StellaAi processes only the personal information needed to provide the Stellai Service.
Stellai tarot readings and AI-generated reading text are provided for entertainment, self-reflection, journaling, and reference. Users should not enter sensitive or unnecessary information such as government identification numbers, passport numbers, bank account numbers, card numbers, passwords, detailed health information, criminal or investigation-related information, or another person’s personal information.
1. Operator Information
2. Scope
This Policy applies to the Stellai app, website, account features, tarot reading features, ad rewards, paid items, customer support, and Service operations.
Some features, including external payments, ads, login, app marketplaces, and AI APIs, may be processed through external providers. Their own terms and policies may also apply.
3. Information We Collect
We may process the following information to the extent needed to provide the Service.
| Category | Items | Purpose | Retention standard |
|---|---|---|---|
| Account information | Email address, Firebase UID, login provider information, display name or nickname | Login, account management, identity confirmation, misuse prevention | Until account deletion |
| Reading information | User question, selected cards, card orientation, reading result, language setting, user settings | Generating tarot readings, showing reading history, providing the Service, quality improvement | During account retention or until the user deletes it |
| Payment information | Google Play or App Store purchase ID, receipt information, subscription status, item grant records | Providing paid items, purchase verification, refund or support response, payment abuse prevention | For the period needed for payment and dispute response |
| Ad and reward information | Advertising identifier, ad viewing records, reward grant records, ad unit, transaction ID, consent status | Providing ads, granting rewards, preventing invalid traffic, managing ad settings | Deleted after purpose completion or retained for the necessary period |
| Device and log information | IP address, device information, app version, access records, error logs, crash logs, security logs | Service stability, error analysis, security, misuse prevention | For the period needed for operations and security |
| Support information | Email address, inquiry content, attachments, handling history | Customer support, inquiry response, dispute handling | For the period needed for support and dispute response |
We do not request sensitive information that is unnecessary for providing the Service.
4. How We Collect Information
- When a user directly enters information in the app or website.
- When information is provided through a login provider or authentication system.
- When information is provided during Google Play or App Store purchase verification.
- When information is automatically generated through ad SDKs, server logs, analytics tools, or error records.
- When a user provides information during customer support inquiries.
5. How We Use Information
- Account creation, login, authentication, and session management.
- Generating tarot readings and AI reading results.
- Saving and retrieving reading history.
- Providing coins, passes, subscriptions, and paid items.
- Showing ads and granting ad rewards.
- Purchase verification, refund inquiries, and payment abuse prevention.
- Error analysis, performance improvement, and security checks.
- Preventing misuse, ad manipulation, and reward abuse.
- Customer support, inquiry response, and dispute handling.
- Service improvement and operational statistics.
- Notifications, notices, and event messages that the user has agreed to receive.
6. AI Reading Processing
- To generate tarot reading text, we may send necessary information such as the user’s question, selected cards, card orientation, language setting, and reading conditions to generative AI API providers.
- We try to send only the minimum information needed for AI processing.
- Users should not enter sensitive or unnecessary information such as government identification numbers, bank account numbers, card numbers, passwords, detailed health information, or another person’s personal information.
- AI responses are automatically generated and may be inaccurate, incomplete, or different from the user’s intent.
- AI readings are for entertainment, self-reflection, journaling, and reference, and do not provide professional diagnosis, counseling, advice, prescription, or guarantees.
7. Ads and Reward Processing
- The Service may show ads to provide free access or grant rewards.
- To provide ads and verify rewards, we may process advertising identifiers, ad viewing records, ad units, reward transaction IDs, and consent status.
- Personalized ad settings may be managed through app settings, operating system settings, or consent screens provided by ad networks.
- If a user does not consent to personalized ads, non-personalized ads may still be shown.
- Reward delivery may be delayed or fail depending on the ad SDK, ad network, server verification, device status, network status, invalid traffic review, or similar conditions.
- If a verifiable normal completion record is confirmed, we will reasonably review and address reward issues.
8. Payment and Subscription Processing
- Paid item purchases are processed through Google Play, Apple App Store, or another payment method connected by the Company.
- We do not store direct payment method information such as card numbers, CVC codes, or bank account passwords.
- We may process purchase IDs, receipt information, subscription status, and grant records to provide paid features, verify purchases, confirm subscription status, respond to refund inquiries, and prevent payment abuse.
- Purchase cancellation, refunds, and subscription cancellation are generally handled through the app marketplace or payment provider used for the purchase.
