Privacy Policy
Last updated: January 27, 2026
At Maigie ("we," "us," or "our"), we are committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website maigie.com and use our AI‑powered academic operating system application (collectively, the "Service"). Please read this privacy policy carefully. If you do not agree with the terms of this privacy policy, please do not access the site.
1. Information We Collect
Personal Data
We may collect personally identifiable information, such as your name, email address, educational level, and timezone preferences, when you register for an account, sign up for our newsletter, or contact us. If you choose to sign in via Google OAuth, we collect your email address, name, and profile picture as permitted by your Google account settings.
Study Data & AI Interactions
To provide our core services, we collect:
- Conversational Data: All text messages and voice queries you submit to Maigie's AI chat interface. This includes chat sessions, messages, and conversation history.
- Study Content: Notes, course outlines, modules, topics, goals, schedules, resources, and other materials you create, upload, or generate through the Service.
- Usage Metrics: Data on how you interact with the AI, including study habits, retention rates, progress tracking, feature usage, and learning patterns.
- Study Sessions: Information about your study sessions, including start and end times, duration, courses or topics studied, and session activity.
- Interaction Memory: Records of your interactions with resources, courses, notes, goals, schedules, and recommendations to personalize your experience.
This data is used to personalize your learning experience, generate recommendations, and improve our AI models and services.
Voice and Audio Data
When you use our voice features:
- Audio Recordings: We process audio recordings you make through the voice chat interface or voice-to-text features in notes.
- Transcription: Audio is transcribed to text using Google Gemini's speech-to-text capabilities. Audio files are processed in real-time and are not permanently stored on our servers after transcription.
- Microphone Access: The Service requires microphone access to enable voice features. You can disable this permission at any time through your browser or device settings.
Audio data is sent to Google Gemini for transcription purposes only and is subject to Google's privacy policies. We do not store raw audio recordings after transcription is complete.
Google Calendar Integration
If you choose to connect your Google Calendar account:
- Calendar Access: We request permission to create a dedicated "Maigie Schedule" calendar and manage events within that calendar only. We do not access or modify your existing personal calendars.
- Free/Busy Information: We check your calendar availability (free/busy status) across all your calendars to detect scheduling conflicts when creating study schedules.
- OAuth Tokens: We securely store encrypted access and refresh tokens to maintain your calendar connection. These tokens allow us to create, update, and delete events in your Maigie calendar.
- Event Data: We sync your study schedules as calendar events, including event titles, descriptions, start times, end times, and recurrence rules.
You can disconnect your Google Calendar at any time through your account settings. Disconnecting will stop automatic syncing but will not delete events already created in your calendar.
Payment and Subscription Data
When you subscribe to our premium services:
- Payment Information: Payment processing is handled by Stripe, a third-party payment processor. We do not store your full credit card details or payment card numbers.
- Subscription Data: We store your subscription status, tier (Free, Premium Monthly, Premium Yearly), billing period dates, Stripe customer ID, and subscription ID.
- Usage Credits: We track your usage of AI features, including credits consumed, daily limits, and billing period information.
Stripe processes your payment information according to their privacy policy and security standards. We only receive confirmation of successful payments and subscription status updates.
Derivative Data
Information our servers automatically collect when you access the Site, such as your IP address, browser type, operating system, device information, access times, pages viewed, referring URLs, and navigation patterns. We also collect information about your interactions with the Service, including clicks, views, time spent on pages, and feature usage.
Cookies and Tracking Technologies
We use cookies and similar tracking technologies to:
- Maintain your login session and authentication state
- Remember your preferences and settings
- Track your usage patterns to improve our services
- Provide personalized content and recommendations
You can control cookies through your browser settings. However, disabling cookies may limit your ability to use certain features of the Service.
2. How We Use Your Information
Having accurate information about you permits us to provide you with a smooth, efficient, and customized experience. Specifically, we use information collected about you via the Site to:
- Create and manage your account and authenticate your identity.
