Privacy Policy

Last updated: April 13, 2026

1. Introduction

MiaCortex (“we,” “our,” or “us”) is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our AI-powered learning platform at mia.hcm.it.com (the “Service”).

2. Information We Collect

2.1 Information You Provide

  • Account information (name, email address, password) when you register
  • Code you write in the editor during learning sessions
  • Chat messages you send to the AI tutor
  • Problems you save and learning progress data

2.2 Automatically Collected Information

  • Usage data (pages viewed, features used, time spent)
  • Device information (browser type, operating system)
  • Log data (IP address, access times)

3. How We Use Your Information

We use the collected information to:

  • Provide and maintain the learning platform
  • Personalize your learning experience with AI tutoring
  • Track and display your progress across topics
  • Process AI-powered code analysis and problem generation via Google Gemini API
  • Improve our platform and develop new features
  • Communicate with you about service updates

4. Third-Party Services

Our Service uses the following third-party services:

  • Google Gemini API (Google Cloud) — Your chat messages and code are sent to Google's Gemini API for AI tutoring. Google's Privacy Policy applies to data processed by their services.
  • NextAuth.js — Used for authentication. Passwords are hashed with bcrypt and never stored in plain text.
  • Pyodide (WebAssembly) — Python code execution happens entirely in your browser. No code is sent to external servers for execution.

5. Data Security

We implement appropriate technical and organizational measures to protect your personal information, including:

  • Password hashing using bcrypt
  • JWT-based session management
  • HTTPS encryption for all data in transit
  • Regular security updates and dependency audits

6. Data Retention

We retain your personal information for as long as your account is active or as needed to provide the Service. You may request deletion of your account and associated data at any time by contacting us.

7. Your Rights

You have the right to:

  • Access your personal data
  • Correct inaccurate data
  • Request deletion of your data
  • Export your data (progress, saved problems)
  • Withdraw consent for data processing

8. Children's Privacy

The Service is intended for users aged 13 and older. We do not knowingly collect personal information from children under 13. If you believe we have collected such information, please contact us immediately.

9. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by posting the updated policy on this page with a new “Last updated” date.

10. Contact Us

If you have questions about this Privacy Policy or wish to exercise your data rights, contact us at: