Privacy Policy

Last updated: March 2026

Who we are

The Unblocked Mirror is operated by Amy Sanders. This privacy policy explains how we collect, use, and protect your personal information when you use our coaching service at mirror.amysanders.co.

Questions about this policy can be directed to hello@amysanders.co.

What information we collect

When you create an account and use The Unblocked Mirror, we collect:

  • Your name and email address (provided at purchase via ThriveCart)
  • Your Human Design type, authority, and profile (entered during onboarding)
  • Your Enneagram type and wing (entered during onboarding)
  • The content of your coaching conversations with the Mirror
  • Session metadata such as timestamps, session duration, and session count
  • Technical information such as IP address and request logs for security monitoring

How we protect your data

All conversation content is encrypted using AES-256-GCM encryption before it is stored in our database. The encryption key is stored separately from the database, meaning that even in the event of a database breach, your conversation content cannot be read without the encryption key.

Decryption of your conversation content happens only on our servers, never in your browser. Your raw messages are retained for 30 days after a session ends, after which they are automatically deleted. Encrypted session summaries are retained for the life of your account to enable the Mirror to remember your journey.

How we use your information

We use your information to:

  • Provide personalized coaching through The Unblocked Mirror
  • Build a running profile of your Human Design and Enneagram patterns to inform future sessions
  • Send transactional emails related to your account (magic links, account changes)
  • Monitor for abuse, security incidents, and technical issues
  • Improve the quality of coaching responses (only for users who have opted in)

We do not sell your personal information. We do not share your conversation content with third parties except as required to provide the service (OpenAI processes your messages to generate coaching responses; their privacy policy applies to that processing).

Quality improvement (opt-in)

If you have opted in to quality improvement in your settings, we may occasionally review anonymized excerpts from your conversations to improve coaching quality. Before any excerpt is used for this purpose, all personally identifiable information is removed. You can withdraw this consent at any time in your account settings.

Your rights

You have the right to:

  • Access a copy of all personal data we hold about you (data export)
  • Request deletion of your account and associated data (right to erasure)
  • Update or correct your profile information at any time in settings
  • Withdraw consent to quality improvement at any time

Data export and account deletion are available directly from your account settings. Sensitive actions like account deletion require fresh authentication via magic link for your protection.

Data retention

Your account data is retained for the life of your active membership. If your membership ends, your data is retained for 90 days, after which you will receive an email offering a data export. After 90 days with no reactivation, conversation data is deleted. Anonymized session metadata may be retained for business analytics.

Cookies and authentication

We use cookies to maintain your authenticated session. These are strictly functional cookies required to keep you logged in. We do not use advertising cookies or third-party tracking. Session cookies expire after 7 days of inactivity.

Authentication is handled through Clerk, which supports email and password, email verification codes, and social login providers (Google, Apple, Facebook). When you sign in using a social provider, your email address is shared with us by that provider and used as described in this policy. We do not receive or store your social account password.

Changes to this policy

If we make material changes to this privacy policy, we will notify you via email to the address on your account. Continued use of The Unblocked Mirror after notification constitutes acceptance of the updated policy.

Contact

For any privacy-related questions or requests, please email hello@amysanders.co.

Terms of Service · Back to Mirror