Privacy Policy
M.I.O. Privacy Policy
Last updated: September 3, 2026
Scope
This Privacy Policy applies to M.I.O. (Malevolent Immortal Overdrive), a Windows application provided by TINMOON.
Information stored on the device
M.I.O. stores Talk Rooms, conversation history, participant display names, icons, local AI guidance, model and permission settings, appearance settings, delivery state, and related application data on the user’s device. Room backups, generated-image downloads, and files saved to an editing folder are written only to locations selected by the user.
Data sent to AI Providers
M.I.O. does not provide an AI model. When the user sends a message, the message, required Room context, local AI guidance, selected model information, and related request data may be sent to the selected AI Provider, including OpenAI, Google, Anthropic, or xAI, through a Provider CLI installed and authenticated separately on the user’s device. When Codex workspace features are used, file contents and command results within a folder selected by the user may also be processed.
Third-party services
Information sent to a Provider is handled under that Provider’s terms, privacy policy, subscription, billing, retention, and model-training settings. TINMOON does not control how each Provider handles that information. Users should review the terms of every Provider they choose to connect.
Credentials
M.I.O. does not ask users to enter or independently store Provider email addresses, passwords, API keys, or other sign-in credentials. Provider authentication is completed through each Provider’s CLI or official authentication screen.
Analytics and advertising
M.I.O. does not include TINMOON-operated analytics, advertising, behavioral tracking, a proprietary account system, or proprietary telemetry. M.I.O. does not automatically send usage information or conversation content to a TINMOON server.
Local connections
Optional local MCP features run only when enabled by the user and are limited to loopback connections on the same device with token authentication. The current version of M.I.O. does not provide Remote Relay or multi-device synchronization.
User control
Rooms and settings stored on the device can be managed in M.I.O. Backup files, downloaded images, images saved to an editing folder, and other files created in user-selected locations remain under the user’s control and should be managed or deleted by the user.
Changes
We may update this policy when M.I.O. or its connected services change. The last-updated date on this page will be revised when material changes are made.
Contact
For questions about this policy, contact us through BOOTH Messages.