Privacy Policy
Your data. Your rules.
Introduction
Welcome to Miyora ("the App," "Platform," or "Service"). Miyora is a community engagement platform designed to connect residents with the communities where they live, learn, and thrive — including apartment communities, homeowner associations (HOAs), college and university campuses, retirement communities, assisted living facilities, and residential real estate communities.
Miyora is operated by T.R.E.N.D. (Top Resources Empowering New Directions LLC), a technology holding company registered in the State of Georgia ("T.R.E.N.D.," "we," "us," or "our"). TREND is the trade name under which T.R.E.N.D. operates, and Miyora is a product of TREND.
This Privacy Policy explains how we collect, use, disclose, and protect your personal information when you use the Miyora mobile application, web portal, or any related services. By accessing or using Miyora, you agree to the practices described in this policy.
Who This Policy Covers
| Category | Description |
|---|---|
| Residents | Individuals who access Miyora as members of a community — tenants, HOA members, students, retirement or assisted living residents. |
| Community Managers (PMs) | Individuals who administer a community on behalf of a property management company or organization. |
| Visitors | Individuals who visit our website or marketing pages without creating an account. |
Information We Collect
Information You Provide Directly
| Data Type | Examples | Who Provides It |
|---|---|---|
| Account information | Name, email address, password | Residents, PMs |
| Profile information | Display name, profile photo, bio | Residents |
| Community content | Posts, comments, reactions, event RSVPs, announcements, help requests, facility bookings | Residents, PMs |
| Direct messages | Private messages between residents | Residents only |
| Support communications | Emails or messages sent to our team | All users |
Information Collected Automatically
When you use Miyora, we may automatically collect device type, operating system, and app version; IP address and general location (city/region level); usage data including screens visited, features used, and session duration; crash logs and performance diagnostics; and push notification tokens for delivering in-app alerts.
Information from Third-Party Services
Miyora integrates with Supabase (database and authentication), Expo (mobile app infrastructure and push notification delivery), Stripe (community subscription billing — resident payment data is never stored by us), and Apple/Google (push notification routing). We do not purchase or receive data from data brokers.
How We Use Your Information
- Provide and operate the Service — authenticate accounts, display community content, deliver notifications
- Personalize your experience — surface relevant community activity based on your membership
- Communicate with you — send transactional emails, in-app notifications, and support responses
- Maintain platform safety — detect fraud, abuse, and policy violations through AI-assisted content moderation
- Improve the platform — analyze aggregate usage patterns (never individual profiling)
- Fulfill legal obligations — comply with applicable law and respond to lawful requests
We do not use your personal information for targeted advertising. Miyora is ad-free.
Three-Tier Data Ownership
| Tier | Data Type | Owned By | Access |
|---|---|---|---|
| Tier 1 | Resident profile, direct messages, credentials, personal activity | The Resident | Resident only — zero PM access, enforced at database level |
| Tier 2 | Community posts, announcements, reactions, events, RSVPs, help requests, facility bookings | Community / Community Manager | PMs and residents within same community only |
| Tier 3 | Aggregated platform analytics, anonymized usage patterns, feature adoption data | T.R.E.N.D. | Internal only — never sold, never attributed to individuals or communities |
Direct Messages & Electronic Communications Privacy
Direct messages sent between residents on Miyora are private communications protected under the Electronic Communications Privacy Act (ECPA), 18 U.S.C. §§ 2510–2523.
T.R.E.N.D. does not read, sell, monetize, or use the content of private messages for any purpose, including advertising, profiling, or training AI models. Community Managers and Property Managers have no access to resident direct messages under any circumstances — this is enforced at the database level, not merely by policy.
Access to message content by T.R.E.N.D. personnel occurs only in response to a valid legal process (subpoena, court order, or equivalent government demand), or in response to a credible, imminent threat to the safety of a user or the public. In all cases, access is logged and subject to internal review.
Message content is retained until deleted by the user or until account closure. Following account deletion, message content is removed within 30 days. The receiving party's copy of a message is managed independently and may be retained consistent with their own account status.
Law Enforcement & Legal Process
T.R.E.N.D. requires valid legal process before disclosing user data to law enforcement or government entities. Our policy is as follows:
We review all government and law enforcement requests for legal sufficiency before responding. We will notify affected users of legal demands for their data where we are permitted by law to do so. We do not provide law enforcement with direct access to our systems. We respond to emergency disclosure requests only when we have a good-faith belief that disclosure is necessary to prevent imminent risk of death or serious physical injury.
