Effective Date: September 4, 2026 | Last Updated: September 4, 2026
This Privacy Policy is issued by us. in respect of the Mila application and the services delivered through it. It records the personal information processed in connection with the application, the purposes of that processing, the recipients to whom information may be disclosed, the periods for which it is held, and the controls and rights available to users.
Use of the application constitutes acknowledgement of this Privacy Policy. A user who does not accept it should discontinue use.
1. Application of this policy
1.1 This policy extends to personal information processed through the Mila application and the services offered within it.
1.2 It does not extend to any third-party website, application, or service operating under its own privacy policy, including where such a service is reachable from within the application. Google Play and Google Play services fall outside this policy.
1.3 The scope of processing in any individual case depends upon the manner in which the application is used, the device permissions granted, and the features made available to the user.
2. Categories of personal information processed
2.1 The categories set out below may be processed in connection with the application.
2.1 The categories set out below may be processed in connection with the application.
Registration and profile data
Contents: Name or username, date of birth or age, gender, self-description, interests, education, city or general area, profile preferences, photographs, and any further particulars supplied voluntarily.
How obtained: Supplied by the user.
Activity data
Contents: Posts, captions, photographs, comments, likes, reactions, profile visits, greetings, and other content and actions submitted through the application.
How obtained: Supplied by the user.
Communications data
Contents: Messages exchanged within the application, together with participants, dates, times, and delivery status.
How obtained: Supplied by the user.
Trust and safety data
Contents: Material submitted in reports, appeals, and support requests, and, where identity or age verification is offered, verification outcomes and limited verification data.
How obtained: Supplied by the user, or generated in the course of verification.
Transaction data
Contents: Item or plan purchased, transaction identifier, status, date, amount, and associated account particulars. Payment instrument details are processed by Google Play Billing and are not received by us.
How obtained: Received from Google Play Billing and generated by the application.
Device and network data
Contents: Device model, operating system, application version, language, time zone, IP address, mobile carrier, device and advertising identifiers, and crash or diagnostic output.
How obtained: Collected automatically.
Usage data
Contents: Profiles and screens viewed, features used, searches, taps, session duration, referral source, and the timing of activity.
How obtained: Collected automatically.
Location data
Contents: Approximate location inferred from IP address; precise geolocation only where device permission is granted, only for location-based features, and only while the application is in use. Precise location is not collected in the background.
How obtained: Inferred, or collected with permission.
Third-party data
Contents: Information from Google Play and other distribution or authentication providers, from analytics and security vendors, from users who interact with or report a user, and from publicly available sources.
How obtained: Received from third parties, as permitted by law.
2.2 The Google Advertising ID may be accessed by us and by our service providers for analytics, attribution, measurement, and fraud prevention. It is not used for cross-context behavioral advertising, and it may be reset or deleted, and ads personalization disabled, through device settings.
2.3 Software development kits, pixels, local storage, and comparable technologies may be used by us and our service providers to operate, secure, measure, and improve the application.
3. Purposes of processing
3.1 Personal information is processed for the following purposes:
(a) the creation and administration of accounts, the display of profiles and content, and the operation of discovery, messaging, social interaction, purchasing, paid plans, and other requested features;
(b) the tailoring of the user experience, including recommendation of persons and content, arrangement of feeds, retention of preferences, and adaptation of features to activity, interests, dating or social preferences, and settings;
(c) the analysis of photographs by automated technologies, including machine learning and AI-based tools, in order to determine the contents of an image, to organize and recommend content, to improve discovery, and to support moderation and safety. Such analysis is not designed to perform facial recognition or to generate biometric identifiers by which a user may be identified;
(d) the operation of the optional AI-assisted chat features, comprising suggested replies, message drafting and completion, and translation. For this purpose the relevant conversation, the profile information of the user, and the profile information of the correspondent are processed and transmitted to AI service providers acting on our behalf, whose processing is confined to the delivery of the feature to us. Output is presented to the user as a suggestion and is transmitted to no other person unless the user elects to send it;
(e) the maintenance of trust and safety, including detection of spam, scams, fraud, harassment, unlawful activity, fake accounts, and rule violations, investigation of reports, and protection of users and of the application;
(f) the moderation of content and conduct by automated systems and, where appropriate, human review, and the enforcement of the applicable rules;
(g) the operation, analysis, testing, research, and improvement of the application, including diagnosis of faults;
(h) the processing of transactions, including verification of purchases, delivery of virtual items and plan benefits, prevention of payment fraud, maintenance of records, and handling of refunds and disputes;
(i) communication with users by service message, security alert, policy update, feature notice, and other communications permitted by law; and
(j) compliance with legal and regulatory obligations, response to lawful requests, establishment and defense of legal claims, and enforcement of our terms and policies.