- Generate personalized study plans, courses, goals, schedules, and resource recommendations using AI.
- Process payments and manage subscriptions through Stripe, our secure third-party payment processor.
- Sync your study schedules with Google Calendar (if you choose to connect your calendar).
- Transcribe voice inputs to text and process conversational queries through our AI chat interface.
- Track your study progress, session duration, and learning analytics.
- Personalize your experience based on your learning patterns, preferences, and interaction history.
- Email you regarding your account, security alerts, product updates, and important service notifications.
- Compile anonymous statistical data and analysis for use internally or with third parties.
- Monitor and analyze usage and trends to improve your experience with the Service.
- Prevent fraudulent transactions, monitor against theft, and protect against criminal activity.
- Enforce subscription limits and feature access based on your subscription tier.
- Provide customer support and respond to your inquiries.
3. Disclosure of Your Information
We do not sell your personal data. We may share information we have collected about you in certain situations. Your information may be disclosed as follows:
By Law or to Protect Rights
If we believe the release of information about you is necessary to respond to legal process, to investigate or remedy potential violations of our policies, or to protect the rights, property, and safety of others, we may share your information as permitted or required by any applicable law, rule, or regulation.
Third-Party Service Providers
We may share your information with third parties that perform services for us or on our behalf. These providers are bound by confidentiality agreements and are only permitted to use your data for the specific purposes we authorize:
- Google (Gemini AI): We use Google Gemini to power our AI chat features, voice transcription, and content generation. Your chat messages, voice inputs, and study content may be processed by Google Gemini to provide AI responses. Google's use of your data is governed by their privacy policy. We do not use your data to train Google's public foundation models.
- Google (OAuth & Calendar): We use Google OAuth for authentication and Google Calendar API for calendar synchronization. When you sign in with Google or connect your calendar, Google processes your authentication and calendar data according to their privacy policy.
- Stripe: We use Stripe for payment processing. Stripe receives your payment information (credit card details, billing address) to process transactions. Stripe's handling of your payment data is governed by their privacy policy and PCI DSS compliance standards.
- Email Service Providers: We use third-party email services to send account-related emails, verification codes, and notifications.
- Hosting and Infrastructure: Our Service is hosted on third-party cloud infrastructure providers who process your data as necessary to provide hosting services.
- Analytics Services: We may use analytics services to understand how users interact with our Service. These services collect aggregated and anonymized usage data.
4. AI and Data Processing
Maigie utilizes Google Gemini, an advanced Large Language Model (LLM), to power our AI features including chat conversations, content generation, voice transcription, and personalized recommendations. Here's how we handle your data:
- AI Processing: Your chat messages, voice inputs, study content, and queries are sent to Google Gemini to generate responses, create courses, generate notes, create schedules, and provide recommendations.
- Data Usage: We use your data to personalize AI responses and improve the relevance of generated content. Your conversation history and study context help the AI provide more accurate and helpful responses.
- Model Training: We do not use your personal data to train Google's public foundation models. Your data is used solely for providing you with AI-powered features during your active use of the Service.
- Data Retention: Chat messages and AI interactions are stored in our database to maintain conversation history and context. You can delete individual messages or chat sessions at any time.
- Sensitive Information: Please avoid entering highly sensitive personal information (such as financial account numbers, social security numbers, or detailed health records) into the AI chat interface. While we implement security measures, AI systems are not designed to handle such sensitive data securely.
- Voice Processing: Audio recordings are processed by Google Gemini for transcription. Audio files are not permanently stored after transcription is complete.
5. Data Retention and Deletion
We retain your personal information for as long as necessary to provide the Service and fulfill the purposes outlined in this Privacy Policy:
- Account Data: We retain your account information, profile data, and preferences for as long as your account is active.
- Study Content: Your courses, notes, goals, schedules, and other study materials are retained until you delete them or close your account.
- Chat History: Chat messages and conversation history are retained to maintain context and conversation continuity. You can delete individual messages or entire chat sessions at any time.
