On this page27 sections
- 01Who we are
- 02Scope of this policy
- 03Our approach to personal data
- 04Personal data we collect
- 05Information we ask you not to provide
- 06Why we use personal data
- 07Consent and your choices
- 08What other users can see
- 09Automated processing and recommendations
- 10How we share personal data
- 11We do not sell personal data
- 12Data minimisation
- 13Data retention
- 14Your privacy rights
- 15Data export
- 16Account and data deletion
- 17Security
- 18Personal data breaches
- 19Research, analytics and product improvement
- 20Cookies, SDKs and similar technologies
- 21International and cross-border processing
- 22Children
- 23Third-party services
- 24Your responsibilities
- 25Complaints and grievance redressal
- 26Changes to this Privacy Policy
- 27Contact IMMLi
IMMLi (“IMMLi”, “we”, “our” or “us”) respects your privacy and is committed to handling your personal data clearly, responsibly and securely.
This Privacy Policy explains what personal data we collect, why we collect it, how we use and protect it, when we share it, how long we keep it, and the choices and rights available to you when you use the IMMLi mobile application, website and related services (together, the “Services”).
IMMLi is a wellbeing and human-connection platform built around the Mind & Mood Index (“MMI”). MMI helps people understand patterns across mood, work and care, and relationships. These patterns may then help users recognise themselves more clearly and, where they choose, discover relevant people, circles or connection experiences.
MMI comes first. Connection follows.
Because MMI can involve personal reflections about everyday emotional experience, work, caregiving and relationships, we treat this information with particular care.
At a glance
A plain-language summary of the sections below. It is a guide, not a replacement — the full text governs.
- MMI is personal, and we treat it that way. Your detailed check-ins, private reflections, journal entries and full MMI history are private by default and are not shown to other users.
- We do not sell your personal data. Not to data brokers, not to advertisers. Your private reflections are not a marketplace.
- We collect what a feature needs. Where city-level location is enough, we do not ask for precise location. Optional fields are marked optional.
- Optional things ask first. Precise location, optional notifications, marketing and research participation are separate choices you can decline or withdraw.
- You can leave with your data. Request an export, or delete your account permanently from Settings → Account → Delete Account — deletion from active systems is targeted within 30 days.
- A named person is accountable. Saubhagya, our Grievance Officer, answers privacy requests and grievances at saubhagya@immli.me.
- Reading this website collects nothing. No cookies, no analytics, no tracking. If you join the launch list or use the contact form, we store what you typed and a hashed — never raw — IP address, and you can ask us to delete it at any time.
Deleting the app from your phone does not delete your account. Read the full policy below, or jump to Account and data deletion.
Who we are#
The entity responsible for determining how and why personal data is processed through IMMLi is:
- Data fiduciary
- Immli Connect Pvt LtdN 601, Antriksh Golf View 1Sector 78, Noida 201301Uttar Pradesh, India
- Grievance
- Saubhagyasaubhagya@immli.me
- Alternate legal contact and grievance
- Nilanjana Bhowmiknilanjana@immli.me
- Technical & security
- Nitin Devnitin@immli.me
- General support
- hello@immli.me
For privacy questions, requests or complaints, you may contact us using the details above.
Scope of this policy#
This Privacy Policy applies when you:
- create or use an IMMLi account;
- complete onboarding;
- complete MMI check-ins or reflections;
- respond to profile or connection prompts;
- use circles, discovery, community, chat or connection features;
- use location-based features;
- contact customer support or report a safety concern;
- participate in optional research, surveys or feedback;
- purchase or manage a membership where available;
- visit our website; or
- otherwise interact with the Services.
Third-party websites, apps and services that are not controlled by IMMLi are governed by their own privacy policies.
Our approach to personal data#
We follow four basic principles.
Purpose first
Before asking you for personal data, we aim to tell you what information is being requested and why it is needed.
Collect what we need
We seek to collect only the personal data reasonably necessary to provide, secure and improve the relevant IMMLi feature.
Private by default
Your detailed MMI check-ins, private reflections, journal entries and full MMI history are private by default. They are not automatically displayed to other users.
Your choices matter
Where a feature is optional or requires your consent, you should be able to decide whether to use it and, where applicable, withdraw that consent.
