Legal
Privacy Policy
This page is maintained by the Mizr team and explains what we collect when you use Mizr, why we collect it, and how you stay in control. It is written in plain English rather than legal boilerplate. Please review it with your own adviser before launch and edit anything that does not match your practices.
Who we are
Mizr provides free financial self-assessments — a Financial Health Check, a Financial IQ test and a Money Personality profile — and an optional account where you can see your combined Mizr Score and action plan. Mizr is the data controller for the information described below. For any privacy question, contact us at privacy@mizr.app.
What we collect
Assessment answers. The options you select in each questionnaire, and the scores we calculate from them. We do not ask for account numbers, balances or bank credentials, and Mizr never connects to your bank.
Details you give us to receive results. Your name, age, city, country and email address. Age and location are used to put your score in context against comparable people; your name and email are used to send you your results.
Account information. If you create an account, your email address and — where you sign in with Google — the basic profile details Google shares with us. We never receive your Google password.
Usage information. Which pages you visit, which assessments you start and finish, and when you generate or share a result image. This is used in aggregate to understand which parts of Mizr work.
Why we use it
To calculate and show your scores; to email you the results you asked for; to build your personalised report and action plan; to keep Mizr secure and working; and — only with your separate consent — to send you weekly money tips and product updates.
Where consent is our legal basis (marketing email), you can withdraw it at any time. Where it is legitimate interest (security, product improvement, fraud prevention), you can object using the contact address above.
What we never do
We do not sell your personal data. We do not share it with advertisers or data brokers. We do not use your individual answers to target you with third-party advertising.
Marketing email and consent
Weekly tips and product updates are opt-in and controlled by separate toggles in your dashboard. Every marketing email includes a one-click unsubscribe link. Transactional messages — your results, password resets, sign-in confirmations — are not marketing and are sent because you asked for them or need them to use your account.
Cookies and similar technology
Mizr uses only what it needs to function: a browser-stored session identifier so your assessment progress and results stay attached to you before you create an account, and an authentication token once you sign in. We also use Google Analytics to measure aggregate traffic and see which pages and steps people use, which sets its own measurement cookies. We do not run third-party advertising or cross-site retargeting cookies.
Who processes data on our behalf
We use a small number of service providers to run Mizr: our hosting, database and authentication platform (Lovable Cloud), our transactional email provider, and an AI provider that generates assessment questions and written explanations of your scores. Providers act on our instructions under contract and may process data outside your country under appropriate safeguards.
When AI is used to explain your results, only the scores and non-identifying context needed for the explanation are sent. Your name, email and address are not sent to the AI provider.
How long we keep it
Assessment sessions and results are retained while your account is active so you can track progress over time. If you do not create an account, anonymous assessment data is retained for up to 24 months and then deleted. Marketing consent records are kept for as long as we rely on them, plus a short period afterwards as proof of consent.
Your rights
Depending on where you live, you can ask us for a copy of your data, correct it, delete it, restrict or object to how we use it, or receive it in a portable format. Email privacy@mizr.app and we will respond within one month. If you are in the UK or EU and unhappy with our response, you can complain to your national data protection authority.
Security
Data is encrypted in transit, stored on managed infrastructure with row-level access controls, and reachable only by authenticated requests scoped to your own records. No system is perfectly secure, so we also keep what we collect to a minimum. To report a vulnerability, email security@mizr.app.
Children
Mizr is not intended for anyone under 16. We do not knowingly collect data from children.
Changes
If we make a material change to this policy we will update this page and, where the change affects how we use your data, tell you by email.
Mizr provides general financial education and guidance, not regulated financial advice. See our Terms of Service.
