Privacy Policy

Last updated: 2026-07-17

1. What we collect

To generate readings, we process birth date, birth time, birth place (city-level or approximate location preferred), gender, name (for naming), partner birth data (for compatibility), and your Inner Compass Chat conversations that you voluntarily provide. You may optionally provide an email for account access and data deletion. We automatically record anonymous session identifiers and usage events (pages, features, timing) to improve the product.

Birth place is used only for timezone, coordinates, ascendant/house placement, and true solar time calibration. We do not need and do not recommend providing a full street address. If you decline to provide place or birth time, related conclusions are downgraded to low-confidence reference.

2. How we use it

Used only to generate your birth chart / Energy Archetype / tarot / naming readings; fusion trends, scoreTrace basis and low-confidence notes; maintain your session and history; security and abuse prevention; analytics and product improvement. Birth data is treated as sensitive personal information and processed only when you request a reading.

If you submit monthly feedback at the bottom of a report (“went well / matched the report / harder than expected / unclear”), we link that feedback to the month’s scores and scoreTrace summary in anonymized form for offline rule analysis. The system does not automatically change your personal conclusions or promise improved accuracy.

3. What we never do

We never sell or trade your personal data to third parties; we never use your PII to train any large language model; and we do not use your data for purposes beyond readings without your consent.

4. Storage & security

This MVP stores data in a server-side or local development database with session-scoped access. Production should add encryption at rest, backups, access logs and processor agreements; third-party processors are limited to reading generation, payments and other essential services. Monthly feedback used for analytics should be anonymized or aggregated where possible.

5. Cookies

We use one essential session cookie (astra_sid, HttpOnly / SameSite=Lax) to maintain your anonymous session and reading history. It is not used for cross-site advertising tracking.

6. Your rights & deletion

Submit your email on the Account & Settings page to request deletion. The current data layer deletes or anonymizes matching records where supported, including readings, sessions, usage events and monthly feedback. Production legal wording for access, correction, export, deletion and timelines must be finalized per launch market.

7. Age

This service is for users aged 18 and over only. We do not knowingly collect data from minors.

8. Contact

For privacy questions or to exercise your rights, please contact us through Contact us in the settings menu (top right).

Note · This page is a general template; the production version and applicable local law govern.