Personal data we collect#
The information we collect depends on the features you choose to use.
| Data type | Why we collect it | Shared with others? |
|---|---|---|
| Account & authentication | Create, secure and operate your account | No — service providers only |
| Profile & connection | Show you to others in the way you choose | Yes — per your settings |
| MMI, emotional & wellbeing | Generate your MMI patterns, insights and relevance signals | Private by default |
| Location | Locally relevant discovery, plus safety and fraud prevention | City or broad area only |
| Device, technical & usage | Operate, secure and diagnose the Services | No — service providers only |
| Communications, support & safety | Answer you, and investigate reports and abuse | No — service providers only |
| Subscription & transaction | Provide and manage paid features | Handled by Apple, Google or the payment provider |
| Website forms | Tell you when we launch, and answer what you write to us | No — service providers only |
A. Account and authentication data
When you create or manage an account, we may collect:
- name or display name;
- email address;
- mobile number, where required;
- authentication information;
- age, date of birth or age range;
- city;
- language;
- account settings; and
- information required to maintain and secure your account.
If you use a third-party authentication service such as Google or Apple, we may receive information authorised by you and provided by that authentication service, such as your name, email address or authentication identifier. We do not receive your Google or Apple password.
B. Profile and connection data
Depending on the features you choose to use, we may collect:
- profile photograph;
- profile prompts;
- bio information;
- city or broad location;
- language preferences;
- relationship or life-stage information;
- connection preferences;
- interests;
- information relevant to circles, communities or discovery; and
- other profile information you voluntarily provide.
Not every profile field is required. Where information is optional, we aim to make that clear before you provide it.
C. MMI, emotional and wellbeing data
MMI is the core of IMMLi. To generate MMI patterns and related experiences, we may collect information you provide about areas such as:
- mood;
- emotional energy;
- mood stability;
- recovery after difficult or demanding experiences;
- paid work;
- household work;
- caregiving and other unpaid work;
- workload and perceived effort;
- relationships and connection;
- whether you feel supported or understood;
- onboarding responses;
- check-in responses;
- reflections;
- optional journal or free-text entries; and
- other lived-experience information you choose to provide.
From these inputs, IMMLi may generate information such as:
- MMI states;
- patterns;
- categories;
- internal scores;
- summaries;
- trends;
- insights;
- prompts; and
- connection or relevance signals.
Unless we specifically tell you otherwise, MMI information associated with your account is not anonymous.
D. Location data
Depending on the features you use, we may collect:
- city;
- region;
- approximate location; or
- precise device location, but only where the relevant feature requires it and you grant device permission.
Location may be used to provide locally relevant circles, people, communities, events or other discovery experiences and to support safety, security and fraud prevention.
We do not require precise location for every IMMLi feature. Where approximate location is sufficient, we aim to use it instead of precise location. You can manage device location permission through your device settings.
E. Device, technical and usage data
When you use the Services, we may collect information necessary to operate, secure and understand the performance of IMMLi, including:
- IP address;
- device type;
- device identifiers where applicable;
- operating system;
- app version;
- browser type;
- language settings;
- log information;
- crash information;
- session information;
- screens or features used;
- interaction information; and
- security and fraud-prevention signals.
We seek to limit technical collection to what is reasonably necessary for the disclosed purpose.
F. Communications, chat, support and safety data
When you contact IMMLi, report another user or interact with safety or support features, we may collect:
- support communications;
- emails;
- feedback;
- survey responses;
- reports;
- information submitted with a report;
- relevant account or technical information; and
- information reasonably necessary to investigate safety, fraud, abuse or Community Guidelines concerns.
Messages and other communications between users may also be processed to provide the communication service and, where reasonably necessary, to investigate reports, protect users, prevent abuse or comply with law.
IMMLi does not treat private conversations as public content.
G. Subscription and transaction data
If IMMLi offers paid memberships or digital features, we may receive information such as:
- membership or subscription type;
- subscription status;
- purchase or transaction identifier;
- transaction history; and
- payment confirmation information.
Where payment is processed through Apple, Google or another payment provider, that provider may process your payment credentials directly. IMMLi does not need to receive or store your complete payment-card information where payment is handled by the relevant payment provider.
H. Data from other sources
Where applicable and legally permitted, we may receive information from:
- Apple or Google authentication services;
- hosting and infrastructure providers;
- analytics providers;
- customer-support providers;
- security or fraud-prevention services;
- payment providers;
- other users who submit a report involving your account; and
- government, regulatory or law-enforcement authorities where legally appropriate.
I. Website forms
You do not need an IMMLi account to use the website, and simply reading it collects nothing about you. The website has two forms, and each collects only what it needs.
The launch notification list. If you ask to be told when IMMLi launches, we store the email address you enter and the date you entered it. We use it for that one announcement and related launch updates — nothing else. It is not added to any advertising audience, and you can have it removed at any time.
