Privacy Policy
Last updated 9 June 2026
The Leader’s Mirror is operated by Mike Cruz LLP (“we”, “us”), based in India. This policy explains what information we collect when you use the app at leadersmirror.com, why we collect it, who we share it with, and the choices you have. We keep this deliberately plain. Questions? Email mike@mikecruzllp.com.
Information we collect
- Account details — your name and email address, used to sign you in (we use passwordless “magic link” sign-in, so we never hold a password).
- Location — your country and state, which you provide at payment, used for tax (GST) and to show the right pricing.
- Your assessment data — your answers, scores, and profiles across the five self-reflections.
- Your journal — the realisations, micro-commitments, and review dates you choose to record. These are private to your account.
- Purchase records — the tier you bought, the amount, currency, and a payment reference. We do not see or store your card or bank details (see “Payments”).
- Calendar tokens — only if you connect Microsoft Outlook: a secure access token so we can add your review events. Optional, and removable at any time. (The downloadable calendar file needs no connection and no tokens.)
- Usage analytics — privacy-friendly, aggregate measurements (such as page views and country). These carry no cookies and no personal identifiers.
How we use it
We use your information only to run the service for you:
- To deliver the assessments, build your dashboard, and store your journal.
- To sign you in and keep your session secure.
- To process payments and issue receipts/invoices.
- To add your review dates to your calendar, if you connect one.
- To send essential service emails (your sign-in link, purchase confirmation).
- To understand, in aggregate, how the product is used so we can improve it.
We do not sell your data, and we do not use it for advertising.
Payments
Payments are processed by Razorpay. When you pay, you enter your payment details directly with Razorpay — they are never seen or stored by us. We receive only a confirmation and limited details (your email, the amount, a payment ID, and your state for GST). Razorpay’s own privacy terms govern the payment step.
Calendar connections (optional)
The simplest way to get your review dates into a calendar is the downloadable calendar file (.ics), which needs no connection and no tokens. Optionally, if you choose to connect Microsoft Outlook, you grant permission for us to create calendar events for your review dates. We store an access/refresh token securely for this purpose only. We do not read, share, or modify your existing events, and we do not use this access for anything else. You can disconnect at any time in Settings, which deletes the stored tokens.
The Leader’s Mirror’s use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
Service providers we rely on
We use a small set of trusted providers to run the service. They process data only to deliver it on our behalf:
- Supabase — database and authentication
- Vercel — hosting and privacy-friendly analytics
- Resend — transactional email (your sign-in link, confirmations)
- Razorpay — payment processing
- Google / Microsoft — calendar, only if you connect them
Cookies
We use a single, essential cookie to keep you signed in. Our analytics is cookieless. We use no advertising or third-party tracking cookies.
Data retention
We keep your account and content while your account is active. You can ask us to delete your data at any time, and we will — except records we are legally required to keep (for example, tax invoices).
Security
Data is encrypted in transit (HTTPS) and stored with our providers’ security controls. Because sign-in is passwordless, there is no password to be stolen or reused.
Your rights
You can access, correct, export, or delete your personal data. Email mike@mikecruzllp.com and we’ll action your request. You can disconnect any calendar and stop non-essential email at any time.
Children
The Leader’s Mirror is intended for senior professionals and is not directed to anyone under 18. We do not knowingly collect data from children.
International processing
We operate from India. Your data may be processed by our providers in other regions under appropriate safeguards.
Changes to this policy
We may update this policy from time to time; the “last updated” date above will change. We’ll communicate material changes.
Contact
Mike Cruz LLP · mike@mikecruzllp.com
This policy is governed by the laws of India.