This page describes what the product actually does today, verified directly against the codebase. It's written to be accurate and complete, but it isn't a substitute for review by a qualified lawyer before you rely on it as your finished, binding policy.
Last updated 21 July 2026.
MINDSET is the data controller for the personal data described on this page. If you have questions or want to exercise any of the rights below, contact mindset@proton.me.
We don't use your data for advertising, profiling, or automated decisions with legal effect, so consent-based processing and related opt-outs don't apply here.
We don't currently take card payments directly, so we don't collect or store payment card details — if online card billing is added in future, it will run through a dedicated payment processor that we won't have access to your full card details from. We don't use advertising cookies or trackers, we don't run analytics scripts, and we don't sell or share your data with third parties for marketing. The matching that powers search runs on our own servers, not a third-party AI or vector-database vendor — your query topics never leave our infrastructure to be processed elsewhere.
MINDSET staff can view account and usage data to provide support, enforce quotas, and manage the service. If you're part of an organization, your Organization Admin can see your seat's usage (queries remaining, activity) but not the content of your queries beyond topic matches.
We use a small number of infrastructure providers to run the service — we don't sell data or share it for their own marketing purposes:
Our database and application servers run in Google Cloud's London (europe-west2) region. Sign-in data may also touch Google's global infrastructure, as described above.
If your account is removed — by you, your organization admin, or MINDSET staff — we don't delete the record outright by default. We keep it (usage history, seat history, who removed it and when) so we can accurately answer questions like "how much of my license did I use" after the fact, and so a returning user's history stays intact if they sign up again. Removing an account does stop it from being able to sign in or use the API immediately.
If you'd rather we erase your personal data outright instead of just deactivating the account, see "Your rights" below — email us and we'll action it, subject to what we're legally required to keep (e.g. financial records).
Under UK/EU GDPR, you have the right to:
Today, exercising these is a manual process rather than a self-service button in the product — email mindset@proton.me and we'll action your request. You also have the right to lodge a complaint with your local data protection authority — in the UK, that's the Information Commissioner's Office (ICO).
We don't use cookies. Sign-in works entirely through bearer tokens (a Firebase sign-in token or your API key), sent with each request rather than stored by your browser — so there's nothing here that needs a cookie consent banner.
If how we handle your data changes meaningfully, we'll update this page and change the "last updated" date above.
Questions about this policy, or to exercise any of the rights above: mindset@proton.me.