MiMi Privacy Policy
MiMi Privacy Policy
Effective date: July 27, 2026
This Privacy Policy applies to the MiMi app and related MiMi network services. MiMi is a collection catalog and personal collection tracker that helps users browse catalog records, manage owned items and wishlists, save photos and memories, sync local collection data, submit catalog contributions, view contribution history, use MiMi Points, and access optional in-app purchase features.
Chinese version: 中文版本
Summary
MiMi is designed as a local-first app. Many collection features store data on your device by default. Data is sent to the relevant service only when you use features such as sign-in, account services, public lists, catalog contributions, image uploads, in-app purchase validation, iCloud sync, or support.
MiMi does not sell personal data, does not use third-party advertising SDKs, does not use advertising identifiers, and does not use data to track you across other companies' apps or websites.
Data We Collect or Process
1. Data stored on your device
If you use MiMi locally and do not sign in, upload, publish public content, submit contributions, or enable iCloud sync, the following data generally stays on your device:
- Owned items, wishlist items, need-info items, sold items, and archived records.
- Local item names, notes, tags, condition, quantities, obtained dates, purchase prices, wishlist prices, sold prices, currencies, photos, and memories.
- Shelves, tracking lists, statistics, local filters, and local catalog caches.
- Local backup files and data restored from local files.
This local data remains in the app's local storage until you delete it in the app, clear the data, or uninstall the app.
2. iCloud and CloudKit sync data
When you choose to use iCloud manual backup, iCloud restore, or unlock and enable iCloud realtime sync, MiMi stores your private collection data in the CloudKit private database associated with your Apple iCloud account so your devices can sync with each other.
iCloud sync data may include:
- Collection entries, collection status, quantities, notes, tags, dates, prices, currencies, and local item details.
- Local collection photos, memories, shelves, tracking lists, covers, sync versions, commit records, conflict-resolution metadata, and deletion markers.
- Sync hashes, commit records, and head records used to determine whether local and cloud data are in sync.
This private iCloud sync data is processed by Apple's iCloud/CloudKit services. MiMi's own server does not receive or store your private iCloud collection sync payloads unless you separately choose to publish content as a public list, submit content as a catalog contribution, upload an avatar, or send information to us for support.
CloudKit may use Apple's silent push or system sync mechanisms to notify your devices to check for updates. These notifications are used for iCloud sync and not for advertising or marketing.
3. Account profile data
When you sign in and use account features, MiMi may collect and store:
- The user identifier provided by Sign in with Apple.
- The email address provided by Apple, if you allow Apple to provide it.
- MiMi user ID, Trainer ID, username, display name, avatar, language preference, badges, role, permissions, and account status.
- MiMi Points balance, point ledger, badge records, notifications, read status, and account action records.
Some public profile information may be displayed in the app, such as username, Trainer ID, avatar, worn badge, public contribution attribution, or public list author information.
4. Catalog contributions, review, and public content
When you submit catalog contributions, public tracking lists, feedback, reports, or other public/community content, MiMi may collect and store:
- New products, variants, series, bundle variants, field corrections, localized names, aliases, release regions, release dates, brands, types, related characters, and other catalog fields.
- Uploaded images, attachments, evidence, description text, links, and review notes.
- Public tracking list titles, descriptions, localized text, covers, entries, visibility, copies, follows, reports, and review status.
- Contribution history, review results, reviewer edits, withdrawals, and necessary audit records.
Approved catalog contributions may become part of the shared catalog database and may be retained to preserve database integrity, contribution attribution, abuse prevention, and audit history. If you want public attribution removed or anonymized, contact us and we will handle the request where reasonably possible.
5. Images and media
When you upload an avatar, catalog contribution image, evidence, or public-content image, the image may be stored by MiMi's backend or an image hosting provider and delivered through a public URL. Images approved into the catalog may be publicly visible to other users.
Your local collection photos and memory photos are private collection data by default. If they remain local or are synced through iCloud private sync, they are not publicly stored by MiMi's server. If you choose to upload them as catalog contributions, public list content, avatars, or support attachments, they are handled according to that feature.
Please do not upload government IDs, payment receipts, addresses, contact details, other people's private information, or other sensitive personal information.
6. In-app purchase and transaction data
When you purchase MiMi Points or unlock features such as iCloud realtime sync, Apple processes the payment. MiMi does not receive or store your payment card number, payment card details, or Apple ID password.
To grant MiMi Points, unlock non-consumable features, prevent duplicate grants, handle refunds, and provide support, MiMi may store:
- StoreKit product identifiers.
- Apple transaction identifiers, original transaction identifiers, purchase environment, and signed transaction information.
- MiMi Points grant status, feature unlock status, purchase time, refund or revocation status, and related account ledger records.
