Privacy Notice
MENTRA LABS, INC.
PRIVACY NOTICE (GLOBAL)
Effective Date: March 18, 2026
Last Updated: March 18, 2026
Introduction
Mentra Labs, Inc. (“Mentra,” “we,” “us,” or “our”) respects your privacy and is committed to protecting your personal information. This Privacy Notice explains how we collect, use, disclose, and protect your personal information when you use:
- Mentra Live smart glasses and related hardware
- MentraOS open-source operating system (including when installed on compatible third-party smart glasses)
- Mentra App for iOS and Android devices
- Mentra Store (miniapp marketplace)
- MentraAI artificial intelligence features and services
- Our websites at mentraglass.com and related domains (collectively, the “Services”)
This Privacy Notice applies to consumers and users of our products worldwide, except users located in the People's Republic of China (excluding Hong Kong SAR, Macau SAR, and Taiwan). If you are located in mainland China, please refer to the separate Mentra China Privacy Notice, which is available at mentraglass.cn and governs the collection and use of your personal information.
If you are located in specific jurisdictions, additional rights and protections may apply as described in Section 15 (Jurisdiction-Specific Provisions).
By using our Services, you acknowledge that you have read and understood this Privacy Notice.
Open Source Transparency
MentraOS, the operating system that runs on Mentra glasses, is open-source software. The source code is publicly available for review at https://github.com/Mentra-Community/MentraOS (opens in new tab).
What You Can Verify
You or security researchers can examine the MentraOS source code to understand:
- How camera, microphone, and motion sensor permissions function
- What data is collected at the device level
- How data is transmitted from your glasses to your paired phone
- The implementation of our default no-collection policy for sensor data
Scope of Open Source
The open-source license applies to MentraOS only. The following components are proprietary and their code is not publicly available:
- Mentra cloud relay infrastructure
- MentraAI backend services
- Mentra Store platform
- First-Party Miniapps (unless separately designated as open source)
Third-Party Processing
When you use AI features, your data is processed by third-party providers (Google Gemini, OpenAI ChatGPT) whose systems are not open source.
For information about the MentraOS open-source license, see our Terms of Service at mentraglass.com/terms-of-service (opens in new tab).
Table of Contents
- Information We Collect
- Website and Purchases (Shopify/E-Commerce)
- Cookies and Tracking
- Sensor Data and Device Permissions
- Use of Artificial Intelligence
- How We Use Your Information
- Legal Bases for Processing (GDPR)
- How We Share Your Information
- Third-Party Miniapps and Services
- Data Retention
- Data Security
- International Data Transfers
- Children's Privacy
- Your Privacy Rights
- Jurisdiction-Specific Provisions
- Changes to This Privacy Notice
- Contact Us
1. Information We Collect
We collect information in the following categories:
1.1 Information You Provide
- Account Information: Email address, username, password, and profile preferences when you create a Mentra account
- Purchase Information: Billing address, shipping address, payment method details (processed by our payment processors), and order history
- Communications: Messages, feedback, support requests, and other communications you send to us
- User Content: Notes, transcriptions, recordings, and other content you create using the Services
1.2 Information Collected Automatically
- Device Information: Device identifiers, hardware model, operating system version, firmware version, battery status, and connectivity status
- Usage Data: App interactions, feature usage, miniapp installations, session duration, and navigation patterns
- Log Data: IP addresses, access times, browser type, referring URLs, and error logs
- Location Data: General location based on IP address; precise GPS location only when you grant permission through the Mentra App
1.3 Sensor Data from Mentra Glasses
Our smart glasses contain sensors that can collect data only when you or an authorized miniapp activates them. By default, no sensor data is collected or transmitted.
- Camera Data: Photos, video recordings, and live video streams captured through the glasses camera (119° field of view)
- Audio Data: Voice commands, audio recordings, and microphone input for AI interactions and calls (3 microphones)
- Motion Data: Inertial measurement unit (IMU) data including accelerometer and gyroscope readings
Important: Sensor data is collected only when:
- You explicitly activate a feature requiring that sensor (e.g., saying “Hey Mentra” activates the microphone)
- You grant permission to a miniapp to access specific sensors
- You initiate recording, streaming, or an AI query
2. Website & Purchases (Shopify / E-Commerce)
When you visit or make a purchase through our online store, we collect and use your personal information as described in this Privacy Notice. Our store is powered by Shopify.
