Privacy Policy

Last updated: January 2025

1. Introduction

This Privacy Policy describes how Cosmic Blueprint ("we", "us", or "our") collects, uses, stores, and protects your personal information when you use our spiritual insight platform ("Service"). We are committed to protecting your privacy and handling your data responsibly.

2. Information We Collect

2.1 Personal Information You Provide

Account Information:

  • Email address (for account creation and communication)
  • Password (encrypted and stored securely via Supabase Auth)

Birth and Identity Information:

  • Full name (first name, last name)
  • Birth date (essential for all calculations)
  • Birth time (optional, for enhanced accuracy)
  • Birth location (city, country, or coordinates)

Optional Personality Information:

  • MBTI personality type
  • Enneagram type

2.2 Information We Automatically Collect

  • Technical Data: IP address (for rate limiting and security)
  • Usage Data: Pages visited, features used, API requests made
  • Device Information: Browser type, device type, operating system
  • Timestamps: Account creation, last login, report generation times

2.3 Generated Content

  • Calculated spiritual insights and reports
  • AI-generated interpretations and analyses
  • Cached calculation results for performance
  • Report metadata and generation history

3. How We Use Your Information

3.1 Core Service Functions

  • Generate personalized spiritual insights and reports
  • Calculate astrological positions, numerology, and other spiritual systems
  • Create and maintain your user account
  • Store and retrieve your personalized reports
  • Cache calculations to improve performance and user experience

3.2 Platform Operations

  • Authenticate and authorize access to your account
  • Implement rate limiting to ensure fair usage
  • Monitor system performance and troubleshoot issues
  • Prevent fraud, abuse, and unauthorized access
  • Comply with legal obligations and enforce our Terms of Service

3.3 Communication

  • Send account-related notifications and updates
  • Respond to your inquiries and support requests
  • Notify you of important changes to our service or policies

4. Third-Party Services and Data Sharing

4.1 Third-Party APIs

We use external services to provide accurate calculations:

  • Divine API: Western astrology calculations (birth charts, planetary positions)
  • Human Design API: Human Design chart generation and activations
  • OpenStreetMap Nominatim: Converting birth locations to coordinates (free, open-source geocoding service)

Data shared: Birth date, time, and location coordinates (never your name or email). These services are used solely for calculations and do not store your personal data.

4.2 AI and Content Generation

  • OpenRouter/OpenAI: Generate personalized spiritual interpretations

Data shared: Calculated results and your first name only for personalization. No birth data, email, or personal details are sent to AI services.

4.3 Infrastructure and Storage

  • Supabase: Database hosting, user authentication, and data storage
  • Vercel: Web hosting and application deployment
  • Upstash Redis: Caching and rate limiting

4.4 Payment Processing

  • Stripe: Secure payment processing for premium features

We do not store payment card information. All payment data is handled securely by Stripe.

4.5 Data We Never Share

We will never sell, rent, or share your personal information for marketing purposes or with data brokers.

5. Data Storage and Security

5.1 Data Storage

  • User data is stored securely in Supabase (PostgreSQL database)
  • Reports and insights are cached for performance using encrypted storage
  • All data transmission uses HTTPS encryption
  • Database access is restricted and logged

5.2 Data Retention

  • Account Data: Retained as long as your account is active
  • Reports: Stored indefinitely for your access unless you request deletion
  • Cache Data: Automatically expires after 24 hours
  • Logs: Technical logs retained for 90 days for troubleshooting

5.3 Security Measures

  • Passwords are hashed and never stored in plain text
  • API keys and sensitive credentials are encrypted
  • Rate limiting prevents abuse and unauthorized access
  • Regular security updates and monitoring
  • Access controls and authentication for all administrative functions

6. Cookies and Tracking

6.1 Essential Cookies

We use essential cookies for:

  • User authentication and session management
  • Security and fraud prevention
  • Maintaining your preferences and settings

6.2 No Tracking or Analytics

We do not use third-party analytics, advertising cookies, or social media tracking pixels. We do not track your activity across other websites.

7. Your Privacy Rights

7.1 Access and Control

  • View Your Data: Access your profile and generated reports through your account
  • Update Information: Modify your birth information, name, or preferences
  • Download Reports: Export your personalized insights and reports
  • Delete Account: Request complete account and data deletion

7.2 Data Subject Rights (GDPR/CCPA)

If you are in the EU, UK, or California, you have additional rights:

  • Right to Know: Request details about data collection and use
  • Right to Delete: Request deletion of your personal data
  • Right to Correct: Request correction of inaccurate information
  • Right to Portability: Receive your data in a portable format
  • Right to Object: Object to certain data processing activities

7.3 Exercising Your Rights

To exercise these rights, contact us at support@cosmicblueprint.ai. We will respond within 30 days and may require identity verification to protect your privacy.

8. Children's Privacy

Our Service is not intended for children under 18 years of age. We do not knowingly collect personal information from children under 18. If we become aware that a child under 18 has provided us with personal information, we will delete such information immediately.

9. International Data Transfers

Your data may be processed in countries other than your own, including the United States, where our infrastructure providers operate. We ensure appropriate safeguards are in place to protect your data in accordance with applicable privacy laws.

10. Changes to This Privacy Policy

We may update this Privacy Policy periodically to reflect changes in our practices or applicable laws. We will notify you of significant changes via email or prominent notice on our Service. The "Last updated" date indicates when the policy was last revised.

11. Contact Us

If you have questions about this Privacy Policy or our data practices, please contact us at support@cosmicblueprint.ai. We are committed to addressing your privacy concerns promptly and transparently.

Key Privacy Principles

  • • We collect only the data necessary to provide our spiritual insight services
  • • Your birth information is used solely for calculations and generating your reports
  • • We never sell your personal data or use it for advertising
  • • You maintain full control over your data and can delete your account at any time
  • • All data is encrypted in transit and stored securely