3.2 Certain information supplied voluntarily, in particular profile particulars and dating or social preferences, may disclose or imply characteristics regarded as sensitive. Such information is processed for the operation of the discovery, matching, and recommendation features requested by the user. It is not processed for targeted advertising, and it is neither sold nor shared. Where applicable law conditions such processing upon consent, the supply of the information and continued use of the application constitute that consent, which may be withdrawn as provided in this policy.
3.3 Personal information obtained through the application is not used or transferred for any purpose unrelated to the user-facing features described in this policy.
4. Disclosure
4.1 Personal information may be disclosed:
(a) to other users, to the extent the user has made it visible, having regard to visibility settings and feature selections;
(b) to service providers engaged for hosting, cloud storage, analytics, security, content moderation, communications, customer support, payment processing, verification, artificial intelligence and machine learning, and comparable functions performed on our behalf;
(c) where reasonably necessary for compliance with law or legal process, for response to lawful governmental requests, for protection of the rights, safety, or property of users, of the application, or of others, for investigation of fraud or abuse, or for enforcement of our terms and policies;
(d) in connection with a merger, financing, acquisition, reorganization, bankruptcy, sale of assets, or comparable transaction, subject to appropriate safeguards; and
(e) at the direction of the user, upon use of a feature entailing disclosure, or with the user's consent.
4.2 Aggregated or deidentified information that cannot reasonably be linked to a user may additionally be used and disclosed, subject to applicable law.
5. Sale and sharing
5.1 Personal information is not sold for monetary consideration and is not shared for cross-context behavioral advertising.
5.2 Analytics providers acting on our behalf are engaged to determine how the application is used and where its performance may be improved.
5.3 Should these practices be altered, this policy will be amended and any choice required by law afforded before information is applied to a materially different purpose.
6. Security
6.1 Administrative, technical, and physical safeguards are maintained for the protection of personal information, including encryption of data in transit between the application and our servers.
6.2 No method of transmission or storage affords complete security, and no assurance of absolute security is given.
6.3 The confidentiality of account credentials, and the prompt reporting of suspicious account activity, remain the responsibility of the user.
7. Retention
7.1 Personal information is retained for such period as is reasonably necessary for the provision of the application, the maintenance of the account, the completion of transactions, the protection of users, the satisfaction of legal obligations, the resolution of disputes, the enforcement of agreements, and the conduct of legitimate business operations.
7.2 Retention periods vary according to the category of information, the purpose of collection, applicable legal requirements, and the needs of safety and fraud prevention.
7.3 Following deletion of content or of an account, information may persist for a limited period in backups, or where retention is required or permitted by law. Deidentified information may be retained for research, analytics, and improvement.
8. User controls
8.1 Profile particulars may be reviewed and amended, and content managed, by means of the account and editing tools within the application.
8.2 Camera, photo library, notification, and location permissions are administered through device settings. A feature dependent upon a permission that has been withheld will not operate.
8.3 Push notifications may be administered through device settings and through any notification controls within the application.
8.4 The advertising identifier may be reset or deleted, and ads personalization disabled, through device settings.
9. Deletion of accounts and data
9.1 An account, together with the personal information associated with it, may be deleted by either of the following means:
(a) within the application, by use of the account deletion option in account settings; or
(b) on the web, at https://forms.gle/DNL5mzef43Sx6ssX9, by submission of a request quoting the email address or account identifier associated with the account. Neither installation of the application nor a login is required by this means.
9.2 Deletion of particular data, short of deletion of the account, may be requested at milaandfeedback@milasp.com.
9.3 Removal of the application from a device does not of itself delete the account.
9.4 Deletion is subject to exceptions of a legal, security, fraud-prevention, and operational character. Information may persist for a limited period in backups or where retention is required or permitted by law, and a message already sent remains within the recipient's copy of the exchange.