Depending on how you interact with our website and store, we may collect:
- Contact details, such as your name, email address, billing and shipping address, and phone number
- Order and transaction information, such as products purchased, order history, payment confirmation details, and delivery information
- Payment information, such as your payment card details and billing address, which is collected and processed by our payment processors (we do not store full payment card numbers)
- Account information, if you create an account on our Site, and customer support information, such as messages and inquiries you send to us
- Usage and device information related to your visits to our Site and store, such as device identifiers, browser type, IP address, and interactions with our Site
We use this information to operate and improve our Site and store, process and fulfill your orders, communicate with you about your purchases and account, and for marketing and advertising purposes as described in this Privacy Notice.
Our e-commerce providers and payment processors may process your personal information in the United States and other countries. We require these providers to protect your information in accordance with applicable law.
3. Cookies & Tracking
When you visit our websites, use our online Services, open or click on emails we send you, or interact with our content or advertisements, we and our third-party partners automatically collect certain information using cookies, pixels, and similar technologies (“Cookies”).
The information collected through Cookies may include identifiers (such as your IP address, device ID, and cookie ID), device and browser information, location information, date and time of visit, and information about your activities or interactions with our websites, emails, and online advertisements.
We use these technologies for several purposes, including to:
- Operate, secure, and improve our websites and online Services (for example, to remember your preferences, keep you signed in, and enable shopping cart functionality)
- Run analytics and measure how users access and use our Sites and communications, so we can understand usage, improve our Services, and develop new features
- Provide, measure, and improve marketing and advertising, including to show you Mentra ads on other websites and apps and to understand whether those ads were effective
We may also allow certain third parties (such as analytics and advertising providers) to set Cookies on our Sites or in our Services. These third parties may use Cookies to collect information about your activities on our Sites and across different websites and apps over time for advertising and analytics purposes.
Your Choices: Most browsers automatically accept Cookies by default. You can choose to set your browser to remove or reject Cookies, or to prompt you before accepting a Cookie. Please note that blocking Cookies may affect your experience using our Sites.
Our websites also recognize the Global Privacy Control (GPC) signal. When we detect a valid GPC signal from your browser, we will treat it as a request to opt out of the “sale” or “sharing” of your personal information for targeted advertising purposes under applicable state privacy laws.
In addition to using browser settings, Cookie preferences, and GPC, you may contact us at privacy@mentraglass.com (opens in new tab) if you have questions about how we use Cookies.
4. Sensor Data and Device Permissions
4.1 Permission-Based Access
MentraOS employs a permission-based model for sensor access. This model is implemented in our open-source code and can be independently verified.
4.2 Data Transmission Architecture
When sensor data is activated:
- Data is captured by Mentra glasses
- Transmitted to your paired smartphone via Bluetooth Low Energy (BLE)
- From your phone, data may be transmitted to our cloud relay server via encrypted connections (HTTPS, encrypted UDP, or WebSocket)
- Our relay server routes data to the miniapp(s) you are using
For video streaming, data may bypass the phone and stream directly from glasses to our streaming infrastructure (Cloudflare RTMP), which then forwards it to third-party streaming platforms you select (e.g., YouTube, Twitch).
4.3 Local vs. Cloud Processing
- AI queries and complex processing require transmission to cloud-based AI services
- Recording storage can be saved locally to your paired phone or to cloud services based on your settings
4.4 Data Minimization
We apply data minimization principles in accordance with GDPR Article 5(1)(c):
- Sensor data is collected only when necessary for the specific feature you activate
- We do not collect sensor data in the background without your active initiation
- You can revoke sensor permissions at any time through the Mentra App
5. Use of Artificial Intelligence
5.1 AI Transparency Notice
You are interacting with an AI system. MentraAI provides AI-powered features that process your voice, images, and text using artificial intelligence. This section explains how AI features work and how your data is processed.
