Privacy Policy
VEIL Tarot
Effective Date: April 2, 2026
VEIL Tarot (“we,” “our,” or “the app”) respects your privacy. This Privacy Policy explains how we collect, use, and protect your information when you use our web and mobile application.
1. Information We Collect
We collect the following types of information:
- Account information: Email address, display name, and authentication provider when you create an account
- Profile information: Date of birth, zodiac sign, experience level, and preferences you provide during onboarding
- Questions you ask: The questions you submit for tarot readings
- Reading history: Your past tarot readings, including cards drawn and interpretations
- Dream journal entries: Dreams you record in the dream journal feature
- Timestamps: When readings and other activities were performed
- Device information: Device type, operating system, and browser information used to manage reading limits and improve our service
- Usage analytics: Page views and interaction patterns (only with your consent — see Cookies & Analytics below)
2. How We Use Your Information
Your information is used to:
- Provide personalized tarot readings powered by AI
- Store your reading history so you can revisit past readings
- Manage free reading limits and subscription status
- Track your progression through the Path of Initiation
- Improve the app experience through anonymized analytics (with consent)
- Respond to support requests submitted through our contact form
3. Cookies & Analytics
We use the following types of cookies and tracking technologies:
- Essential cookies: Required for the app to function (authentication state, language preference, cookie consent choice). These cannot be disabled.
- Analytics cookies (Google Analytics 4): Help us understand how visitors use Veil so we can improve the experience. These are only loaded with your explicit consent.
Your choice matters. When you first visit Veil, you will see a consent banner. Analytics cookies are disabled by default and will not be loaded until you opt in. You can change your preferences at any time using the “Cookie Settings” link in the footer.
4. Data Storage
Your data is stored securely using:
- Firebase/Firestore: We use Google Firebase to store your account data, reading history, and app data. Firebase is a secure, industry-standard cloud platform. Learn more at Firebase Privacy.
- Local browser storage: Cookie consent preferences and some UI settings are stored locally on your device
5. Subscription & Payments
For premium subscriptions, we use:
- Stripe for web-based payments and subscription management. Stripe processes payment data securely. We do not store your credit card number. See Stripe's Privacy Policy.
- RevenueCat for mobile in-app purchases through the Google Play Store. See RevenueCat's Privacy Policy.
Auto-renewal: Subscriptions renew automatically. Monthly: $6.99/mo after 7-day trial. Yearly: $29.99/yr after 7-day trial. You can cancel at any time from your account settings.
6. Audio Features
We do not record audio. The app includes ambient sound features for atmosphere, but these are playback-only. No microphone access is requested or used.
7. Third-Party Services
The app uses the following third-party services:
- OpenAI: To generate personalized reading interpretations and dream analyses. Questions and readings are processed through OpenAI's API.
- Google Firebase: For data storage, authentication, and user management
- Google Analytics 4: For anonymized usage analytics (only with your consent)
- Stripe: For web payment processing and subscription management
- RevenueCat: For mobile subscription management
- Slack: For receiving and routing support messages submitted through our contact form
8. Data Retention
- Account data: Retained as long as your account exists
- Reading history: Retained as long as your account exists
- Dream journal: Retained as long as your account exists
- Cookie consent: Stored for 365 days, then re-prompted
- Analytics data: Retained per Google Analytics default retention settings (14 months)
You can delete your account and all associated data at any time from the Settings page within the app.
9. Your Rights Under GDPR
If you are located in the European Economic Area (EEA), you have the following rights under the General Data Protection Regulation:
- Right of access: Request a copy of your personal data. You can export your data from the Settings page.
- Right to erasure: Request deletion of your account and all associated data. Available in Settings > Danger Zone.
- Right to rectification: Correct inaccurate data through your profile settings
- Right to data portability: Export your data in JSON format from the Settings page
- Right to withdraw consent: Change your cookie preferences at any time using the “Cookie Settings” link in the footer
- Right to lodge a complaint: You may file a complaint with your local data protection authority
To exercise these rights, use the in-app settings or contact us at the email below.
10. California Privacy Rights (CCPA)
If you are a California resident, you have the following rights under the California Consumer Privacy Act:
- Right to know: Request information about what personal data we collect and how it is used
- Right to delete: Request deletion of your personal data
- Right to opt-out of sale: We do not sell your personal information to third parties. See our Do Not Sell My Personal Information page for details.
- Right to non-discrimination: We will not discriminate against you for exercising your privacy rights
11. Security
We value your trust in providing us your information, and we strive to use commercially acceptable means of protecting it. We employ physical, electronic, and procedural safeguards to protect the information we process and maintain. However, no method of transmission over the internet or electronic storage is 100% secure, and we cannot guarantee absolute security.
12. Opt-Out
You can stop all collection of information by deleting your account in Settings. You can also manage your cookie preferences through the footer link at any time. To stop all data collection on mobile, use the standard uninstall process.
13. Children’s Privacy
VEIL Tarot is not intended for children under 16 years of age. We do not knowingly collect personal information from children under 16. An age check is performed during onboarding. If we discover that a child under 16 has provided us with personal information, we will delete it immediately.
14. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the effective date.
15. Contact Us
If you have any questions about this Privacy Policy or wish to exercise your data rights, please contact us at:
Email: contact@aurea-via.co.uk