In the event we receive a legally valid demand we are required to comply with, we disclose only the minimum data necessary to satisfy the request.
Users who have legal questions about a demand for their data are encouraged to contact qualified legal counsel.
Data Retention
| Data Category | Retention Period |
|---|---|
| Active account PII | Retained while account is active |
| Community content (posts, reactions, bookings) | Retained while community is active on platform |
| Direct messages | Retained until deleted by user or account closure |
| Push notification tokens | Deleted immediately upon account deletion |
| Deleted account PII | Nulled within 30 days of account deletion confirmation |
| Audit logs | Retained for 7 years (compliance) |
| Aggregated analytics (non-PII) | Retained indefinitely by T.R.E.N.D. |
When a community partnership ends or is removed from the platform, resident data is not deleted as a consequence of that removal. Residents retain independent data rights regardless of their community's subscription status. Aggregated, anonymized platform analytics survive partnership termination and remain the property of T.R.E.N.D.
Your Privacy Rights
- Access — Request a copy of the personal data we hold about you
- Correction — Request correction of inaccurate data
- Deletion — Request deletion of your account and associated personal data (completed within 30 days)
- Portability — Request an export of your data in a machine-readable format
- Objection — Object to certain processing activities
- Withdrawal of Consent — Where processing is based on consent, withdraw it at any time without affecting prior processing
California Residents (CCPA/CPRA): You have the right to know what personal information is collected about you, the right to delete it, the right to correct inaccurate information, the right to opt out of the sale or sharing of your personal information (we do not sell or share data), and the right to non-discrimination for exercising these rights. We will respond to all verified requests within 30 days. Submit requests to admin@miyora-app.com.
Data Breach Notification
In the event of a security incident that affects your personal information, T.R.E.N.D. will:
Internally assess and contain the breach within 72 hours of discovery. Notify affected users as required under applicable law — including the Georgia Personal Identity Protection Act (O.C.G.A. § 10-1-910 et seq.) — in the most expedient time possible. Notify relevant authorities where required by law. Provide affected users with a description of the nature of the breach, the categories of data affected, and steps taken to address it.
If you believe your Miyora account has been compromised, contact us immediately at admin@miyora-app.com.
Children's Privacy
Miyora is not directed to children under the age of 13. We do not knowingly collect personal information from children under 13. If you believe a child under 13 has provided us with personal information, please contact us immediately at admin@miyora-app.com and we will delete it promptly.
For communities serving minors (e.g., certain campus environments), parental consent mechanisms and additional compliance measures may be required. Contact us to discuss COPPA compliance requirements for your specific community type before onboarding.
Data Security
- End-to-end TLS encryption for all data in transit
- Encrypted storage for sensitive data at rest via Supabase
- Row-Level Security (RLS) enforced at the database level — community data is isolated by community_code
- Role-based access controls — community managers cannot access backend services or Tier 1 resident data directly
- Push notification tokens stored separately and deleted immediately upon account closure
- Regular security reviews and dependency audits
- AI-assisted content moderation for community safety
No system is perfectly secure. In the event of a data breach affecting your personal information, we will notify you as required by applicable law and as described in Section 11.
International Users
Miyora is operated from the United States and is primarily intended for US-based communities. If you access Miyora from outside the United States, your data will be transferred to and processed in the United States.
For users in the European Economic Area (EEA) or United Kingdom: Our lawful basis for processing your personal data is (a) contract performance for account operation, (b) legitimate interests for platform improvement and safety, and (c) consent for optional communications. You have the right to lodge a complaint with your local data protection authority. To exercise your data subject rights, contact us at admin@miyora-app.com.
T.R.E.N.D. does not currently offer services directed at EEA or UK residents. If this changes, we will update this policy and implement additional safeguards as required by applicable law.
Changes to This Policy
We may update this Privacy Policy from time to time. When we make material changes, we will update the "Last Updated" date at the top of this page, notify you via in-app notification or email at least 14 days before changes take effect, and request renewed consent where required by applicable law.
Continued use of Miyora after the effective date of changes constitutes acceptance of the updated policy. If you do not agree to the updated policy, you may delete your account at any time through the app settings.
Contact Us
For privacy requests, questions about this policy, data deletion requests, or law enforcement inquiries, contact us using the information below.
© 2026 T.R.E.N.D. (Top Resources Empowering New Directions LLC). All rights reserved. Miyora is a product of TREND. TREND is a trade name of Top Resources Empowering New Directions LLC, a Georgia limited liability company.
Read our Terms of Use →