5.2 AI Features and Capabilities
MentraAI provides the following AI-powered features:
- Live captioning and transcription
- Real-time translation
- Visual assistance and object recognition
- Conversational AI assistant
- Note-taking and summarization
- Teleprompter
5.3 Third-Party AI Providers
To provide AI features, we use services from the following third-party providers:
Google (Gemini)
- Used for: Certain AI capabilities including visual understanding
- Data processed: Images, text queries
- Location: Data may be processed in the United States and other countries
- Policies: Subject to Google's AI Terms of Service and Privacy Policy
OpenAI (ChatGPT)
- Used for: Conversational AI, text processing, summarization
- Data processed: Text queries, transcriptions
- Location: Data may be processed in the United States
- Policies: Subject to OpenAI's Terms of Use and Privacy Policy
Contractual Protections
We maintain data processing agreements with our AI providers that include:
- Restrictions on use of your data for training their general AI models
- Data security requirements
- Confidentiality obligations
- Data deletion upon request
Speech-to-Text Processing
When you use voice features, audio may be sent to our speech-to-text providers, including Soniox, solely to generate transcripts or related outputs for the feature you requested. Mentra does not retain raw audio or store transcripts from these voice features. Third-party miniapps that receive microphone or transcript data through MentraOS permissions are independently responsible for their own handling of that data and must provide their own privacy disclosures.
5.4 AI Training and Your Data
We do not use your personal data to train Mentra's AI models without your explicit consent.
Third-Party AI Training: Our contractual arrangements with Google and OpenAI prohibit them from using your personal data processed through Mentra Services to train their general AI models.
5.5 Automated Decision-Making
We do not use AI to make decisions that produce legal effects or similarly significantly affect you without human involvement. AI outputs (captions, translations, suggestions) are informational only and do not constitute decisions about you.
If we implement automated decision-making in the future, we will update this Privacy Notice and, where required by law, obtain your explicit consent and provide you with the right to human review.
5.6 AI Content Labeling
In compliance with applicable AI transparency regulations, including the EU AI Act:
- Explicit Labels: AI-generated content (captions, translations, summaries, AI responses) is identified as AI-generated within the user interface
- Implicit Labels: Where AI-generated content can be downloaded or exported, metadata labels are embedded in accordance with applicable technical standards
- Chatbot Disclosure: When interacting with MentraAI conversational features, you are notified that you are interacting with an AI system
5.7 AI Limitations and Accuracy
Important Disclosures:
- No Guarantee of Accuracy: AI outputs may contain errors, inaccuracies, omissions, hallucinations, or biased content
- Not Professional Advice: AI outputs do not constitute medical, legal, financial, safety, or other professional advice
- User Responsibility: You are responsible for reviewing and verifying AI outputs before relying on them
- Accessibility Limitations: Live captions and translations are provided for convenience and may not meet accessibility standards or be suitable for official purposes
- Language Limitations: AI performance may vary across languages and dialects
- Evolving Technology: AI capabilities and limitations may change as underlying models are updated
5.8 Mentra Notes
The Mentra Notes feature saves:
- Raw transcriptions of conversations (speech-to-text)
- AI-generated summaries
Mentra Notes stores content as described above. This data is stored securely and can be deleted through the Mentra App settings.
