Legal

Privacy Policy

Effective date: 15 February 2023  ·  Last updated: 12 March 2026

1. Who we are

This Privacy Policy explains how MIRRORA L.P. (“Mirrora,” “we,” “us,” or “our”) collects, uses, and protects personal data when you visit mirrora.ai (the “Website”).

MIRRORA L.P. is a limited partnership registered under Greek law, with its registered office at Praxitelous 24, 35131, Lamia, Greece. Mirrora is the data controller for the personal data described in this Policy.

For any privacy-related questions or requests, contact us at hello@mirrora.ai.

2. What data we collect and why

The Website does not have contact forms, user accounts, or analytics trackers. We collect personal data only in the following circumstances:

DataHow collectedWhyLawful basis
IP address and request metadata (browser type, page visited, timestamp) Automatically, via Cloudflare (our CDN and security provider), on every page visit Website security, DDoS protection, abuse prevention, and service delivery Legitimate interest — maintaining a secure and functional website (GDPR Art. 6(1)(f))
Name, email address, and meeting details When you book a Discovery Call via Calendly. You leave this website and interact directly with Calendly’s platform. Scheduling and conducting the consultation call you requested Pre-contractual measures at your request (GDPR Art. 6(1)(b))
Content of your email and your email address When you contact us directly at hello@mirrora.ai Responding to your enquiry and, where applicable, proceeding with a consulting engagement Legitimate interest / pre-contractual measures (GDPR Art. 6(1)(b) and (f))

We do not use cookies for analytics, advertising, or tracking purposes. We do not run Google Analytics, Meta Pixel, or any similar tracking service on this Website.

3. Third-party services

The following third-party services are involved in delivering this Website. Each is described below along with its role and, where applicable, the data it processes.

ServiceRoleData involvedTransfer mechanism
Cloudflare, Inc.
United States
CDN, DDoS protection, and security. Acts as a sub-processor on our behalf. IP addresses, HTTP request headers, page URLs, browser identifiers EU Standard Contractual Clauses. Cloudflare’s DPA is available at cloudflare.com.
Google LLC (Google Fonts)
United States
Delivers the web fonts used on this Website. When your browser loads the page, it contacts Google’s servers to retrieve the font files, which causes your IP address to be transmitted to Google. Google acts as an independent data controller for this data. IP address, browser type, referring URL Google’s own privacy framework. See Google’s Privacy Policy.
Calendly, LLC
United States
Online booking platform. When you click “Book a Discovery Call” you are redirected to Calendly’s website. Calendly acts as an independent data controller for any data you provide during booking. Name, email address, meeting preferences — provided directly by you to Calendly Governed by Calendly’s Privacy Policy.

4. How long we keep your data

DataRetention period
IP address and request metadata (held by Cloudflare) Governed by Cloudflare’s own retention policy. We do not separately store this data.
Email correspondence Retained for as long as necessary to respond to your enquiry and, if a commercial relationship develops, for the duration of that relationship plus the period required by applicable accounting and legal obligations (typically seven years under Greek law). Correspondence where no engagement results is deleted after two years.
Calendly booking data Governed by Calendly’s own retention policy. We may retain notes from a scheduled call for as long as the business relationship is active or potentially active.

5. International data transfers

Mirrora is based in Greece (European Union). Cloudflare and Google are based in the United States. Where personal data is transferred from the EEA to the United States, we rely on EU Standard Contractual Clauses (Cloudflare) or Google’s own adequacy mechanisms as the lawful transfer mechanism. Copies of applicable transfer documentation may be requested at hello@mirrora.ai.

6. Your rights

If you are located in the European Economic Area or the United Kingdom, you have the following rights under the GDPR or UK GDPR in relation to personal data for which Mirrora is the controller:

To exercise any of these rights, email hello@mirrora.ai. We will respond within the timeframe required by applicable law (30 days under GDPR, with a possible 60-day extension for complex requests). We will not charge a fee unless your request is manifestly unfounded or excessive.

If you are located in California, you have additional rights under the CCPA/CPRA, including the right to know, delete, and correct personal information, and the right to opt out of sale or sharing. We do not sell or share personal information as defined under the CCPA/CPRA.

7. Cookies

This Website does not set first-party cookies for analytics, advertising, or tracking.

Cloudflare may set technically necessary cookies (__cf_bm, cf_clearance) for bot detection and security purposes. These are strictly necessary for the Website to function securely and do not require your consent under the EU ePrivacy Directive.

When you navigate to Calendly’s booking page, Calendly may set its own cookies on their domain. These are governed by Calendly’s Privacy Policy.

8. Children’s data

This Website is directed at businesses and professionals. We do not knowingly collect personal data from individuals under the age of eighteen. If you believe we have inadvertently collected such data, please contact hello@mirrora.ai and we will delete it promptly.

9. Changes to this Policy

We may update this Privacy Policy from time to time. Material changes will be reflected by an updated effective date at the top of this page. We encourage you to review this page periodically. Continued use of the Website after any change constitutes your acceptance of the updated Policy.

10. Contact

For any questions, concerns, or requests relating to this Privacy Policy:

MIRRORA L.P.
Praxitelous 24, 35131, Lamia, Greece
hello@mirrora.ai

Lead supervisory authority: Hellenic Data Protection Authority (HDPA), Kifissias 1–3, 115 23 Athens, Greece — www.dpa.gr.