10. Rights of U.S. state residents
10.1 Subject to the law of the user's state of residence, rights may exist to request access to personal information, to obtain a copy, to correct inaccuracies, to obtain deletion, and to opt out of certain processing, together with rights to limit certain uses of sensitive personal information, to withdraw consent, to appeal a determination upon a privacy request, and to equivalent service notwithstanding the exercise of a right.
10.2 Requests may be submitted through the privacy controls within the application or to milaandfeedback@milasp.com. Verification of identity and of entitlement may be required before a request is given effect.
10.3 An authorized agent may submit a request where the law so permits, subject to proof of authorization and verification of identity.
11. California notice
11.1 The table below states the categories of personal information that may have been collected in the twelve months preceding the date of this policy, the purposes of collection, and the categories of recipients to which information may have been disclosed for a business purpose.
Category: Identifiers
Examples and purposes: Username, account identifier, IP address, device identifiers; account operation, security, and service delivery.
Business-purpose recipients: Hosting, security, analytics, and support providers.
Category: Customer records and profile data
Examples and purposes: Age or date of birth, profile particulars, education, city, transaction records; profiles, tailoring, purchasing.
Business-purpose recipients: Cloud, payment, verification, support, and safety providers.
Category: Internet or network activity
Examples and purposes: Application interactions, screens viewed, feature usage, logs, diagnostics; analytics, security, improvement.
Business-purpose recipients: Analytics, hosting, diagnostics, and security providers.
Category: Geolocation
Examples and purposes: Approximate location and, where permitted, precise location; discovery, localisation, fraud prevention, safety.
Business-purpose recipients: Location, infrastructure, analytics, and security providers.
Category: User content and communications
Examples and purposes: Photographs, posts, captions, likes, reports, messages; social features, moderation, support, safety.
Business-purpose recipients: Cloud storage, moderation, security, and support providers; other users at the user's direction.
Category: Commercial information
Examples and purposes: Virtual-item and paid-plan purchases, transaction status, product history; fulfilment, records, fraud prevention.
Business-purpose recipients: Google Play Billing; fraud-prevention and support providers.
Category: Inferences
Examples and purposes: Preferences and recommendations derived from activity; tailoring, ranking, safety, improvement.
Business-purpose recipients: Analytics, infrastructure, and personalisation providers.
Category: Sensitive personal information
Examples and purposes: Credentials, message contents, and precise geolocation where applicable; authentication, messaging, safety, requested features.
Business-purpose recipients: Security, hosting, moderation, and location providers, as required for delivery of the application.
11.2 In the twelve months preceding the date of this policy, no personal information was sold for monetary consideration and none was shared for cross-context behavioral advertising. The personal information of consumers under 16 is not knowingly sold or shared. Sensitive personal information is not used or disclosed for any purpose giving rise to a right to limit under California law.
11.3 California residents hold rights to know, to access, to correct, to delete, to be informed of disclosures, and to non-discrimination. Where required by law, browser or device opt-out preference signals, including Global Privacy Control, are honored.
12. Minors
12.1 The application is intended for persons aged 18 or over, and personal information is not knowingly collected from any person below that age.
12.2 Where an account is found to be held by a person under 18, the account may be suspended or deleted and appropriate steps taken to remove the information collected.
12.3 Our standards concerning child sexual abuse and exploitation are published separately in the Child Safety Standards and Anti-CSAE Policy at https://sites.google.com/view/mila-csae-policy.
13. Processing in other countries
Personal information may be processed and stored in the United States and in such other countries as our service providers operate in. The data protection laws of those countries may differ from those of the user's country of residence. Appropriate safeguards are applied to cross-border processing where required.
14. Amendment
This policy may be amended from time to time. The amended text is published at this address and the "Last Updated" line adjusted accordingly. Where an amendment is material, further notice may be given within the application or by such other means as the law requires. Continued use of the application after an amendment takes effect is governed by the amended policy.
15. Contact
Email: milaandfeedback@milasp.com
Enquiries concerning this policy or the handling of personal information are received at this address.