6. How We Use Your Information
We use your personal information for the following purposes:
6.1 Providing and Improving Services
- Operate, maintain, and improve the Services
- Process transactions and fulfill orders
- Provide customer support
- Enable communication features (calls, messaging)
- Enable AI-powered features as described in Section 5
- Route data between your devices and miniapps
- Develop new features and services
6.2 Personalization
- Remember your preferences and settings
- Provide contextual AI responses based on information you provide during a session
- Customize miniapp recommendations
6.3 Safety and Security
- Detect and prevent fraud, abuse, and security incidents
- Enforce our Terms of Service
- Protect the rights and safety of users and third parties
- Comply with legal obligations
6.4 Communications
- Send service-related notifications (transactional)
- Respond to your inquiries
- Send marketing communications (with your consent where required)
6.5 Analytics and Research
- Analyze usage patterns to improve Services
- Conduct research and development
- Generate aggregated, de-identified statistics
7. Legal Bases for Processing (GDPR)
If you are located in the European Economic Area (EEA), United Kingdom, or Switzerland, we process your personal data on the following legal bases under GDPR:
| Purpose | Legal Basis |
|---|---|
| Providing Services | Performance of contract (Art. 6(1)(b)) |
| Account management | Performance of contract |
| Processing payments | Performance of contract |
| Customer support | Performance of contract / Legitimate interests |
| Security and fraud prevention | Legitimate interests (Art. 6(1)(f)) |
| Analytics and improvement | Legitimate interests |
| Marketing (existing customers) | Legitimate interests |
| Marketing (new contacts) | Consent (Art. 6(1)(a)) |
| AI feature processing | Performance of contract / Consent for sensitive data |
| Legal compliance | Legal obligation (Art. 6(1)(c)) |
Special Categories of Data
We do not intentionally collect special categories of personal data (Article 9) such as health data, biometric data for identification, or data revealing racial or ethnic origin. However:
- Camera data may incidentally capture images of individuals. We do not use facial recognition for identification purposes.
- Voice data is used for speech recognition, not biometric identification.
- If you voluntarily provide sensitive information in AI queries (e.g., health questions), processing is based on your explicit consent (Article 9(2)(a)).
Legitimate Interests Assessment: Where we rely on legitimate interests, we have conducted balancing tests to ensure our interests do not override your fundamental rights and freedoms.
8. How We Share Your Information
We share personal information only as described in this Privacy Notice:
8.1 Service Providers (Processors)
We share information with service providers who process data on our behalf under written data processing agreements:
| Category | Examples | Purpose |
|---|---|---|
| Cloud Infrastructure | Google Cloud, AWS | Hosting, storage |
| AI Services | Google (Gemini), OpenAI, Soniox | AI feature processing |
| Payment Processing | Stripe, Shopify Payments | Transaction processing |
| Analytics | Google Analytics | Usage analytics |
| Customer Support | Zendesk | Support ticket management |
| SendGrid | Transactional emails | |
| Streaming | Cloudflare | Video relay infrastructure |
Service providers are contractually obligated to:
- Process data only on our documented instructions
- Ensure confidentiality
- Implement appropriate security measures
- Assist with data subject rights requests
- Delete or return data upon termination
- Submit to audits
8.2 Streaming Platforms
When you use live streaming features, your video and audio content is transmitted to the streaming platform(s) you select (e.g., YouTube, Twitch, Instagram). Your use of these platforms is subject to their respective terms and privacy policies.
8.3 Miniapp Developers
When you install and use miniapps from the Mentra Store:
- The miniapp receives data you authorize through permissions
- Miniapps run on their own infrastructure
- Third-party miniapp developers are independent controllers for data they receive
- Mentra does not control how third-party miniapp developers process your data
See Section 9 for important information about third-party miniapps.
8.4 Business Transfers
In connection with a merger, acquisition, reorganization, or sale of assets, your information may be transferred to the successor entity. We will provide notice before your information becomes subject to a different privacy policy.
8.5 Legal Requirements
We may disclose information when required by law or in response to valid legal process, including:
- Court orders and subpoenas
- Government or regulatory agency requests
- To protect our rights, property, or safety, or that of our users or the public
Where legally permitted, we will notify you of such requests.
8.6 With Your Consent
We may share information for other purposes with your explicit consent.
8.7 Sale of Personal Information
We do not sell your personal information for money. However, like many companies, we use cookies, pixels, SDKs, and similar technologies on our websites and apps for advertising purposes, which may be considered “selling” or “sharing” personal information under certain state privacy laws (such as the CCPA/CPRA).
You can learn more about these technologies and how to control them, including how to opt out of sale/sharing, in the Cookies & Tracking section above.
9. Third-Party Miniapps and Services
9.1 Mentra Store Miniapps
The Mentra Store provides access to miniapps developed by Mentra (“First-Party Miniapps”) and by independent third-party developers (“Third-Party Miniapps”). This section applies to Third-Party Miniapps only.