The contact form. If you write to us at https://www.immli.me/contact, we store the name, email address and message you submit so that we can answer you and keep a record of the correspondence. Writing to any of our published email addresses directly has the same effect.
With either form we also record limited technical information for security and abuse prevention: your browser’s user-agent string, the page you submitted from, and a one-way cryptographic hash of your IP address.
Website form data is held in a managed database service (MongoDB Atlas, operated by MongoDB, Inc.) acting as our processor. Contact messages may also be delivered to our own IMMLi mailbox through our email hosting provider. Both are covered by How we share personal data and International and cross-border processing.
Information we ask you not to provide#
Unless specifically requested for a legitimate purpose, please do not provide IMMLi with:
- medical records;
- psychiatric or therapy records;
- hospital records;
- government identification documents;
- passwords or OTPs;
- banking credentials;
- complete payment-card information; or
- another person’s private information without their permission.
Because profiles, chats and free-text fields allow users to communicate in their own words, you may voluntarily disclose information we did not ask you to provide. Please think carefully before sharing sensitive information, particularly in areas visible to other users.
Why we use personal data#
We process personal data only for disclosed and legitimate purposes associated with providing, protecting and improving IMMLi.
Depending on the information and feature involved, these purposes include:
Providing your account
- create and authenticate your account;
- maintain account settings;
- provide requested features; and
- keep your account secure.
Providing MMI
- process your check-ins;
- identify patterns across mood, work and care, and relationships;
- generate MMI states, summaries and insights;
- personalise relevant prompts; and
- show you how patterns may change over time.
Supporting meaningful connection
Where you choose to use connection features, we may use appropriate profile, MMI and preference information to:
- identify potentially relevant people or circles;
- personalise discovery;
- generate compatibility or relevance signals; and
- support community and connection experiences.
Safety and integrity
We may process appropriate information to:
- secure accounts;
- detect fraud or spam;
- investigate reports;
- enforce our Terms and Community Guidelines;
- prevent harmful or abusive use;
- maintain platform integrity; and
- comply with applicable law.
Operating and improving IMMLi
We may use appropriate information to:
- diagnose technical problems;
- measure reliability;
- understand how features are used;
- improve accessibility and usability;
- improve MMI and connection experiences; and
- develop and test product improvements.
Where reasonably possible for analytics, research and broader reporting, we prefer aggregated or de-identified information.
Consent and your choices#
Where IMMLi relies on your consent to process personal data, we will provide information about the relevant purpose before requesting that consent.
Consent should involve a clear affirmative action by you. We will not treat silence, inactivity or a pre-selected option as consent where affirmative consent is required.
Separate choices may be provided for optional activities such as:
- precise location;
- optional notifications;
- marketing communications;
- optional analytics where consent is required;
- research participation; or
- future optional integrations.
You may refuse optional consent without losing unrelated parts of IMMLi. You may withdraw consent through the relevant app or device setting where available, or by contacting us.
Withdrawal will apply going forward and may mean that a feature dependent on that information can no longer operate. Withdrawal of consent does not require IMMLi to erase information that we are required or permitted to retain for another lawful reason.
What other users can see#
Depending on your settings and the feature you choose to use, other users may see information such as:
- your display or first name;
- profile photograph;
- age or age range;
- city or broad location;
- profile prompts;
- bio information;
- information you post in shared community areas; and
- limited connection or MMI-related signals specifically designed to be shared.
Your:
- raw MMI responses;
- detailed check-ins;
- private reflections;
- journal entries; and
- full MMI history
are private by default and are not displayed to other users unless you deliberately choose to share particular information through a feature that clearly indicates it will be shared.
Automated processing and recommendations#
IMMLi uses software-based processing to turn user inputs into patterns. This may be used to:
- calculate MMI states;
- identify patterns across mood, work and care, and relationships;
- generate reflections or prompts;
- personalise features;
- identify potentially relevant circles or connections;
- support safety and fraud detection; and
- improve the relevance of the Services.
We do not sell personal data#
IMMLi does not sell personal data to data brokers or other third parties. We also do not use your private MMI reflections as a marketplace for advertisers.
If IMMLi’s business model or data practices materially change in the future, this Privacy Policy and any required consent mechanisms will be updated before the new processing is introduced.
Data minimisation#
IMMLi seeks to collect only information reasonably necessary for the feature or purpose described to you. This means, for example:
- precise location should not be collected where city-level location is sufficient;
- optional profile information should not be required merely to create an account unless genuinely necessary;
- private MMI information should not be exposed to other users simply because connection features use MMI patterns; and
- technical or analytics information should not be collected without a defined product, security or operational purpose.
