Privacy Policy

Last updated: June 12, 2025

Your privacy is important to us. This Privacy Policy explains how Mitto collects, uses, and protects your information when you use our data analysis platform.

Our Privacy Commitment

Privacy isn't just a feature — it's the foundation of everything we build.

We Never Sell Your Data

Your data is yours, period. We will never sell, rent, or trade your personal information or uploaded data to third parties for commercial purposes.

Workspace-Only Access

Your files are completely isolated within your workspace. No one else — not other users, not our team — can access your data without your explicit permission.

Instant Deletion

When you delete files, they're gone immediately — not just hidden or archived. We believe your right to delete should be respected instantly.

Privacy by Design

Every feature we build starts with privacy considerations. Your security and confidentiality are woven into the fabric of our platform.

Built and hosted in European Union Flag Europe with the world's strongest data protection standards

1. Information We Collect

1.1 Personal Information

We collect personal information you provide directly to us, including:

  • Name and email address when you create an account
  • Profile information and preferences
  • Payment information when you subscribe to our services
  • Communication data when you contact our support team

1.2 Data You Upload

When using our data analysis services, you may upload:

  • Datasets, spreadsheets, and other data files
  • Queries and analysis requests
  • Reports and visualizations you create
  • Any metadata associated with your uploaded content

1.3 Usage Information

We automatically collect information about how you use our platform:

  • Log data including IP addresses, browser type, and operating system
  • Usage patterns, feature interactions, and session duration
  • Device information and network connection details
  • Performance metrics and error reports

2. How We Use Your Information

2.1 Service Provision

We use your information to provide and improve our data analysis services:

  • Process and analyze your uploaded data
  • Generate insights, reports, and visualizations
  • Provide AI-powered data analysis and recommendations
  • Maintain and improve platform performance

2.2 Communication

We may use your contact information to:

  • Send service-related notifications and updates
  • Respond to your inquiries and support requests
  • Share important security or policy updates
  • Provide marketing communications (with your consent)

2.3 Analytics and Improvement

We analyze usage patterns to:

  • Understand how users interact with our platform
  • Identify areas for improvement and new features
  • Monitor system performance and security
  • Conduct research and development activities

3. Data Security and Protection

We implement robust security measures to protect your data:

  • Encryption: All data is encrypted in transit and at rest using industry-standard protocols
  • Access Controls: Strict access controls ensure only authorized personnel can access your data
  • Secure Infrastructure: Our platform runs on secure, regularly audited cloud infrastructure
  • Regular Backups: Your data is regularly backed up to prevent loss
  • Monitoring: Continuous monitoring for security threats and vulnerabilities
  • Compliance: We adhere to industry security standards and best practices

4. Data Sharing and Disclosure

4.1 No Sale of Personal Data

We do not sell, rent, or trade your personal information or uploaded data to third parties for their commercial purposes.

4.2 Service Providers

We may share information with trusted service providers who assist us in operating our platform:

  • Cloud hosting and infrastructure providers
  • Payment processing services
  • Customer support and analytics tools
  • Security and monitoring services

These providers are contractually bound to protect your data and use it only for specified purposes.

4.3 Legal Requirements

We may disclose information when required by law or to:

  • Comply with legal processes or government requests
  • Protect our rights, property, or safety
  • Investigate and prevent fraud or security issues
  • Enforce our terms of service

5. Your Privacy Rights

You have several rights regarding your personal information:

  • Access: Request a copy of the personal information we hold about you
  • Correction: Request correction of inaccurate or incomplete information
  • Deletion: Request deletion of your personal information (subject to legal requirements)
  • Portability: Request a copy of your data in a machine-readable format
  • Objection: Object to certain processing of your personal information
  • Restriction: Request restriction of processing in certain circumstances

To exercise these rights, please contact us at support@mitto.ai.

6. Data Retention

We retain your information for as long as necessary to provide our services and comply with legal obligations:

  • Account Information: Retained while your account is active and for a reasonable period after closure
  • Uploaded Data: Retained as long as you maintain your account, unless you specifically delete it
  • Usage Logs: Typically retained for up to 2 years for security and performance monitoring
  • Financial Records: Retained as required by applicable financial regulations

You can delete your uploaded data at any time through your account settings or by contacting our support team.

7. International Data Transfers

Mitto operates globally, and your information may be transferred to and processed in countries other than your residence. We ensure appropriate safeguards are in place for such transfers, including:

  • Standard contractual clauses approved by relevant authorities
  • Adequacy decisions by competent data protection authorities
  • Certification schemes and codes of conduct
  • Other legally recognized transfer mechanisms

8. Cookies and Tracking Technologies

We use cookies and similar technologies to enhance your experience:

  • Essential Cookies: Required for basic platform functionality
  • Performance Cookies: Help us understand how you use our platform
  • Functionality Cookies: Remember your preferences and settings
  • Analytics Cookies: Provide insights into usage patterns and improvements

You can control cookie settings through your browser preferences, though some features may not function properly if you disable certain cookies.

9. Children's Privacy

Mitto is not intended for use by children under the age of 16. We do not knowingly collect personal information from children under 16. If we become aware that we have collected personal information from a child under 16, we will take steps to delete such information promptly.

If you believe we have collected information from a child under 16, please contact us immediately at support@mitto.ai.

10. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. When we make material changes, we will:

  • Notify you via email or through our platform
  • Update the "Last updated" date at the top of this policy
  • Provide a summary of significant changes
  • Give you an opportunity to review and accept the changes

Your continued use of our services after we publish or send a notice about changes constitutes your acceptance of the updated Privacy Policy.

11. Contact Information

If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:

Data Protection Officer

Email: support@mitto.ai

Subject Line: Privacy Policy Inquiry

We will respond to your inquiry within 30 days of receipt. If you are not satisfied with our response, you have the right to lodge a complaint with your local data protection authority.

12. Additional Jurisdiction-Specific Rights

12.1 European Union (GDPR)

If you are located in the EU, you have additional rights under the General Data Protection Regulation (GDPR), including the right to withdraw consent and the right to lodge a complaint with a supervisory authority.

12.2 California (CCPA)

California residents have specific rights under the California Consumer Privacy Act (CCPA), including the right to know what personal information is collected and the right to opt-out of the sale of personal information.

12.3 Other Jurisdictions

We comply with applicable data protection laws in all jurisdictions where we operate. If you have specific questions about your rights in your jurisdiction, please contact us.