9.2 Data Controller Relationships
- Mentra is the data controller for data processed through MentraOS, the Mentra App, and First-Party Miniapps
- Third-Party Miniapp developers are independent data controllers for data they receive through their miniapps
- Mentra acts as a conduit (transmitting data per your instructions) but does not control third-party developers' processing
9.3 Third-Party Miniapp Privacy Policies
Before installing a Third-Party Miniapp, you should review the developer's privacy policy. Third-party developers are required to:
- Provide a privacy policy accessible from the Mentra Store listing
- Comply with applicable privacy laws
- Process data only for purposes disclosed to you
Mentra is not responsible for third-party developers' compliance with their privacy policies or applicable law.
9.4 Permissions for Miniapps
When a miniapp requests access to sensors or data:
- You will be prompted to grant or deny permission
- You can review and revoke permissions at any time through the Mentra App settings
- Multiple miniapps can access the same sensor stream simultaneously if you have granted permission
- Revoking permission stops future data transmission but does not delete data already transmitted to the miniapp
9.5 Third-Party Integrations
The Services may integrate with third-party services. These third parties are independent controllers:
- Streaming platforms (YouTube, Twitch, etc.)
- Communication apps (WhatsApp, FaceTime, etc.)
- Cloud storage services
9.6 Links to Third-Party Sites
Our website and Services may contain links to third-party websites. We are not responsible for their privacy practices.
10. Data Retention
We retain personal information only as long as necessary for the purposes described in this Privacy Notice, or as required by law. Our retention periods are based on:
- The nature of the data
- The purpose of processing
- Legal retention requirements
- Your instructions (e.g., account deletion requests)
| Data Type | Retention Period |
|---|---|
| Account information | Duration of account + 30 days |
| Transaction records | 7 years (legal requirement) |
| Support communications | 3 years |
| Usage analytics | 26 months (anonymized thereafter) |
| AI query logs | 30 days |
| Sensor data (cloud) | Duration of session only (not retained) |
| Mentra Notes | Until you delete or close account |
Data Deletion
Upon account deletion or expiration of retention periods, we will:
- Delete personal data from active systems within 30 days
- Remove data from backups within 90 days
- Retain only data required by law or for legitimate legal claims
11. Data Security
We implement appropriate technical and organizational measures to protect your personal information in accordance with GDPR Article 32:
Technical Measures
- Encryption of data in transit (TLS 1.3, encrypted UDP)
- Encryption of data at rest (AES-256)
- Secure BLE pairing between glasses and phone
- Access controls and authentication requirements
- Regular security testing and vulnerability assessments
- Intrusion detection and monitoring
Organizational Measures
- Data protection policies and procedures
- Employee training on data protection
- Vendor security assessments
- Incident response procedures
- Regular security audits
Open Source Security: The open-source nature of MentraOS enables community security review. We maintain a responsible disclosure program for security researchers at security@mentraglass.com (opens in new tab).
No Absolute Guarantee: No method of transmission or storage is 100% secure. While we implement industry-standard protections, we cannot guarantee absolute security.
Breach Notification: In the event of a personal data breach likely to result in risk to your rights, we will notify the relevant supervisory authority within 72 hours and notify affected individuals where required by law.
12. International Data Transfers
Mentra Labs, Inc. is headquartered in California, United States. Your personal information will be transferred to and processed in the United States and other countries where our service providers operate.
12.1 Transfer Mechanisms
For transfers from the EEA, UK, or Switzerland to countries without an adequacy decision, we implement:
- Standard Contractual Clauses (SCCs): We use European Commission-approved SCCs (Module 1: Controller-to-Controller; Module 2: Controller-to-Processor) with all relevant recipients
- Supplementary Measures: Where necessary based on transfer impact assessments, we implement additional technical and organizational measures
- Data Processing Agreements: All processors are bound by written agreements meeting GDPR Article 28 requirements
12.2 Transfer Impact Assessments
We have conducted transfer impact assessments for transfers to the United States, considering:
- The legal framework in the destination country
- The nature of data transferred
- Supplementary measures implemented
- Practical experience with government access requests
Copies of our SCCs and transfer impact assessments are available upon request.
