Privacy Policy
Last updated: February 6, 2026
This privacy policy describes how Free Tarot Fun (freetarot.fun) collects, uses, protects and shares your information when you use our service. We are committed to protecting your privacy and complying with Peru's Personal Data Protection Law No. 29733 and its Regulation (S.D. No. 016-2024-JUS), as well as the General Data Protection Regulation (GDPR) of the European Union for our European users.
1. Information We Collect
Information you provide directly:
- Registration data: Name, email address, date of birth, gender (when you register with email or social networks).
- Oracle questions: The questions you ask during tarot readings.
- Preferences: Language, timezone and other profile settings.
Information collected automatically:
- Usage data: Frequency of use, types of readings, interactions with the service.
- Technical information: IP address, browser type, device, operating system.
- Cookies and local storage: See our Cookie Policy for more details.
Referral program information:
- Your unique referral code
- Record of invitations sent and completed
- Rewards earned
Anonymous users:
If you use the service without registering, we store an anonymous session identifier in your browser to limit usage according to our terms. We cannot personally identify you with this data.
2. Third-Party Services That Process Your Data
To provide our service, we share certain information with the following providers:
| Service | Data | Purpose | Location |
|---|---|---|---|
| Supabase | Email, profile, reading history | Authentication and database | EU/USA |
| OpenAI | Your questions (without identifying data) | Interpretation generation | USA |
| ElevenLabs | Interpretation text | Voice synthesis (optional) | USA |
| PayPal | Email, transaction data | Payment processing | International |
| Google Analytics | Anonymous behavior | Usage analysis (with consent) | USA |
Each of these providers has their own privacy policies and complies with data protection standards.
3. How We Use Your Information
We use your information to:
- Provide the service: Generate personalized tarot readings, maintain your history, sync across devices.
- Process payments: Manage subscriptions, billing and refunds.
- Manage the referral program: Track invitations and grant rewards.
- Improve the service: Analyze usage patterns (aggregated and anonymous) to improve the experience.
- Communications: Send you important notifications about your account. Promotional emails are only sent with your explicit consent.
- Security: Detect and prevent fraud, abuse or illegal activities.
4. Data Retention
We retain your information for the following periods:
- Account and profile data: While your account is active.
- Reading history: While your account is active. You can request its deletion at any time.
- Payment data: According to legal billing requirements (up to 7 years for tax records).
- Referral data: Indefinitely to maintain program history.
- After account deletion: We delete your personal data within a maximum of 30 days, except when the law requires additional retention.
5. Data Security
We implement security measures to protect your information:
- Encryption in transit: All communications use HTTPS/TLS.
- Secure authentication: We use OAuth 2.0 through Supabase. We do not store passwords directly.
- Payment data: We do not store card numbers. PayPal processes all payments securely.
- Restricted access: Only authorized personnel have access to production systems.
However, no system is 100% secure. If you discover a vulnerability, contact security@freetarot.fun.
6. International Transfers
Your data may be processed on servers located outside your country, including:
- United States: OpenAI, ElevenLabs, part of Supabase infrastructure.
- European Union: Supabase main servers.
When we transfer data outside the European Economic Area, we ensure that adequate safeguards are in place, such as EU standard contractual clauses or compliance with the EU-US data protection framework.
7. Your Rights (GDPR)
As a user in the European Union (or if GDPR applies to you), you have the following rights:
- Access: Request a copy of all your personal data.
- Rectification: Correct inaccurate or incomplete data.
- Deletion: Request that we delete your data ("right to be forgotten").
- Portability: Receive your data in a structured, machine-readable format.
- Objection: Object to the processing of your data for certain purposes.
- Restriction: Restrict how we process your data in certain circumstances.
- Withdraw consent: If processing is based on your consent, you can withdraw it at any time.
How to exercise your rights:
- Some options are available directly in your profile (edit, delete account).
- For other requests, contact privacy@freetarot.fun.
- We will respond within a maximum of 30 days.
You also have the right to file a complaint with your local data protection authority.
8. Children's Privacy
This service is intended exclusively for persons over 18 years of age.
- We do not knowingly collect information from persons under 18.
- If we discover that we have collected data from a minor, we will delete it immediately.
- If you are a parent/guardian and believe your child has provided us with information, contact privacy@freetarot.fun.
9. Changes to This Policy
We may update this privacy policy periodically. When we make significant changes:
- We will update the "Last updated" date at the top.
- We will notify you by email if the changes are substantial.
- We may display a notice on the website.
We recommend reviewing this policy periodically.
10. Contact
If you have questions about this privacy policy or how we handle your data:
- Email for privacy: privacy@freetarot.fun
- General support: support@freetarot.fun