Time Crisis Astrology ("we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Client Portal (the "Portal") and associated services. By using the Portal, you consent to the data practices described in this policy.
2. Information We Collect
We may collect the following types of information:
Astrological Information: Birth date, time, and location (if provided by you for service personalization).
Client Input: Information about your current challenges and desired outcomes provided for gameplan creation.
Usage and Service Data:
Gameplan Data: Details of your personalized gameplans (Seasonal, Lunar, Solar, Cosmic Couples).
Progress Data: Information you input into the Portal, such as tasks completed (checkboxes), reflections written, XP earned, badges acquired.
Information Collected Automatically: We currently do not automatically collect technical data like IP addresses or use tracking cookies directly within the Portal, beyond what is necessary for basic session management (e.g., keeping you logged in).
3. How We Use Your Information
We use the information we collect to:
Authenticate your access to the Portal.
Create and deliver your personalized astrological gameplans and services.
Track your progress within the gameplans as you interact with the Portal.
Manage your account.
Communicate with you regarding your account or services.
Improve our services (using aggregated/anonymized data where possible).
4. Data Storage, Processing, and Security
Storage Locations:
Your basic account information (name, email, hashed password, service level, agreement status) is stored in a Google Sheet within our secure Google Workspace account.
Your detailed gameplan content and progress data (including completed tasks, XP, reflections) are stored as individual JSON files within Google Drive, linked to your account.
Processing:
Our backend application, which handles login, data retrieval, and saving, is built using Node.js and runs on a Virtual Private Server (VPS) hosted by Hostinger.
The backend application securely interacts with Google Sheets and Google Drive using authorized Google Cloud Platform service accounts and official Google APIs. All API traffic between our server and Google is encrypted.
Security Measures: We implement reasonable administrative, technical, and physical security measures to protect your personal information. This includes:
Using secure platforms (Google Workspace, Hostinger VPS).
Securing our backend API using HTTPS (SSL/TLS encryption) via Nginx and Let's Encrypt.
Utilizing secure authentication methods (service accounts) for accessing Google APIs.
Restricting access to your data to authorized personnel only.
Password Storage: Your password is securely hashed using industry-standard bcrypt hashing (including unique salts) before being stored in our Google Sheet record. We do not store your plain text password. Authentication is performed by comparing the hash of the password you enter with the stored hash. We recommend you use a strong, unique password for this Portal.
Disclaimer: While we take reasonable steps to secure your data, please be aware that no security measures are perfect or impenetrable, and we cannot guarantee absolute security.
5. Data Sharing and Disclosure
We do not sell your personal information. We may share your information only in the following limited circumstances:
Service Providers: With third-party vendors who provide services on our behalf, such as:
Google: For storing data in Google Sheets and Google Drive and providing the necessary APIs.
Hostinger: For hosting our backend server application.
(If using a 3rd party AI): [AI Provider Name]: Potentially sharing prompts or contextual data necessary for the AI assistant to function (refer to their privacy policy).
Legal Requirements: If required to do so by law or in response to valid requests by public authorities (e.g., a court or government agency).
Business Transfers: In connection with any merger, sale of company assets, financing, or acquisition of all or a portion of our business by another company.
6. User Rights
Depending on your location, you may have certain rights regarding your personal information, such as the right to access, correct, or request deletion of your data. Please contact us using the information below to make such requests. We will respond within a reasonable timeframe in accordance with applicable laws.
7. Artificial Intelligence (AI) Data
Interactions with the AI assistant (prompts you enter, responses generated) may be processed by our backend server. [Optional: Add if logging/storing interactions: "These interactions may be logged or temporarily stored for purposes of improving the AI's performance, troubleshooting, and ensuring compliance with our terms. We take measures to anonymize or pseudonymize this data where feasible."] [Optional: Add if using 3rd party AI: "If a third-party AI provider is used, your prompts and relevant context may be sent to their servers for processing. Please refer to [AI Provider Name]'s privacy policy for details on how they handle data."]
8. Policy Updates
We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy within the Portal and updating the "Last Updated" date. Your continued use of the Portal after such modifications constitutes your acknowledgment of the modified Policy.
9. Contact Information
If you have questions or comments about this Privacy Policy, please contact us at: admin@timecrisisastrology.com, Time Crisis Astrology