12.3 Your Rights Regarding Transfers
You have the right to:
- Obtain information about international transfers
- Request a copy of safeguards in place
- Withdraw consent for transfers (where consent is the legal basis)
- Lodge a complaint with a supervisory authority
13. Children's Privacy
The Services are not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13.
Ages 13–16 (EEA): Under GDPR Article 8, children under 16 in the EEA require parental consent for information society services. If you are between 13 and 16 in the EEA, you may use the Services only with parental consent.
Ages 13–18 (General): If you are between 13 and 18 (or the age of majority in your jurisdiction), you may use the Services only with parental or legal guardian consent.
Parental Controls: Parents or guardians may:
- Review information collected from their child
- Request deletion of their child's information
- Refuse further collection
If we learn that we have collected personal information from a child without appropriate consent, we will delete that information promptly. Contact us at privacy@mentraglass.com (opens in new tab) if you believe we have collected information from a child.
14. Your Privacy Rights
14.1 Rights Available to All Users
Regardless of location, you may:
- Access: Request a copy of your personal information
- Correction: Request correction of inaccurate information
- Deletion: Request deletion of your information (subject to legal retention requirements)
- Withdraw Consent: Withdraw consent for processing based on consent
- Opt-Out of Marketing: Unsubscribe from marketing communications
14.2 How to Exercise Your Rights
To exercise your rights:
- Self-Service: Access account settings in the Mentra App for many requests
- Email: Contact privacy@mentraglass.com (opens in new tab)
- Mail: Mentra Labs, Inc., 369 Hayes Street, San Francisco, CA 94102, USA
Identity Verification: We will verify your identity before processing requests to protect against unauthorized access. Verification may require:
- Confirmation from your registered email address
- Account authentication
- Additional identifying information for sensitive requests
Response Time: We will respond within 30 days (or sooner if required by applicable law). If we need additional time, we will notify you.
No Fee: We do not charge for exercising your rights, except for manifestly unfounded or excessive requests.
14.3 Authorized Agents
You may authorize an agent to submit requests on your behalf. Agents must provide:
- Signed authorization from you
- Proof of agent's identity
We may contact you directly to verify.
15. Jurisdiction-Specific Provisions
15.1 European Economic Area, United Kingdom, and Switzerland (GDPR)
If you are located in the EEA, UK, or Switzerland:
Data Controller
Mentra Labs, Inc.
369 Hayes Street, San Francisco, CA 94102, USA
Email: privacy@mentraglass.com (opens in new tab)
Additional Rights
- Right to Object (Article 21): You may object to processing based on legitimate interests. We will cease processing unless we demonstrate compelling legitimate grounds.
- Right to Restrict Processing (Article 18): You may request restriction while we verify accuracy or assess an objection.
- Right to Data Portability (Article 20): You may receive your data in a structured, machine-readable format.
- Right to Lodge a Complaint: You may file a complaint with your local data protection authority. A list of EEA authorities is available at edpb.europa.eu (opens in new tab).
EU AI Act Transparency (Regulation 2024/1689)
In compliance with EU AI Act Article 50, we provide the following transparency information:
- AI System Interaction: When you use MentraAI features, you are interacting with an AI system
- AI-Generated Content: Captions, translations, summaries, and other outputs are generated by AI and may not be accurate
- Emotion Recognition: We do not use emotion recognition AI systems
- Biometric Categorization: We do not use biometric categorization AI systems
- Deep Fakes: We do not generate synthetic content designed to appear authentic (deep fakes)
- Risk Classification: Our AI features are not classified as high-risk AI systems under EU AI Act Annex III
15.2 California Residents (CCPA/CPRA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA) as amended by the California Privacy Rights Act (CPRA):
Categories of Personal Information Collected (Past 12 Months)
| Category | Examples | Collected |
|---|---|---|
| Identifiers | Name, email, IP address | Yes |
| Customer Records | Billing address, payment info | Yes |
| Commercial Information | Purchase history | Yes |
| Internet Activity | Browsing, app usage | Yes |
| Geolocation | General (IP) and precise (GPS) | Yes |
| Audio/Visual | Recordings, photos | Yes |
| Inferences | Preferences, interests | Yes |
| Sensitive PI | Precise location, account credentials | Yes |
- Sources: Directly from you, automatically from devices, from service providers.