As IMMLi evolves, we will periodically review the information we collect and remove unnecessary collection where reasonably practicable.
Data retention#
We keep identifiable personal data only for as long as reasonably necessary for the purpose for which it was collected or for another legally permitted purpose.
Retention periods may differ for:
- account information;
- MMI and check-in history;
- profile information;
- user-generated content;
- chat and communication data;
- support records;
- safety and enforcement records;
- transaction records;
- security logs;
- consent records; and
- website form submissions.
Website forms
We keep an address on the launch notification list until you ask us to remove it, or until the launch announcement it was collected for has been sent and the list is closed — whichever happens first. You do not have to wait for either: ask us at any time and we will remove it.
We keep a contact-form message for as long as needed to answer you and to hold a reasonable record of the correspondence, and longer only where a message forms part of a safety, legal or abuse record.
When information is no longer required, we will delete it or irreversibly de-identify it, unless retention is required or permitted for purposes such as:
- legal compliance;
- accounting or transaction records;
- fraud prevention;
- security;
- investigating serious abuse;
- preventing repeated attempts to evade enforcement; or
- establishing, exercising or defending legal claims.
We will not retain detailed identifiable MMI information indefinitely merely because it may be useful in the future.
Your privacy rights#
Subject to applicable law and reasonable identity verification, you may request to:
Access your information
You may ask for information about personal data associated with your account and how it is being processed.
Correct your information
You may correct inaccurate or incomplete personal data through available account settings or by contacting us.
Withdraw consent
Where processing depends on consent, you may withdraw that consent.
Delete your account and eligible personal data
You may request permanent deletion as described in Account and data deletion, or follow the step-by-step route at https://www.immli.me/account-deletion.
Obtain a copy of your information
You may request an export of eligible personal data associated with your account. Where technically available, IMMLi will provide the export in a commonly readable electronic format.
Raise a grievance
You may contact our Grievance Officer if you have a concern about how IMMLi handles your personal data or a request you have made.
Nomination
Where required under applicable Indian data-protection law, you may exercise any available right to nominate another individual to exercise applicable rights in the event of death or incapacity.
If you do not have an account
These rights are not limited to account holders. If the only personal data we hold about you came from a website form — a launch-list signup or a contact message — you can ask to see it, correct it or have it deleted by writing to our Grievance Officer at saubhagya@immli.me. Because there is no account to verify you against, please write from the address you used, or give us enough detail to locate the record.
Nothing in this section limits rights available to you under applicable law.
Data export#
You may request a copy of eligible personal data associated with your IMMLi account through:
- In the app
- Settings → Privacy → Download My Data
- Or by email
- Saubhagya, Grievance Officersaubhagya@immli.me
The export may include, where applicable:
- account information;
- profile information;
- MMI/check-in information;
- user-provided reflections;
- preferences; and
- other eligible information associated with your account.
Certain information may be excluded where disclosure would adversely affect another person’s privacy, compromise security or fraud-prevention systems, reveal confidential proprietary systems, or where retention or restriction is required by law.
We aim to acknowledge a verified export request promptly and complete valid requests within 30 days, unless additional time is reasonably required or applicable law provides otherwise.
Account and data deletion#
You can request permanent deletion of your IMMLi account.
Deletion is available:
- In the app
- Settings → Account → Delete Account
- General support
- hello@immli.me
- Grievance Officer (Saubhagya)
- saubhagya@immli.me
- Alternate Grievance Officer (Nilanjana Bhowmik)
- nilanjana@immli.me
When we receive and verify a valid deletion request, we will:
- remove your account from normal use and discovery;
- begin deletion of personal data associated with the account from active systems;
- delete or irreversibly de-identify eligible MMI information and other account-linked personal data; and
- delete eligible user-generated content associated with your account.
We aim to complete deletion from active systems within 30 days of a verified deletion request. Some residual copies may remain temporarily in secure backups until those backups are overwritten in the ordinary backup cycle.
We may retain limited information where reasonably necessary or legally required for:
- fraud prevention;
- platform safety;
- preventing repeated serious abuse or enforcement evasion;
- transaction or accounting requirements;
- compliance with law;
- resolving disputes; or
- establishing, exercising or defending legal claims.
Where information must be retained, we will limit it to what is necessary for that purpose and will not continue using it for unrelated purposes.
Security#
We use reasonable technical and organisational safeguards designed to protect personal data from unauthorised access, disclosure, alteration, loss or destruction.
