does not require these sensitive permissions.


Children

MirageHub is intended exclusively for adults. Our age policy requires users to be 18 years of age or older. We do not knowingly collect personal data from anyone under 18.

The App does not implement continuous in-app age verification beyond your initial confirmation that you meet the minimum age requirement. Parents and guardians should supervise device use by minors and prevent installation where age requirements are not met.

If you believe we have inadvertently collected information from a person under 18, contact jackiosaccolski@gmail.com with sufficient detail. We will investigate and take appropriate steps, which may include deleting the account and associated data.


Eligibility and Access Mode

To use MirageHub, you must:

  1. Be at least 18 years old and legally permitted to enter a binding agreement in your jurisdiction.
  2. Provide accurate registration information, including a valid email address used for account creation and authentication.
  3. Comply with our User Terms and community standards.

Account creation and access. MirageHub supports account creation. When you register, we collect information such as your email address and account credentials (password), and we assign an internal account identifier to authenticate sessions and link your profile, messages, matches, and subscription entitlements. You are responsible for maintaining the confidentiality of your login credentials.

Access without optional features. You may browse content and use text-based social features without granting Camera, Microphone, or media permissions. Optional features—including avatar capture, image sending, voice messages, and video chat—require the corresponding permissions at the time you choose those features.

Subscriptions. MirageHub offers subscriptions through Google Play; specific plans, pricing, and renewal terms appear in the in-app product listing. Subscription status is processed through Google Play’s billing system. We receive entitlement and transaction metadata necessary to unlock premium features but do not receive your full payment card details, which are handled by Google.


Changes and Contact

We may update this Privacy Policy from time to time to reflect changes in our practices, legal requirements, or product features. When we make material changes, we will provide notice through the App, by email where appropriate, or by posting the revised policy with an updated effective date. Continued use after the effective date of an updated policy constitutes acceptance where permitted by law.

For privacy questions, rights requests, or complaints:

We will respond to privacy-related requests within a reasonable period after verification.


Additional Operational Details

This section describes how MirageHub operates as an Android social product and how data flows through key features.

Feed and discovery. The home feed displays content cards, profile summaries, and recommended users. Browsing these surfaces does not invoke Camera, Microphone, or gallery permissions.

Matching. The matching tab presents suggested users based on product recommendation logic. Matching itself does not access device sensors; permissions apply only if you proceed to chat, send media, or start video sessions.

Chat. The chat tab supports text messaging by default. Image messages require you to pick files from local storage. Voice messages require microphone access only while you record. Video chat requires Camera and Microphone during the active call.

Profile center. You may update nickname, profile details, and avatar from the profile tab. Avatar changes may use gallery selection or camera capture at your choice. Settings may include links to this Privacy Policy, User Terms, and account deletion information displayed via in-app WebView pages for compliance content only—not for cross-app tracking.

Safety and moderation. We may process reported content, block signals, and metadata to enforce policies and protect users. Automated and human review may be applied where necessary.

SDKs and third-party components. Our disclosed SDK inventory is: [NOT_PROVIDED_LIST_SDKS_OR_NONE]. We use standard Android platform components and infrastructure providers as described in Sharing Matrix. If specific SDK names are added in future App updates, we will update this policy accordingly.


Transfers

MirageHub is operated from China by Yangjiang Diqu Trading Co., Ltd. and serves users globally. Personal data may be processed in China and in other countries where our service providers maintain facilities.

When we transfer personal data internationally, we implement safeguards appropriate to the destination and applicable law. These may include standard contractual clauses approved by relevant authorities, contractual data protection terms with processors, and technical measures such as encryption in transit. By using MirageHub, you acknowledge that your information may be transferred to jurisdictions that may have different data protection rules than your country of residence.

If you are in the EEA, UK, or Switzerland and require additional information about transfer mechanisms, contact jackiosaccolski@gmail.com.


Supplementary Reviewer Transparency

This section provides structured disclosures intended to align with app store data safety and transparency reviews.

Sale statement. We do not sell personal and sensitive user data.