- Purposes: As described in Section 6.
- Disclosure: To service providers and third parties as described in Section 8.
Your California Rights
- Right to Know: Request disclosure of PI collected, sources, purposes, and third parties
- Right to Delete: Request deletion of your PI
- Right to Correct: Request correction of inaccurate PI
- Right to Opt-Out of Sale/Sharing: You have the right to direct us not to “sell” or “share” your personal information, including for cross-context behavioral advertising. To opt out, use the Global Privacy Control (GPC) signal or contact us.
- Right to Limit Sensitive PI: You control sensitive PI collection through device permissions
- Non-Discrimination: We will not discriminate against you for exercising rights
To Exercise Rights: Email privacy@mentraglass.com (opens in new tab) or call (847) 232-3471 (opens in new tab).
Authorized Agent: You may designate an authorized agent with written permission.
Verification: We will verify your identity using information associated with your account.
Shine the Light: California Civil Code § 1798.83 permits California residents to request information about disclosure of PI to third parties for direct marketing. Contact privacy@mentraglass.com (opens in new tab).
15.3 Other U.S. States
We comply with applicable state privacy laws, including those in Colorado, Connecticut, Virginia, Utah, and other states that have enacted comprehensive privacy legislation. Residents of these states may have rights similar to those described for California residents.
15.4 Other Jurisdictions
We comply with applicable privacy laws in all jurisdictions where we operate. If you have questions about your rights under local law, please contact privacy@mentraglass.com (opens in new tab).
16. Changes to This Privacy Notice
We may update this Privacy Notice from time to time. When we make changes:
- Minor Changes: Posted on our website with updated “Last Updated” date
- Material Changes: We will notify you by email and/or in-app notification at least 30 days before changes take effect (or as required by applicable law)
Material changes include:
- New categories of personal data collected
- New purposes for processing
- New categories of recipients
- Changes to your rights
- Changes to international transfer mechanisms
Your continued use of the Services after changes become effective constitutes acceptance of the updated Privacy Notice. If you do not agree with changes, you should stop using the Services.
17. Contact Us
Data Protection Inquiries
Mentra Labs, Inc.
Email: privacy@mentraglass.com (opens in new tab)
Address: 369 Hayes Street, San Francisco, CA 94102, USA
Website: https://mentraglass.com/privacy (opens in new tab)
Security Concerns
Email: security@mentraglass.com (opens in new tab)
Customer Support (Non-Privacy)
Email: support@mentraglass.com (opens in new tab)
Website: https://mentraglass.com/contact (opens in new tab)
Supervisory Authority Complaints
If you are unsatisfied with our response, you have the right to lodge a complaint with your local data protection authority:
- EEA: edpb.europa.eu/about-edpb/about-edpb/members_en (opens in new tab)
- UK: Information Commissioner's Office (ico.org.uk (opens in new tab))
- California: California Attorney General (oag.ca.gov (opens in new tab))
Appendix: AI System Information
In accordance with EU AI Act transparency requirements, we provide the following technical information about our AI systems:
- AI Providers: Google (Gemini), OpenAI (ChatGPT)
- Intended Purpose: AI features are designed to assist users with information, transcription, translation, and visual understanding tasks. They are not designed for safety-critical applications, medical diagnosis, or emergency response.
Known Limitations
- AI outputs may contain factual errors or hallucinations
- Performance varies across languages, accents, and contexts
- AI cannot provide professional medical, legal, or financial advice
- Real-time features may have latency or accuracy variations
Human Oversight: All AI outputs are presented to users for their review and decision-making. No automated decisions are made without human involvement.
Contact for AI-Related Concerns:
Email: privacy@mentraglass.com (opens in new tab)
Ready to build on Mentra?
Open-source moves fast. Stay up to date with the platform.