Mirian AI, Inc. (“Mirian AI,” “we,” “our,” or “us”) operates the Mirian AI platform at mirianai.com (the “Service”). This Privacy Policy explains how we collect, use, disclose, and protect information about you when you use our Service. By accessing or using Mirian AI, you agree to the terms of this Privacy Policy.
1. Information We Collect
We collect information in the following categories:
Account Information
When you register for Mirian AI, we collect your name, email address, company name, role, and password (stored as a salted hash). If you connect a payment method, we collect billing information through our payment processor.
Financial Data via ERP Integrations
The core function of Mirian AI is processing your company's financial data. When you connect an ERP, accounting system, or bank feed (such as NetSuite, QuickBooks, Xero, or your bank), we receive and store invoices, bills, customer records, vendor records, payment transactions, and bank statements. This data is processed on your behalf as your service provider.
Usage Data
We automatically collect information about how you interact with the Service, including pages visited, features used, actions taken, session duration, IP address, browser type, operating system, and device identifiers.
Communications
If you contact us for support or send emails through the platform, we retain those communications to provide support and improve the Service.
Cookies and Tracking
We use strictly necessary cookies for authentication (JWT stored in httpOnly cookies), functional cookies to remember your preferences, and analytics cookies to understand platform usage. You can control non-essential cookies through your browser settings.
2. How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve the Mirian AI platform
- Automate accounts receivable and accounts payable workflows on your behalf
- Generate cash flow forecasts and financial analytics
- Power AI-driven features including autonomous agents and the Mirian Pulse copilot
- Send operational notifications, invoices, collection emails, and reminders on your behalf
- Respond to your support requests and communicate about the Service
- Detect and prevent fraud, security incidents, and misuse
- Comply with legal obligations
- Analyze aggregate, anonymized usage trends to improve the platform
3. Data Sharing and Disclosure
We do not sell, rent, or trade your personal or financial data. We disclose information only in the following circumstances:
Service Providers
We share data with trusted third-party vendors who help us operate the Service. These include Amazon Web Services (cloud hosting and storage), Anthropic (AI reasoning for our agent features), and other infrastructure providers. All service providers are contractually bound to protect your data and may only use it to perform services on our behalf.
Business Transfers
If Mirian AI is involved in a merger, acquisition, or asset sale, your information may be transferred. We will provide notice before your data is transferred and becomes subject to a different privacy policy.
Legal Requirements
We may disclose your information if required by law, court order, or governmental authority, or when we believe disclosure is necessary to protect our rights, your safety, or the safety of others.
With Your Consent
We may share your information for other purposes with your explicit consent.
4. Data Security
We take security seriously. Our measures include:
- 256-bit AES encryption for data at rest
- TLS 1.3 encryption for all data in transit
- Role-based access control (RBAC) ensuring users can only access data within their tenant
- Multi-tenant data isolation at the database layer
- SOC 2 Type II audit in progress
- Regular penetration testing and vulnerability assessments
- Audit logging for all sensitive data access
No method of transmission over the Internet or electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your information, we cannot guarantee absolute security.
5. Data Retention
We retain your data for as long as your account is active or as needed to provide the Service. Financial transaction data may be retained for longer periods to comply with accounting, tax, and legal obligations (typically 7 years).
When you close your account, we will delete or anonymize your personal data within 90 days, subject to legal retention requirements. You may request deletion of your data at any time by contacting us at hello@mirianai.com.
6. Your Rights
Depending on your jurisdiction, you may have the following rights regarding your personal data:
- Access: Request a copy of the personal data we hold about you
- Correction: Request correction of inaccurate or incomplete data
- Deletion: Request deletion of your personal data, subject to legal retention requirements
- Portability: Request an export of your data in a machine-readable format
- Objection: Object to processing of your data for direct marketing purposes
- Restriction: Request restriction of processing in certain circumstances
- Opt-out: Opt out of non-essential communications at any time via the unsubscribe link in emails
To exercise any of these rights, contact us at hello@mirianai.com. We will respond to verifiable requests within 30 days.
7. AI and Machine Learning
Mirian AI uses large language models (including Anthropic Claude) and machine learning to power features such as autonomous agents, cash flow forecasting, workflow recommendations, and the Mirian Pulse copilot.
We do not use your financial data to train third-party AI models. Your data is processed by AI models solely to perform the Service on your behalf and is subject to our data processing agreements with AI providers. AI-generated outputs (forecasts, summaries, recommendations) are produced for your use and do not leave Mirian AI's infrastructure in ways that would expose them to other customers.
8. International Data Transfers
Mirian AI is headquartered in the United States. Your data is stored and processed on AWS infrastructure in the United States. If you access the Service from outside the United States, your data may be transferred to and processed in the US.
For customers subject to GDPR or similar data protection regulations, we enter into appropriate data processing agreements and apply standard contractual clauses where required.
9. Children's Privacy
Mirian AI is a professional business-to-business platform not directed at individuals under 18 years of age. We do not knowingly collect personal information from anyone under 18. If you believe we have inadvertently collected such information, please contact us at hello@mirianai.com.
10. Changes to This Policy
We may update this Privacy Policy from time to time. When we do, we will revise the “Last updated” date at the top of this page. For material changes, we will provide notice via email or a prominent notice on the Service at least 30 days before the change takes effect. Your continued use of the Service after any change constitutes your acceptance of the new Privacy Policy.
11. Contact Information
If you have questions or concerns about this Privacy Policy or our data practices, please contact us: