Welcome to Cosmic Numerology. Your privacy matters to us. This Privacy Policy explains how Cosmic Numerology ("we," "us," or "our") collects, uses, shares, and protects your personal information when you use our website, mobile application, and related services (collectively, the "Platform"). By accessing or using the Platform, you agree to the practices described in this policy.
1 Information We Collect
1.1 Account Information
When you create a Cosmic Numerology account, we collect the following personal information:
- Email address
- Display name and username
- Date of birth
- Time of birth (if provided)
- Place of birth (city and country, if provided)
1.2 Astrological and Numerological Data
Using the birth information you provide, we compute and store the following derived data to deliver our core services:
- Sun sign (zodiac sign based on your birth date)
- Moon sign (determined from your birth date, time, and location)
- Rising sign / Ascendant (determined from your birth date, time, and location)
- Life path number (calculated from your date of birth)
- Additional numerological values such as expression number, soul urge number, and personality number
1.3 Content You Create
We collect content that you voluntarily submit through the Platform, including:
- Posts, comments, and reactions
- Reading requests and questions submitted to mediums
- Profile biography and other profile customizations
- Messages sent through the Platform's communication features
1.4 Usage Data
We automatically collect certain information about how you interact with the Platform:
- Pages and features viewed
- Features used and actions taken (e.g., readings generated, compatibility checks performed)
- Session duration and frequency of visits
- Referral sources (how you arrived at the Platform)
1.5 Device Information
We may collect technical information about the device you use to access the Platform:
- Device type (mobile, tablet, desktop)
- Operating system and version
- Browser type and version
- Screen resolution and language preferences
1.6 Payment Information
When you make a payment on the Platform (such as booking a medium session), payment processing is handled entirely by Stripe, our third-party payment processor. We do not collect, store, or have access to your full credit card number, debit card number, or bank account details. We may receive limited transaction information from Stripe, such as the last four digits of your card, transaction amount, and payment status, for record-keeping and customer support purposes.
2 How We Use Your Information
We use the information we collect for the following purposes:
- Provide personalized daily readings: Your birth data is used to generate tailored daily astrology horoscopes and numerology insights specific to your sun sign, moon sign, rising sign, and life path number.
- Calculate compatibility with friends: When you connect with friends on the Platform, we use both your and your friends' astrological and numerological profiles to generate compatibility readings and shared cosmic theme analyses.
- Enable the medium marketplace: We facilitate connections between you and verified mediums on our platform, sharing necessary information (such as your name and reading request details) so that mediums can provide you with personalized sessions.
- Improve the Platform: Usage data and device information help us understand how the Platform is used, diagnose technical issues, and develop new features and improvements.
- Send notifications: We may send you notifications about your daily readings, upcoming medium sessions, friend activity, and important account updates. You can manage your notification preferences in your account settings.
- Ensure safety and security: We use information to detect, prevent, and respond to fraud, abuse, security incidents, and other harmful activity on the Platform.
- Comply with legal obligations: We may process your information to comply with applicable laws, regulations, legal processes, or enforceable governmental requests.
3 Information Sharing
We are committed to protecting your privacy. Below are the limited circumstances under which your information may be shared:
3.1 Profile Information Visible to Other Users
Certain information on your profile is visible to other users of the Platform by default. This includes your display name, username, zodiac signs (sun, moon, rising), life path number, and bio. You can adjust your profile visibility in your account settings.
3.2 Mediums and Reading Sessions
When you book a reading session with a medium, the medium will have access to your display name and the details of your reading request (including any questions or topics you submit). Mediums are bound by our terms of service to handle your information responsibly and confidentially.
3.3 Payment Processing
Payment transactions are processed through Stripe. When you make a payment, your payment information is shared directly with Stripe and is subject to Stripe's Privacy Policy. We do not have access to your full payment card details.
3.4 No Sale of Personal Data
We do NOT sell, rent, or trade your personal data to third parties for marketing, advertising, or any other commercial purpose.
3.5 Law Enforcement and Legal Requirements
We may disclose your information to law enforcement agencies, government authorities, or other third parties if we are required to do so by law, regulation, legal process, or enforceable governmental request. We may also disclose information if we believe in good faith that disclosure is necessary to protect the rights, property, or safety of Cosmic Numerology, our users, or the public.
3.6 Business Transfers
In the event of a merger, acquisition, reorganization, bankruptcy, or sale of all or a portion of our assets, your personal information may be transferred as part of that transaction. We will notify you via email or prominent notice on the Platform before your information is transferred and becomes subject to a different privacy policy.
4 Data Storage and Security
4.1 Where Your Data Is Stored
Your data is stored on secure servers using PostgreSQL databases. Our infrastructure is maintained with industry-standard security practices to protect your information from unauthorized access, alteration, disclosure, or destruction.
4.2 Security Measures
We implement a variety of security measures to safeguard your personal information:
- Authentication: We use JSON Web Token (JWT) based authentication to verify your identity and protect your account access.
- Encryption in transit: All data transmitted between your device and our servers is encrypted using HTTPS (TLS/SSL) protocols.
- Access controls: Access to personal data is restricted to authorized personnel who need the information to perform their job functions.
- Regular security reviews: We periodically review and update our security practices to address emerging threats.
4.3 Data Retention
We retain different categories of data for specific periods based on their purpose. Below is our complete data retention schedule:
- Account data (email, display name, username, birth data, profile info): Retained for as long as your account is active. Inactive accounts (no login for 5+ years) may be flagged for review but are not automatically deleted.
- Chat messages (reading session conversations): Retained indefinitely to preserve session history and context for both seekers and practitioners.
- Reading sessions & billing history: Retained indefinitely for billing records, dispute resolution, and session history.
- Posts and comments: Retained for as long as your account is active. Deleted when you delete your account (unless referenced in active billing records).
- Analytics and usage data: Automatically deleted after 1 year from the date of collection.
- Push notification records: Deleted promptly after successful delivery. Undelivered notifications are retained up to 7 days for debugging, then automatically purged.
- Moderation reports and logs: Retained indefinitely for platform safety and legal compliance.
- Birth location data: Retained indefinitely as part of your natal chart profile. Providing birth location is entirely optional and is never required to use the Platform.
4.4 Account Deletion
When you delete your account:
- All personal profile data, posts, comments, friend connections, and notification preferences are permanently deleted from our active systems.
- If you have billing history (completed reading sessions with payments), your transaction records may be retained in server logs for legal and accounting compliance, but your personal profile is removed from the live platform.
- Residual references in server logs (such as anonymized user IDs) may persist in backup systems for up to 90 days before automatic purge.
- If you wish to ensure complete removal of all data including server logs, you may submit a specific request to Support@cosmicnumerology.org.
5 Your Rights
We respect your rights regarding your personal data. Depending on your location, you may have the following rights:
5.1 Access and Portability
You can access and review your personal information at any time through your profile settings on the Platform. You have the right to request a copy of the personal data we hold about you in a portable, machine-readable format.
5.2 Account Deletion
You have the right to delete your account and all associated data. You can initiate account deletion through your profile settings or by contacting us at the email address listed below. Upon deletion, your account data, reading history, posts, and astrological profile will be permanently removed from our active systems.
5.3 Communication Preferences
You may opt out of marketing and promotional communications at any time by using the unsubscribe link in any email we send or by adjusting your notification preferences in your account settings. Please note that even if you opt out of marketing communications, we may still send you transactional messages related to your account, such as session confirmations or security alerts.
5.4 Rights for European Union (EU) Users (GDPR)
If you are located in the European Economic Area (EEA), you have additional rights under the General Data Protection Regulation (GDPR), including:
- Right of access: You may request confirmation of whether we process your personal data and obtain a copy of that data.
- Right to rectification: You may request correction of inaccurate or incomplete personal data.
- Right to erasure: You may request deletion of your personal data under certain circumstances (also known as the "right to be forgotten").
- Right to data portability: You may request your personal data in a structured, commonly used, machine-readable format and transmit it to another controller.
- Right to object: You may object to the processing of your personal data for certain purposes, including direct marketing.
- Right to restrict processing: You may request that we restrict the processing of your personal data under certain circumstances.
To exercise any of these rights, please contact us at the email address provided in Section 8. We will respond to your request within 30 days, as required by applicable law.
5.5 Rights for California Users (CCPA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA), including:
- Right to know: You may request that we disclose the categories and specific pieces of personal information we have collected about you, the sources from which it was collected, the business purposes for collection, and the categories of third parties with whom it has been shared.
- Right to delete: You may request the deletion of personal information we have collected from you, subject to certain exceptions.
- Right to opt-out of sale: You have the right to opt out of the sale of your personal information. As stated above, we do not sell your personal information.
- Right to non-discrimination: We will not discriminate against you for exercising any of your CCPA rights. You will not receive different pricing, quality of service, or any other penalty for exercising your rights.
To exercise your CCPA rights, please contact us at the email address provided in Section 8.
6 Cookies and Tracking Technologies
6.1 localStorage
We use your browser's localStorage to store authentication tokens (to keep you signed in) and user preferences (such as theme settings and dismissed notifications). This data is stored locally on your device and is not transmitted to third-party servers.
6.2 Consent Banner and Analytics
When you first visit the Platform, you will see a consent banner asking for your permission to enable optional analytics. If you consent, we may collect anonymized usage data to help us improve the Platform. You can change your analytics preferences at any time.
6.3 No Third-Party Advertising Cookies
We do not use third-party advertising cookies or tracking pixels. We do not serve targeted advertisements based on your browsing behavior, nor do we allow third-party ad networks to place cookies on the Platform.
7 Children's Privacy
Cosmic Numerology is not intended for use by individuals under the age of 13. We do not knowingly collect personal information from children under 13. If we become aware that we have collected personal information from a child under 13 without parental consent, we will take immediate steps to delete that information from our servers.
If you are a parent or guardian and believe that your child under 13 has provided us with personal information, please contact us at the email address below so we can take appropriate action.
8 Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
We will make every effort to respond to your inquiry within a reasonable timeframe and in accordance with applicable law.
9 Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technologies, legal requirements, or other factors. When we make material changes to this policy, we will:
- Update the "Last Updated" date at the top of this page.
- Notify registered users via email or through an in-app notification about the material changes.
- Where required by law, obtain your consent before applying material changes to the way we process your personal information.
We encourage you to review this Privacy Policy periodically to stay informed about how we protect your information. Your continued use of the Platform after any changes to this policy constitutes your acceptance of the updated terms.