Effective Date: January 6, 2025
Last Updated: January 6, 2025
Welcome to Sidereal Chart ("we," "our," or "us"). We are committed to protecting your privacy and handling your personal data transparently and securely.
This Privacy Policy explains how we collect, use, store, and protect your personal information when you use our website and services at siderealchart.com (the "Service"). By using our Service, you agree to the collection and use of information in accordance with this policy.
Key Points:
We are the data controller responsible for your personal information. If you have any questions about this policy or our data practices, please contact us at the email above.
When you create an account, we collect:
Legal Basis: Processing is necessary to perform our contract with you (Article 6(1)(b) UK GDPR).
When you choose to complete psychological assessments, we collect your responses to:
Data Classification: These responses constitute special category data under Article 9 UK GDPR because they relate to health (physical and mental wellbeing) and religious or philosophical beliefs (spiritual wellbeing, life meaning).
Legal Basis: We process this data only with your explicit consent (Article 6(1)(a) + Article 9(2)(a) UK GDPR). Consent is:
You can withdraw consent at any time from your account settings.
We automatically collect:
Legal Basis: Legitimate interests (Article 6(1)(f)) for essential analytics to improve the Service, or consent for non-essential analytics and marketing cookies.
For premium subscriptions, we collect:
Important: We never store your credit card details. All payment processing is handled securely by Stripe. We only receive confirmation of successful payments and subscription status.
Legal Basis: Processing is necessary to perform our contract with you (Article 6(1)(b)).
We use your data to:
What We Do NOT Do:
With your consent, we may send you:
You can manage your email preferences in your account settings.
We use anonymized, aggregated data to:
When data is fully anonymized (no reasonable way to re-identify you), it is no longer personal data under GDPR and we may retain it indefinitely for statistical analysis.
| Data Type | Article 6 Basis | Article 9 Basis (if applicable) |
|---|---|---|
| Account & birth data | Contract (6(1)(b)) | N/A |
| Assessment responses | Consent (6(1)(a)) | Explicit consent (9(2)(a)) |
| Usage analytics | Legitimate interests (6(1)(f)) or Consent | N/A |
| Payment processing | Contract (6(1)(b)) | N/A |
| Marketing emails | Consent (6(1)(a)) | N/A |
Only with trusted service providers who help us deliver the Service:
Stripe (Payment Processing)
Vercel (Hosting)
Neon (Database)
All processors are contractually bound to:
Your data may be transferred to and processed in the United States by our service providers (Vercel, Neon, Stripe).
Safeguards:
We implement industry-standard security measures to protect your data:
Breach Response:
If we suffer a data breach likely to result in risk to your rights and freedoms, we will:
We retain your data only as long as necessary for the purposes outlined in this policy:
| Data Type | Retention Period | Reason |
|---|---|---|
| Active accounts | While account is active | Service delivery |
| Inactive free accounts | 2 years after last login | Allow reactivation |
| Inactive premium accounts | 2 years after subscription ends | Allow reactivation |
| Deleted accounts | 30 days (then permanent deletion) | Recovery period |
| Payment records | 6 years after last transaction | UK tax and legal requirements |
| Anonymized analytics | Indefinitely | No longer personal data |
Automated Deletion:
After 2 years of inactivity, we will:
You can manually delete your account at any time from your account settings (see Section 10).
You have the following rights regarding your personal data:
Request a copy of all personal data we hold about you.
How to exercise: Go to Settings → Privacy → Export Data, or email privacy@siderealchart.com
Response time: Within 1 month (free of charge for the first request)
What you'll receive:
Correct inaccurate or incomplete data.
How to exercise: Update your profile in Settings, or email privacy@siderealchart.com
Request deletion of your personal data.
How to exercise: Go to Settings → Privacy → Delete Account, or email privacy@siderealchart.com
What happens:
Exceptions: We may retain data if required by law (e.g., tax records) or to defend legal claims.
Request that we stop processing your data temporarily.
How to exercise: Email privacy@siderealchart.com with your request
Effect: We will mark your data as restricted and only process it with your consent or for limited legal purposes.
Receive your data in a structured, commonly used, machine-readable format.
How to exercise: Export your data from Settings → Privacy → Export Data
What you'll receive: JSON file containing all data you've provided (birth details, assessment responses, journal entries, etc.)
Object to processing based on legitimate interests or for direct marketing.
Direct marketing: Click "Unsubscribe" in any marketing email, or adjust preferences in Settings
Profiling/processing: Because our Service is built around data visualization and analysis, objecting to processing means we cannot provide the Service. We will explain this and may need to close your account if you maintain your objection.
You have the right not to be subject to decisions based solely on automated processing that produce legal or similarly significant effects.
Our position: We do NOT make automated decisions with legal or similarly significant effects. We only:
You remain in full control of any decisions based on this information.
Withdraw consent for special category data processing at any time.
How to exercise: Go to Settings → Privacy → Manage Consent, or email privacy@siderealchart.com
Effect:
We ask for your explicit consent separately for each category of special category data:
Mind Assessments
(Personality, cognition, decision-making)
Body Assessments
(Physical health and behavior)
Soul Assessments
(Beliefs and meaning)
World Assessments
(Social and environmental context)
Consent is freely given because:
Before each assessment, we clearly explain:
Withdrawal takes effect immediately. You can re-consent later if you change your mind (frozen data can be reactivated; deleted data cannot).
These cookies are necessary for the Service to function:
With your consent, we use:
Currently, we do not use marketing or advertising cookies. If we add them in the future, we will ask for your consent.
You can manage your cookie preferences:
Rejecting non-essential cookies will not affect core functionality.
Age Restriction:
Our Service is only available to individuals aged 18 and over.
We do not knowingly collect data from anyone under 18. If we discover that we have inadvertently collected data from someone under 18, we will delete it immediately.
If you believe we have data from someone under 18, please contact us at privacy@siderealchart.com.
Given that we:
We have conducted a Data Protection Impact Assessment as required by UK GDPR Article 35.
Key findings:
The DPIA is reviewed annually and updated when we introduce new processing activities.
We may update this Privacy Policy from time to time to reflect changes in:
How we notify you:
Your continued use of the Service after changes constitutes acceptance.
For significant changes affecting special category data processing, we will seek fresh consent where required by law.
For access, deletion, or other rights requests:
Email: privacy@siderealchart.com
Response time: Within 1 month (extendable by 2 months for complex requests with notice)
You have the right to lodge a complaint with the UK Information Commissioner's Office:
Information Commissioner's Office
Wycliffe House
Water Lane
Wilmslow
Cheshire SK9 5AF
Phone: 0303 123 1113
Website: https://ico.org.uk/make-a-complaint/
We would appreciate the opportunity to address your concerns before you contact the ICO, but this is your right and we will not penalize you for exercising it.
While we are a UK-based company and primarily governed by UK GDPR, we recognize that some US states have consumer privacy laws (e.g., CCPA/CPRA in California).
If you are a US resident, you have similar rights to those described above. Contact us at privacy@siderealchart.com to exercise any rights under your state's privacy laws.
If you are accessing our Service from the EU, you are protected by EU GDPR, which provides substantially similar protections to UK GDPR. All rights and processes described in this policy apply equally to EU residents.
Thank you for trusting Sidereal Chart with your data.
We take this responsibility seriously and are committed to protecting your privacy.
Last updated: January 6, 2025