Back to home

Privacy policy

Last updated July 24, 2026

Mite is operated by Henry PL, LLC, a Delaware limited liability company ("Mite", "we", "us", or "our"). This policy explains what personal information we collect, why we collect it, and what control you have over it.

If you have any question about anything below, email us at hello@usemite.com.

The short version

  • We collect the minimum we need to run a bug reporting service.
  • We do not sell your personal information, and we never have.
  • We do not use your data, or your users' data, to train machine learning models.
  • We do not run advertising or share data with ad networks.
  • You can export or delete your data at any time by emailing us.

Two kinds of data, two different roles

Mite handles two categories of personal information, and our responsibilities differ for each.

Customer data is information about you, the developer or team who signs up for Mite. We decide how this information is used, which makes us the data controller for it.

End user data is information about the people who use your mobile app and submit bug reports through the Mite SDK. You decide what your app sends to us and how long it is kept. We hold and process that information on your behalf, which makes us a data processor and you the controller. If you are an end user of an app that uses Mite and you want your data removed, contact the developer of that app directly — they control it, and we act on their instruction.

What we collect

Information you give us

When you create an account, authentication is handled by Clerk, and we store your name, email address, and a Clerk user identifier. If you create or join an organization, we store the organization name and its membership list. If you subscribe to a paid plan, we store your plan name and its feature entitlements. We never see or store your full card number; payments are processed by Stripe through Clerk Billing.

When you create an application in Mite, we store its name, slug, and any icon you upload.

Information sent by the Mite SDK

When an end user submits a bug report from an app that has integrated Mite, we may receive and store:

  • The report itself: title, description, steps to reproduce, expected and actual behavior
  • Contact details, if your app supplies them or the reporter enters them: name and email address
  • A user identifier or an anonymous identifier that you assign
  • Device and environment information: device model, operating system version, app version, runtime version, release channel, and EAS update identifier
  • The IP address last seen for that end user
  • A navigation trail of screens visited before the report, with timestamps
  • Any screenshots or files attached to the report
  • Aggregate counts such as session count, error count, and number of reports submitted

You control what reaches us. Fields such as email, name, and user identifier are optional and are only stored if your integration provides them. Screenshots capture whatever was on screen at the moment of capture, so please make sure your integration does not capture sensitive information, and instruct your users not to include it in free-text fields.

Information collected automatically on our website

We use PostHog for product analytics and error monitoring, and Vercel Analytics for aggregate traffic measurement. These record pages visited, approximate location derived from IP address, browser and device type, and interactions within the app. We use this to understand which features are used and to diagnose failures.

How we use information

We use personal information to operate and maintain the service, authenticate you, deliver bug reports and notifications, process payments and enforce plan limits, respond to support requests, diagnose problems, detect abuse and secure the service, and comply with legal obligations.

If you are in the European Economic Area or the United Kingdom, our legal bases are: performance of a contract for operating the service and processing payments; legitimate interests for security, abuse prevention, and product analytics; consent where required, such as for non-essential cookies; and legal obligation where the law requires retention.

Who we share it with

We share personal information only with service providers who help us run Mite, and only to the extent needed for them to do that work. Our sub-processors are:

Provider Purpose
Clerk Authentication, user accounts, and billing
Convex Database and file storage
Vercel Application hosting and traffic analytics
PostHog Product analytics and error monitoring
Resend Transactional and notification email
Svix Outbound webhook delivery
Stripe Payment processing, via Clerk Billing

If you connect an optional integration, we send the data required for it to work to that provider. GitHub and Linear receive bug report content when you create an issue from a report. If you configure outbound webhooks, bug report data is delivered to the endpoint you specify, and you are responsible for that endpoint.

We may also disclose information if required by law, valid legal process, or to protect the rights, safety, and property of Mite, our customers, or the public. If Mite is involved in a merger, acquisition, or sale of assets, personal information may be transferred as part of that transaction; we will give notice before your information becomes subject to a different privacy policy.

We do not sell personal information, and we do not share it for cross-context behavioral advertising.

Cookies

We use cookies that are strictly necessary to keep you signed in and to protect your session; these are set by Clerk and cannot be turned off without breaking the service. We also store your light or dark theme preference locally in your browser.

PostHog and Vercel Analytics set analytics cookies or use similar local storage to measure product usage. Where the law requires prior consent, including in the EEA, the UK, and Switzerland, analytics are switched off until you accept them, and we ask before setting them. You can decline without losing any functionality, and you can change your mind by clearing this site's data in your browser. You can also block cookies in your browser settings, though the service will not work correctly without the essential ones.

How long we keep it

We keep your account information for as long as your account is active. Bug reports, end user profiles, and attachments are kept until you delete them, or until you delete the application they belong to; deleting an application immediately and permanently erases its bug reports, comments, attachments, end user profiles, releases, and API keys, including the stored files themselves.

When you close your account, your applications and everything in them are marked for deletion straight away. They stop being served publicly, stop accepting new bug reports from your SDK, and can no longer be accessed by anyone. They are permanently erased after a 30-day grace period, which exists so that an accidental account deletion can be reversed: if you email us within that window we can restore your account and its data. After the window closes the data is unrecoverable, including by us. We may retain records for longer only where we are required to for legal, tax, or accounting purposes. Backups are purged on a rolling basis.

Security

We use HTTPS for all traffic, encrypt data at rest through our infrastructure providers, restrict internal access to what is necessary, and apply security headers including HSTS and a content security policy. API keys are scoped per application and can be revoked at any time.

No online service can promise perfect security. If we become aware of a breach affecting your personal information, we will notify you and any relevant regulator as required by law.

Your rights

Depending on where you live, you may have the right to access the personal information we hold about you, correct it if it is inaccurate, delete it, export it in a portable format, object to or restrict certain processing, and withdraw consent where processing is based on consent. California residents additionally have the right not to receive discriminatory treatment for exercising these rights.

To exercise any of these, email hello@usemite.com. We will respond within 30 days. We may need to verify your identity before acting. You also have the right to complain to your local data protection authority.

International transfers

Mite is operated from the United States, and our providers process data in the United States and other countries. If you access Mite from outside the United States, your information is transferred to and processed in the United States. Where required, we rely on Standard Contractual Clauses or an equivalent transfer mechanism through our providers.

Children

Mite is a tool for software developers and is not directed at children. We do not knowingly collect personal information from anyone under 16. If you believe a child has provided us with personal information, email us and we will delete it.

Changes to this policy

We may update this policy as the service changes. If we make a material change, we will update the date at the top of this page and notify account holders by email or in the app before the change takes effect. Continuing to use Mite after a change means you accept the updated policy.

Contact

Questions, requests, or complaints about this policy can be sent to hello@usemite.com.