Aura Mirror by Noir
Deletion And Retention Notice
Current Deletion Controls
Aura Mirror supports deletion or cleanup controls for account deletion, profile deletion, primary photo deletion, Photo & Twin Consent revocation scrub, Archive item deletion, Saved Library deletion, Vault item deletion, Vault intake cleanup, and retention sweeps for expired asset records.
Primary Photos, Garments, And Studio Preview Outputs
Primary photos, garment uploads, Vault assets, Studio Preview outputs, and optional movement-preview outputs are retained only as long as needed for product operation, user-requested history, consent state, service troubleshooting, or required legal and security reasons. Users should be able to remove protected assets through supported in-app flows or support requests.
Service Records
Limited service records may be retained to confirm requested actions, resolve technical issues, protect account integrity, and maintain an appropriate audit trail. These records are minimized and are not retained longer than reasonably necessary for those purposes.
Upload Reliability Metrics
Limited upload reliability metrics, such as source type, file-format category, size and dimension ranges, processing time, and success or failure stage, are normally retained for 90 days. These metrics do not contain the uploaded image, generated output, biometric template, or private feedback note.
Inactive Accounts
An account is considered inactive when there has been no sign-in or meaningful account activity for 24 consecutive months. Before deletion, Noir Mirror Studio will send a notice to the account email and provide at least 30 days to sign in or request continued access. If there is no response, the account and associated personal information will be scheduled for deletion or anonymization within 30 days after the notice period.
Records needed for legal, accounting, fraud-prevention, security, dispute-resolution, consent, or transaction-audit purposes may be retained for the applicable period, with direct identifiers removed or access restricted where practical. Signing in, using a styling feature, or contacting support resets the inactivity review period.
Consent Events
Consent events may be retained to prove what notice was accepted, when it was accepted, what profile it applied to, and whether consent was later revoked or blocked. Consent history may remain after asset deletion where legally or operationally required.
Requests
Deletion, access, and correction requests should be sent to [email protected]. Some records may be retained where needed for legal, accounting, security, fraud prevention, dispute, or audit purposes.