Privacy

Privacy Policy

Effective August 10, 2026

Authority Astrology (“Authority Astrology,” “we,” “us” or “our”) provides astrology calculations, interpretations, digital products, accounts and memberships. This policy explains how we handle personal information when you use our website and services.

1. Who is responsible for your information

Authority Astrology is responsible for the personal information described in this policy. Privacy questions and requests may be sent to [email protected]. General support is available at [email protected].

2. Information we collect

Information you provide. This may include your name, email address, birth date, birth time, birthplace, coordinates and time zone derived from a selected place, saved profiles, relationship labels and notes, questions submitted to AI features, communication preferences, support messages, purchase details, membership tier, billing interval, report-credit activity and legacy access information.

Information collected automatically. We receive technical and usage information such as an account-session identifier, hashed IP address for sign-in security, browser or device information, pages and features used, referral and campaign information, transaction or delivery status, and diagnostic information when the service encounters an error. Product analytics and advertising measurement may begin automatically as described in the Cookies section below, subject to applicable notice, browser controls and Global Privacy Control.

Information from other sources.If you sign in with Google, we receive the email address and identifier needed to link or authenticate your account. Payment providers give us transaction identifiers, status, amount, currency, membership details and limited billing information; we do not receive complete card numbers. A person using the service may also add another person's birth details for a compatibility or relationship feature.

3. How and why we use information

We use personal information to calculate charts; provide, personalise and save interpretations; generate reports, forecasts and AI responses; authenticate accounts; process and reconcile payments; deliver email and push notifications you request; provide support; prevent fraud and misuse; maintain security; comply with accounting and legal obligations; and understand and improve the service.

Where applicable law requires a legal basis, we rely on performance of our contract to provide requested services, legitimate interests in operating, securing, understanding and improving the service, consent for marketing, and legal obligations for records and compliance. You may withdraw marketing consent at any time without affecting processing already carried out.

New accounts start with the free weekly horoscope email enabled as a separately controlled weekly service. It is not combined with education and offers. Daily browser reminders are off until you grant browser permission, and personalised member weekly horoscope delivery has its own controls. You can change any of these choices in Communication settings.

4. Birth details, saved people and AI features

Birth details and chart calculations are used to provide the features you request. Sensitive chart inputs, calculation results, reports and AI conversations are encrypted at rest in our application database. If you provide another person's information, you are responsible for having an appropriate basis to do so and for respecting that person's privacy.

Paid reports, forecasts, daily horoscopes and contextual AI may send the chart evidence, report content and question needed for the request to our AI provider, currently OpenAI. Requests are configured with provider storage disabled where supported. Do not include unnecessary sensitive information in free-text questions. Astrology and AI output is reflective content; we do not use it to make decisions that produce legal or similarly significant effects about you.

5. When we disclose information

We disclose only the information reasonably needed to service providers that help us operate, including hosting and database providers; OpenAI for AI-backed content; LocationIQ for primary place search and Google Places as its fallback; Twilio SendGrid for email delivery; Google and Facebook for optional sign-in, analytics and advertising measurement; Meta and Pinterest for advertising measurement; Microsoft Clarity for experience analytics; Stripe and NMI for secure one-time or recurring payment processing where offered; Sentry for service error diagnosis; and browser push services when you enable notifications. SendGrid delivers account, purchase, product-readiness, lifecycle, free weekly horoscope and personalised member weekly email. Their handling of information is also governed by their own terms and privacy notices.

We may also disclose information to professional advisers, regulators, courts or law enforcement when reasonably necessary to comply with law, protect rights or security, investigate abuse, or establish or defend legal claims. If the service or its assets are reorganised, financed, sold or transferred, information may be disclosed subject to appropriate confidentiality and legal safeguards.

We do not sell personal information. Advertising providers may receive limited measurement data where permitted by law and the applicable browser or Global Privacy Control state, and we honor applicable opt-outs from cross-context behavioural advertising. We do not send names, email addresses, birth dates, birth times, birthplaces, time zones or coordinates to GA4 journey analytics.

6. Cookies, local storage and analytics

We use a strictly necessary account-session cookie and browser storage for security, journey continuity, saved-result recovery and user preferences. Product analytics, advertising storage and advertising data sharing begin automatically subject to applicable notices, browser controls and Global Privacy Control. Meta and Pinterest follow the current advertising data-sharing state. Analytics events may include page or feature context, device category, offer information and campaign attribution. Our copy of journey-event data is retained for up to 400 days. Learn more in our Cookie Policy.

Sentry error reporting is an operational security and reliability tool, not optional product analytics. We configure it not to collect request bodies, cookies, headers, query strings, user profiles, AI content or birth details, and we do not use Sentry's session replay. If an Microsoft Clarity session is active when a browser error occurs, we may attach the random Sentry event identifier to that Clarity session so our team can correlate the technical error with the replay.

7. Email and notifications

Service messages such as sign-in codes, receipts, requested results and important account or billing notices are transactional. Astrology education, recommendations and offers require a separate marketing choice. You can unsubscribe from marketing without losing essential service messages. Browser push notifications require device permission and can be disabled in your library or browser settings.

We record email processing, delivery, delay, bounce, complaint and unsubscribe events so we can operate support and protect sending quality. Marketing and selected service emails may use a small image to report an open. Links to our website carry a random delivery identifier so we can record that the linked page loaded and connect it with the relevant customer journey; we do not ask SendGrid to rewrite those links. Automated mail privacy tools and security scanners can generate activity, so these signals are not treated as definitive proof that a person read or selected a message. Sign-in and support emails do not use open tracking.

8. How long we keep information

We keep account information and purchased content while your account is active so you can use your library. Unclaimed chart journeys are deleted after the applicable session or recovery-link period expires. Sign-in challenges and expired sessions are short-lived. Journey events are kept for no more than 400 days. When you schedule account deletion, the current service provides a 30-day safety period before personal chart content, conversations, profiles, notification data and identifiers are deleted or irreversibly de-identified.

Some transaction, refund, fraud-prevention, consent and accounting records may be retained longer when reasonably necessary for legal, tax, chargeback, audit or compliance obligations. Backup copies may remain for a limited period and are protected from ordinary use until overwritten.

9. International processing

We and our providers may process information in countries other than the one where you live. Where required, we use contractual or other recognised safeguards for international transfers. You may contact us for more information about safeguards relevant to your information.

10. Your privacy choices and rights

Depending on where you live, you may have rights to access, obtain a portable copy of, correct or delete personal information; restrict or object to certain processing; withdraw consent; opt out of sale, sharing or targeted advertising; and appeal a denied request. We will not discriminate against you for exercising an applicable privacy right.

Signed-in customers can export account data and schedule deletion from the library. You may also email [email protected]. We may need to verify your identity and authority before completing a request. Customers who used Facebook sign-in can also review our Facebook data deletion instructions. You may also complain to your local data-protection regulator.

11. Children

The service is not directed to children under 16, and we do not knowingly collect their personal information directly. Do not create an account or submit a child's information unless you are legally authorised to do so. Contact us if you believe a child has provided personal information without appropriate permission.

12. Security and changes

We use administrative, technical and organisational safeguards designed to protect personal information, including access controls, hashed session tokens and encryption of sensitive stored content. No system is completely secure, so we cannot guarantee absolute security.

We may update this policy as the service or law changes. We will post the new effective date and provide additional notice when a change materially affects your rights or how we use personal information.