7. Automatically generated service data
When the app accesses MiMi network services, the server may automatically log:
- IP address, request time, endpoint path, HTTP status code, request ID, app version, platform, language, and basic device/network metadata.
- Error logs, endpoint latency, media upload status, catalog update status, backup/restore results, abuse-prevention logs, and security logs.
We use this data to provide the service, debug errors, protect accounts, prevent abuse, maintain server reliability, and perform necessary security audits.
If you choose to share diagnostics and usage data with Apple, Apple may provide developers with crash or performance diagnostics. MiMi does not currently integrate third-party advertising SDKs, third-party analytics SDKs, or third-party crash reporting SDKs.
How We Use Data
We use data to:
- Provide catalog browsing, search, filtering, product details, variants, series, statistics, collection states, and local collection management.
- Provide optional iCloud sync, manual backup, restore, and conflict handling across your devices.
- Create and maintain accounts, Trainer IDs, avatars, roles, badges, notifications, MiMi Points, and in-app purchase unlock status.
- Process catalog contributions, public tracking lists, image uploads, reviews, contribution history, and community catalog updates.
- Validate in-app purchases, grant MiMi Points, unlock non-consumable features, identify refunds, and provide customer support.
- Protect the service, debug issues, prevent abuse, maintain backups, and improve service reliability.
We do not sell personal data and do not use personal data for third-party advertising tracking.
Third-Party Services
MiMi uses or may use the following services:
- Apple Sign in with Apple for account authentication.
- Apple StoreKit and App Store for in-app purchases, transaction validation, refunds, and purchase status.
- Apple iCloud / CloudKit for optional iCloud manual backup, restore, and realtime sync.
- Apple Push Notification service / CloudKit system notifications for CloudKit sync reminders, not marketing notifications.
- Image hosting providers, such as PicUI, for hosting and delivering images that users choose to upload for avatars, public content, or catalog contributions.
- Server, database, logging, backup, email, and hosting providers used to operate the MiMi backend, support pages, and customer support.
These third-party services process data under their own terms and privacy policies. We aim to provide only the data needed for the relevant feature.
Sharing and Public Visibility
The following content may be visible to other users:
- Shared catalog products, variants, series, images, and approved contribution content.
- Public tracking lists, including title, description, cover, entries, and author display information.
- Public contribution attribution, username, Trainer ID, or worn badge.
The following content is generally not public:
- Private local collection data, wishlists, purchase prices, wishlist prices, sold prices, notes, private photos, private memories, and private shelves.
- Private iCloud sync data.
- Account security information and raw transaction validation data.
Your Choices and Controls
You can:
- Use local collection features without signing in.
- Choose not to enable iCloud sync, or turn it off in system iCloud settings or in-app sync settings.
- Delete or edit local collection entries, photos, memories, shelves, and tracking lists.
- Delete local backup files, or export/import local backups.
- Delete server-side account data in the app, or contact support to request deletion or account handling.
- Choose not to submit public lists, catalog contributions, avatars, or support attachments.
Deleting the app from a device generally deletes local app data on that device, but it does not automatically delete public catalog contributions, public lists, backend account records, or data still retained in iCloud by the system. You can use in-app controls, system settings, or contact support for further deletion requests.
Retention and Deletion
Local data remains on your device until you delete it, clear it, or uninstall the app.
iCloud sync data remains in your Apple iCloud account until you delete the relevant data in the app or system iCloud settings, or Apple handles it under its policies.
Server-side account profile data, avatars, notifications, MiMi Points records, in-app purchase unlock status, user media manifests, public lists, and contribution records are retained for as long as needed to provide the relevant features. You may request deletion of server-side account data. Some records, such as in-app purchase transaction records, review records, public catalog contribution history, security logs, or audit records, may be retained or anonymized where necessary for database integrity, accounting, abuse prevention, security, audit, or legal reasons.
Security
MiMi uses reasonable technical and administrative measures to protect data, including HTTPS transport, permission checks, account authentication, database access controls, backups, and security auditing. No system can guarantee absolute security, so please avoid uploading sensitive IDs, payment receipts, or private images you do not want to become public.
Children's Privacy
MiMi is a general collection management tool and is not directed to children. We do not knowingly collect personal data from children. If you believe a child has provided personal data to us, contact support so we can review and delete it where appropriate.
International Processing
To provide the service, your data may be processed in regions outside your own region by MiMi servers, Apple services, or third-party service providers. We protect this data according to this Privacy Policy and applicable law.
Changes to This Policy
We may update this Privacy Policy when MiMi adds features, changes data practices, integrates new service providers, or legal requirements change. Material changes will update the effective date and will be made available in the app or on this website.
Contact
Support email: willkyu@qq.com
Support page: /MiMi/support/