9. Processors and External Providers
We may use external providers to operate the Service.
| Provider | Purpose |
|---|---|
| Google / Firebase | Authentication, database, server functions, hosting, Remote Config, App Check, analytics, error checks, security |
| Google AdMob | Ad display, ad revenue measurement, rewarded ads |
| Google User Messaging Platform | Ad consent management |
| Google Play | Android app payments, purchase verification, subscription status confirmation |
| Apple App Store | iOS app payments, purchase verification, subscription status confirmation |
| Generative AI API providers | Generating reading text based on user questions and card information |
| Analytics and error-checking tools | App stability, performance, error, and crash analysis |
| Email or customer support tools | Inquiry response and notices |
We try to provide external providers only the information needed to provide the Service.
10. International Processing
Cloud, advertising, payment, and AI API providers used to operate the Service may be located outside the user’s country or may use servers in other countries. As a result, account information, log information, ad and reward information, payment verification information, and minimum information needed for reading generation may be processed internationally.
- Sending only necessary information.
- Using encryption during transmission where appropriate.
- Limiting access permissions.
- Restricting use to Service-related purposes.
- Reviewing external providers’ security practices where practical.
If you do not want international processing, some features may be limited.
11. Retention and Deletion
- Account information is deleted when the account is deleted.
- Reading history and user settings are deleted when the account is deleted or when the user requests deletion.
- Ad reward records are retained for the period needed to confirm reward delivery and prevent misuse.
- Payment and subscription records are retained for the period needed for refunds, disputes, payment abuse prevention, and accounting.
- Security logs and error logs are retained for the period needed for Service stability and misuse prevention.
- Inquiry records are retained for the period needed for inquiry handling and dispute response.
- When the retention purpose ends, information is deleted or processed so that it can no longer identify an individual.
12. Account Deletion
You may request account deletion at any time.
Delete in the app
- Select the account deletion button in the app settings screen.
If you cannot access the app
- Email stellaai.labs@gmail.com with the subject “Account Deletion Request.”
Information deleted after account deletion
- Firebase Auth account information
- Reading history
- User settings
- Ad events
- Unlock events
- Entitlement information
- General account data stored to provide the Service
Information that may be retained for a necessary period
- Payment records
- Purchase verification records
- Coin or pass grant ledgers
- Refund and dispute response records
- Misuse prevention and security logs
This information is retained only to the extent needed for payments, refunds, disputes, security, and misuse prevention. After account deletion, previous reading history, settings, coins, passes, rewards, and subscription-related information may not be recoverable.
13. User Choices and Rights
- Request access to personal information.
- Request correction of inaccurate information.
- Request deletion of personal information.
- Request restriction or stopping of processing.
- Change personalized ad settings.
- Withdraw consent.
- Delete the account.
Requests can be submitted through app settings or by email. We may confirm account ownership when needed to process a request.
14. Managing Ad Settings
- Privacy or ad settings within the app.
- Android advertising ID settings.
- iOS tracking permission settings.
- Ad network consent screens.
- Browser or device settings.
Limiting ad settings may reduce personalized ads, and some ad-supported free features or reward features may be limited.
15. Cookies and Local Storage
The website may use cookies or local storage to keep users logged in, store language settings, save basic settings, and stabilize the Service.
You can limit or delete cookies in your browser settings. If you do, login persistence, language settings, or some web features may not work properly.
16. Children and Minors
Stellai is not intended for children. We do not knowingly collect personal information from children. If we learn that a child has provided personal information without appropriate guardian involvement, we will review the matter and take necessary steps.
If a minor purchases paid items or uses the Service, guardian consent may be required.
17. Security Measures
- Limiting access permissions to necessary personnel.
- Using encryption during transmission where appropriate.
- Managing server and database access.
- Reviewing error and security logs.
- Detecting misuse.
- Managing backup and recovery.
- Minimizing unnecessary data collection.
18. Security Incident Response
If we learn of a personal information leak or security incident, we will review the cause and take steps to reduce harm. When needed, we will inform users of the incident, its potential impact, and available steps.
19. Contact
Questions about privacy, account deletion, data deletion, ad settings, reward issues, or payment-related matters may be sent to the email address below.
20. Updates
We may update this Policy when Service features, collected information, external providers, payment methods, advertising methods, or AI processing methods change.
For material changes, we will provide notice through the app, website, email, notice screen, or another reasonable method.