1. Data Collection
Information handled by Mendrix may fall into several categories depending on how the app is used. Because the app supports identity content management and private sharing, some details are provided directly by users, while other technical details may be recorded automatically by the device or app.
- Account and profile details: this can include a username, display name, email address, account credentials, profile text, or other information submitted during registration or account management.
- User-generated content: photos, captions, edited images, feed submissions, identity-related entries, saved items in Vault, and other material uploaded or created inside the app.
- Device and technical information: IP address, device type, operating system version, language settings, app version, crash reports, diagnostic logs, and general performance data.
- Usage activity: interactions with app features, content organization behavior, posting activity, session timing, and feature engagement metrics.
Some permissions may be requested when needed for core functionality. For example, access to Photos may be required so users can select or upload images. If location, contacts, camera, or similar permissions are introduced for a feature, they are expected to be used only for that feature and subject to device-level permission controls.
2. Data Usage
The information processed through Mendrix is used to operate the app and deliver the features users expect from a private social sharing platform. In practical terms, that means supporting account access, syncing personal identity content, storing edited photos, displaying posts in selected feeds, and maintaining the organization of user content.
Data may also be used to:
- authenticate users and secure accounts;
- moderate misuse, fraud, spam, and unauthorized activity;
- improve reliability, troubleshoot errors, and monitor performance;
- respond to support requests and account-related questions;
- communicate important service notices, product changes, or legal updates.
If Mendrix uses information for promotions, recommendations, or product messaging, that use will be limited to lawful business purposes and, where required, offered with appropriate user choice. Personal information is not sold in the ordinary meaning of that term. Information may, however, be shared with service providers, infrastructure vendors, legal authorities when required, or in connection with business transfers, provided that such sharing is reasonably necessary and subject to applicable safeguards.
3. Data Storage & Security
Content and account information may be stored on secure servers, cloud infrastructure, or systems operated by Mendrix and its service providers. Storage locations can vary based on technical design, user region, operational requirements, and backup architecture.
Security measures may include encrypted connections, access controls, authentication safeguards, logging, rate limiting, internal permission restrictions, and monitoring designed to detect misuse or unauthorized access. No digital environment can promise absolute security, but reasonable administrative, technical, and organizational protections are applied in line with the nature of the information involved.
Retention periods depend on the type of information and the purpose for which it was obtained. User content may remain available until it is deleted by the user, removed through account closure, or cleared according to internal retention practices. Certain records may be kept longer when needed for security, dispute resolution, legal obligations, backup integrity, or enforcement of platform rules.
4. Third-Party Services
Mendrix may rely on outside providers to support app operations. These providers can assist with areas such as cloud hosting, media storage, analytics, authentication, push notifications, payment processing if enabled, customer support, diagnostics, content delivery, and infrastructure security.
Those third parties are expected to handle information only to the extent necessary to provide their services to Mendrix. Their own terms, privacy notices, and technical standards may also apply where relevant. Because vendors and technical partners can change over time, this policy does not list every provider by name.
Links, embedded content, or integrations that lead to external websites or services are governed by the policies of those separate parties, not solely by this document.
5. User Rights (GDPR & CCPA)
Depending on where a user lives, privacy laws may grant specific rights concerning personal information. Mendrix intends to honor applicable rights, including rights available under the GDPR and the CCPA or similar regional laws.
- Access: users may request a copy of personal information associated with their account, subject to verification and legal limits.
- Correction: inaccurate or incomplete information may be updated by the user directly or corrected upon request.
- Deletion: users may ask for account deletion or removal of certain personal data, except where retention is required for legal, security, or operational reasons.
- Restriction or objection: where provided by law, users may object to certain processing activities or request limitations on how data is handled.
- Portability: users may request transferable copies of eligible data where required by law.
- Opt-out rights: users may opt out of certain discretionary communications or uses of data, including marketing-related contact where offered.
6. Children's Privacy
Mendrix is not intended for children under the age of 18. The platform is designed for adult users, and accounts should not be created by minors. The app does not knowingly solicit or knowingly retain personal information from children under 13, and it is not directed to children within the meaning of the Children's Online Privacy Protection Act (COPPA).
If it becomes known that a minor has submitted personal information in violation of this policy, reasonable steps may be taken to remove the material and disable the related account, subject to verification and applicable law. Parents or guardians who believe a child has provided information through Mendrix may contact support@mendrix.com.
7. Policy Updates
This policy may be revised from time to time to reflect product changes, legal developments, operational updates, or adjustments to data practices. The current version will be posted within the app or on the related website, and the effective date shown at the top will indicate when the revised wording became active.
When changes are material, Mendrix may provide additional notice through the app, by email, or by other appropriate means. Continued use of the app after an updated policy becomes effective may indicate acceptance of the revised terms where permitted by law.
8. Contact Information
Questions about this Privacy Policy, requests concerning personal information, or reports related to account privacy may be directed to:
Mendrix
Website: cosmopolitan.mendrix.one
Email: support@mendrix.com