Both clusters are designed to HIPAA-grade health-privacy standards. The US side is additionally subject to continuous third-party audit. The China cluster complies with the PRC’s privacy and data-security laws and voluntarily aligns with HIPAA design principles.
Core commitments
Health-record privacy by design
Health-record privacy by design
Strict minimum-necessary principle. Health indicators / files / journals are user-scoped; analytics surface only the necessary fields; sensitive fields are encrypted at rest; service operators do not have access to plaintext PHI.
No mid-process retention
No mid-process retention
Upstream LLM intermediate inference and tool-call traces are not persisted; only the user-visible chat content stays in the user’s own session history. LLM provider credentials are managed by Mirobody and never exposed in any user-accessible API.
Encryption
Encryption
TLS 1.2+ enforced for HTTPS and WSS in transit. Industry-standard encryption at rest. Sensitive fields receive an additional layer of field-level encryption before write.
We do not sell your data
We do not sell your data
Mirobody never sells user health data, never uses it for advertising, never monetizes it via third parties.
User rights
User rights
Per-Subject data export via the API (structured data / files); time-bounded retention auto-expires data (session data capped at 24h). Self-service erasure is built into
/v1: DELETE /v1/data (records), DELETE /v1/files/{file_key} (files), DELETE /v1/responses/{id} (stored conversations), DELETE /v1/sessions/{id} (session-scoped data), and DELETE /v1/subjects/{user} — which erases everything for one Subject (records, files, conversations, and the identity mapping). For account deletion, contact Mirobody Support.Per-cluster framework
🇨🇳 China Cluster
Live · PRC law compliant · Aligned with HIPAA design principles
🇺🇸 Global Cluster
HIPAA-compliant since day one · Continuously third-party audited