Depending on the system and data involved, safeguards may include:
- encryption of personal data in transit;
- encryption of stored personal data where appropriate to the system and risk;
- access controls;
- role-based internal permissions;
- authentication controls;
- logging and monitoring;
- security updates and vulnerability management;
- backups and recovery controls;
- vendor security requirements; and
- incident-response procedures.
Access to identifiable MMI information should be limited to authorised systems and personnel who require access for legitimate operational, safety, support or legal purposes.
No digital system can guarantee absolute security. We therefore continuously seek to improve safeguards appropriate to the nature and sensitivity of the information we process.
You are responsible for protecting your login credentials and should notify us promptly if you suspect unauthorised access. Security issues can be reported to nitin@immli.me.
Personal data breaches#
If IMMLi becomes aware of a personal data breach, we will investigate and take reasonable steps to contain and remediate it.
Where required by applicable law, we will notify affected users and the appropriate authority or Data Protection Board in the form and within the period required by law.
Our response may include:
- containing the incident;
- securing affected systems;
- assessing what information was affected;
- determining the potential consequences;
- taking steps to reduce further harm; and
- providing affected users with appropriate information or protective steps where required.
Research, analytics and product improvement#
We may analyse appropriate information to understand and improve IMMLi, including MMI, usability, safety and connection experiences.
Where reasonably possible, broader analytics, research and reporting will use aggregated or de-identified information.
Participation in a specific optional research study, survey or research programme will be clearly identified as optional. Where separate consent is required for a research activity, we will request it before using your information for that activity.
IMMLi will not represent MMI as a clinically validated diagnostic instrument merely because certain aspects of its development may draw on established wellbeing research.
International and cross-border processing#
Personal data may be processed in India or in another country where an approved IMMLi service provider operates.
Where personal data is processed outside India, IMMLi will do so subject to applicable Indian law and any restrictions or requirements governing such transfers.
Our use of an overseas service provider does not remove our responsibility to handle personal data consistently with this Privacy Policy.
Children#
IMMLi should not collect children’s personal data through the ordinary account-creation process.
If we discover that an account belongs to a person under 18, we may suspend or terminate the account and take reasonable steps to delete associated personal data, subject to applicable legal or safety requirements.
Third-party services#
IMMLi may integrate with services operated by third parties, including authentication, payment or infrastructure providers.
Those providers may process information under their own terms and privacy policies where they act independently of IMMLi. We encourage you to review relevant third-party policies before using their services.
Your responsibilities#
Privacy is also affected by what users choose to share. Please:
- protect your login credentials;
- do not share passwords or OTPs;
- avoid publishing unnecessary sensitive information in your profile;
- respect other users’ privacy;
- do not publish private conversations without appropriate permission;
- do not share another person’s personal information without permission; and
- use care before moving conversations off IMMLi.
Our Community Guidelines contain additional rules protecting privacy and emotional safety.
Complaints and grievance redressal#
If you have a concern about your personal data or believe we have not handled a privacy request appropriately, please contact one of our Grievance Officers below.
- Grievance Officer
- Saubhagyasaubhagya@immli.meN 601, Antriksh Golf View 1Sector 78, Noida 201301Uttar Pradesh, India
- Alternate Grievance Officer
- Nilanjana Bhowmiknilanjana@immli.me
- Technical & security escalations
- Nitin Devnitin@immli.me
Please include enough information for us to understand and investigate your concern, but do not send passwords, OTPs or unnecessary sensitive information.
We will acknowledge and address grievances within the timeframe required by applicable law and our published grievance process.
Where applicable, you may also have the right to approach the Data Protection Board of India after using IMMLi’s grievance-redressal process.
Changes to this Privacy Policy#
We may update this Privacy Policy where our Services, technology, data practices or legal obligations change.
For minor changes, we may update the date at the top of this Policy.
If a change materially affects how we process your personal data, we will provide appropriate notice through the app, website, email or another suitable method.
Where a new purpose requires fresh consent under applicable law, updating this Privacy Policy alone will not be treated as your consent to that new purpose.
Contact IMMLi#
- Registered office
- Immli Connect Pvt LtdN 601, Antriksh Golf View 1Sector 78, Noida 201301Uttar Pradesh, India
- General support
- hello@immli.me
- Grievance Officer — privacy requests and grievances
- Saubhagyasaubhagya@immli.me
- Alternate Grievance Officer — legal requests and grievances
- Nilanjana Bhowmiknilanjana@immli.me
- Technical & security
- Nitin Devnitin@immli.me
Published at https://www.immli.me/privacy and last updated on 13 August 2026. Questions about this document go to hello@immli.me.
Back to top ↑