Privacy Policy

Privacy Policy

This page explains what data we collect, why, how long we keep it, who else processes it on our behalf, and the rights you have over it.

Last updated: 2026-05-07

收集范围

主要围绕联系表单、订单流程、报告生成和必要的站点运行数据展开。

使用原则

只在提供服务、处理支持请求、改进产品和履行合规义务的范围内使用数据。

用户动作

如果你有删除、访问或隐私相关问题,可以从联系页发起请求。

1. What we collect

Data you provide for a reading: birth date, birth time, birth location, gender, optionally a name and a partner's birth profile. Paid checkout: email address (for report delivery) and Stripe payment metadata. We never see your full card number — Stripe handles that directly. Contact form: name, email, message topic, message content. Usage telemetry: page views, anonymous device characteristics, referrer, and the events your browser fires (e.g. tool start, report unlock).

2. Why we collect it

Birth profile data is processed only to generate the reading you requested. Email is used to deliver paid reports and to reply to a contact request. Telemetry is used to understand which tools work and which don't, and to fix problems.

3. AI processors

When you generate an AI-assisted narrative report, the structured BaZi numbers (not raw birth data, not your email) are sent to one of the following providers, depending on availability and language: • Google Gemini (Google LLC, USA) — via generativelanguage.googleapis.com • 智谱 GLM / Zhipu AI (北京智谱华章科技有限公司, China) — via open.bigmodel.cn • Groq Inc. (USA) — via api.groq.com Each provider has its own privacy policy. We send only what is necessary to draft the narrative, and we do not authorize them to use your data to train their public models.

4. Other third-party processors

• Cloudflare Pages + D1 (Cloudflare Inc., USA) — hosting and storage of saved reports. • Stripe (Stripe Inc., USA / Ireland) — payment processing for paid reports. • Resend (Resend Inc., USA) — transactional email for paid-report delivery and contact replies. • Google Analytics 4 + Google AdSense (Google LLC, USA) — usage telemetry and contextual advertising. • Baidu Tongji (百度统计, Baidu Inc., China) — usage telemetry for Chinese-language traffic. • TianAPI (天行数据, China) — auxiliary horoscope and dream-interpretation lookups. We do not sell your personal data to anyone.

5. Retention

Saved reports are retained for 30 days from creation, after which the report record is automatically deleted. Payment records are retained for up to 7 years where required by tax and accounting law. Contact-form messages are retained for up to 12 months for support purposes. Telemetry is aggregated; raw event data is retained for up to 14 months in line with GA4 defaults.

6. Cookies and similar technologies

We use a minimal set of cookies / localStorage entries: a cookie-consent flag, a session ID for paid checkout, and analytics cookies set by GA4, AdSense, and Baidu Tongji once you accept. Refusing analytics will not break the reading experience.

7. Your rights (GDPR / UK GDPR / CCPA)

You have the right to: access the data we hold about you; request a copy in machine-readable form; request correction or deletion; object to or restrict processing; lodge a complaint with your local data-protection authority. Contact us via /contact and we will respond within 30 days.

8. Children

The service is not directed at children under 16. If you believe a child has submitted personal data to us, contact us and we will delete it.

9. International transfers

Because we use providers in the United States and China, your data may be transferred outside your home jurisdiction. Where required (e.g. for EU residents), we rely on Standard Contractual Clauses or equivalent safeguards published by each processor.

10. Changes to this policy

If we change this policy in a material way, we will update the 'Last updated' date at the top and announce the change on the home page. Continued use after a change indicates acceptance.

Questions about your data? Email us via the /contact page or write to the address listed there.

相关页面