- Analytics Data: Usage analytics and interaction data are retained for analytical purposes and may be anonymized for long-term analysis.
- Payment Records: Subscription and payment records are retained as required by law and for accounting purposes.
When you delete your account, we will delete or anonymize your personal information within 30 days, except where we are required to retain certain information by law or for legitimate business purposes (such as payment records). Some data may remain in backups for a limited period but will not be actively accessed or used.
6. Your Rights and Choices
You have the following rights regarding your personal information:
- Access: You can access and review your personal information, study content, and account data through your account settings.
- Correction: You can update or correct your personal information, preferences, and study content at any time.
- Deletion: You can delete individual items (messages, notes, courses, schedules) or request deletion of your entire account.
- Data Portability: You can export your study content, notes, and course data in a portable format.
- Opt-Out: You can opt out of certain data collection, such as analytics tracking, through your account settings or browser preferences.
- Calendar Disconnection: You can disconnect your Google Calendar integration at any time through your account settings.
- Subscription Management: You can manage or cancel your subscription through your account settings or Stripe's customer portal.
To exercise these rights, please contact us at [email protected]. We will respond to your request within 30 days.
7. Security of Your Information
We implement administrative, technical, and physical security measures to protect your personal information:
- Encryption: We use encryption in transit (HTTPS/TLS) and at rest for sensitive data, including OAuth tokens and authentication credentials.
- Access Controls: We limit access to your personal information to authorized employees and service providers who need it to perform their duties.
- Secure Authentication: We use secure authentication methods, including password hashing and OAuth tokens, to protect your account.
- Regular Security Updates: We regularly update our systems and dependencies to address security vulnerabilities.
- Monitoring: We monitor our systems for security threats and unauthorized access attempts.
While we have taken reasonable steps to secure your personal information, please be aware that no security measures are perfect or impenetrable, and no method of data transmission can be guaranteed against interception or misuse. You are responsible for maintaining the confidentiality of your account credentials.
8. International Data Transfers
Your information may be transferred to and processed in countries other than your country of residence. These countries may have data protection laws that differ from those in your country. When we transfer your data internationally, we ensure appropriate safeguards are in place, such as:
- Using service providers that comply with recognized data protection frameworks
- Implementing contractual clauses and security measures to protect your data
- Complying with applicable data protection laws and regulations
By using our Service, you consent to the transfer of your information to countries outside your country of residence, including the United States where our service providers may be located.
9. Policy for Children
Our Service is not intended for children under the age of 13. We do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately. If we become aware that we have collected personal information from a child under 13, we will take steps to delete such information promptly.
10. California Privacy Rights
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):
- Right to know what personal information we collect, use, disclose, and sell
- Right to delete your personal information (subject to certain exceptions)
- Right to opt-out of the sale of your personal information (we do not sell your personal information)
- Right to non-discrimination for exercising your privacy rights
To exercise these rights, please contact us at [email protected].
11. European Privacy Rights (GDPR)
If you are located in the European Economic Area (EEA), you have additional rights under the General Data Protection Regulation (GDPR):
- Right to access your personal data
- Right to rectification of inaccurate data
- Right to erasure ("right to be forgotten")
- Right to restrict processing
- Right to data portability
- Right to object to processing
- Right to withdraw consent at any time
Our legal basis for processing your data includes: (1) your consent, (2) performance of a contract with you, (3) our legitimate interests, and (4) compliance with legal obligations. To exercise your GDPR rights, please contact us at [email protected].
12. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. The updated version will be indicated by an updated "Revised" date and the updated version will be effective as soon as it is accessible. We encourage you to review this Privacy Policy frequently to be informed of how we are protecting your information.
13. Contact Us
If you have questions or comments about this Privacy Policy, please contact us at:
Maigie Ltd (Company No. 16993164)
71-75 Shelton Street, Covent Garden, London, United Kingdom, WC2H 9JQ
[email protected]