Sensitive permission background summary.

| Permission | Background use |

|---|---|

| Camera | Not in the background |

| Microphone | Not in the background |

| Photos and media | Not in the background |

| External Storage | Not in the background |

Data safety mapping.

| Data type | Collected | Shared | Purpose | Required / Optional |

|---|---|---|---|---|

| Email / Account ID | True | False | Account creation, authentication, and support | Required |

| Device info | True | True | Analytics, security, and service delivery | Required |

| Photos and videos | True | False | Profile and in-app media features | Optional |

Monetization. Subscriptions are offered via Google Play; we process subscription entitlement data to deliver paid features. We do not describe Google Play Billing internals beyond what is necessary for users to manage subscriptions through their Google account.


Data Inventory

The following describes categories of information we collect, typical sources, and primary purposes.

Account and authentication data. Email address, password (stored in hashed form), internal account ID, session tokens, and authentication logs when you register or sign in.

Profile and social data. Nickname, avatar image, bio or profile fields you choose to provide, match preferences where applicable, and visibility settings.

User-generated content. Text messages, images, voice recordings, and video streams you create or transmit through chat, matching flows, or profile updates.

Device and technical data. Device model, operating system version, app version, language settings, IP address, network type, crash logs, performance metrics, and security-related event logs.

Usage data. Feature interactions such as feed views, match actions, message send events, and settings changes, collected to operate and improve the App.

Subscription data. Product identifiers, purchase state, renewal status, and related metadata from Google Play subscriptions.

We collect information directly from you, automatically from your device when you use the App, and from Google Play regarding subscription status. We do not require access to your contacts, precise location, or SMS for core functionality based on our current Android permission set.


Sharing Matrix

We share personal data only as described below. We do not sell personal and sensitive user data.

| Recipient category | Data types | Purpose |

|---|---|---|

| Cloud Hosting / CDN | Account and profile content, User-generated content, Diagnostics | Host, transmit, store, and deliver core app features |

| Analytics / Crash reporting | Usage events, Device metrics, Crash logs | Product improvement, performance analysis, and stability |

Other disclosures. We may disclose information if required by law, court order, or governmental request; to protect the rights, safety, or property of users, the public, or MirageHub; in connection with a merger, acquisition, or asset sale with notice where required; or with your direction (for example, content you send to other users).

Service providers are authorized to process data only under our instructions and contractual confidentiality and security obligations. A current list of SDKs has not been separately provided beyond [NOT_PROVIDED_LIST_SDKS_OR_NONE]; infrastructure and analytics processing remain as mapped above.


Controller

Data controller: Yangjiang Diqu Trading Co., Ltd.

Registered address: Room 503, Building 2, No.17 South East Gate Road, Ganglie Sub-district, Jiangcheng District, Yangjiang City (Residence Declaration)

Contact email: jackiosaccolski@gmail.com

Data Protection Officer: Privacy Officer — jackiosaccolski@gmail.com

Yangjiang Diqu Trading Co., Ltd. determines the purposes and means of processing personal data described in this Privacy Policy for MirageHub. Processors acting on our behalf are bound by written agreements requiring appropriate security and confidentiality.

If you have questions about this Privacy Policy, your personal data, or how to exercise your rights, contact us using the details above.


Platform Scope

This Privacy Policy applies exclusively to MirageHub on Google Play for Android devices. It does not govern websites, services, or applications we do not operate, nor does it apply to Apple App Store or iOS-specific frameworks.

Permission descriptions, storage behavior, and system settings references in this document follow Android conventions, including scoped storage and the Photos and media permission model on supported Android versions. Subscription management occurs through Google Play; adjust or cancel subscriptions via your Google account subscription settings.

MirageHub is offered to users in Global markets subject to local law. Regional rights sections in this policy apply based on your residence. If any provision conflicts with mandatory local law, that law prevails for users in that jurisdiction.


*End of Privacy Policy*

No Sale Statement

We do not sell personal and sensitive user data.

Third-Party Sharing Mapping

Data Safety Mapping

Sensitive Permissions Background Access