Privacy Policy

Last updated: 18 November 2025

Introduction

Urban Shaman ("we," "our," or "us") is committed to protecting your privacy and personal data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our spiritual guidance application and services.

This policy complies with the General Data Protection Regulation (GDPR) and other applicable European data protection laws.

Data Controller

Urban Shaman

Developed by: th1b4ut.dev

Hosted on: Supabase (EU region)

Contact: privacy@urbanshaman.app

Data We Collect

Personal Information

  • Account Data: Email address, full name, password (encrypted)
  • Birth Information: Birth date, time, and location (for astrology/numerology services)
  • Profile Data: User preferences, subscription tier, credits balance

Usage Data

  • Reading History: Tarot readings, rune castings, dream interpretations
  • Interaction Data: Feature usage, session duration, preferences
  • Technical Data: IP address, browser type, device information

Content Data

  • Dream Journal: Dream descriptions and interpretations
  • Reading Requests: Questions and context for spiritual guidance
  • Chat History: Conversations with AI Shaman

Legal Basis for Processing

  • Consent: You provide explicit consent for spiritual guidance services
  • Contract Performance: Processing necessary to provide our services
  • Legitimate Interest: Improving our services and user experience
  • Legal Obligation: Compliance with applicable laws and regulations

How We Use Your Data

Service Provision

  • • Generate personalized spiritual readings
  • • Provide astrology and numerology insights
  • • Deliver AI-powered guidance
  • • Maintain user accounts and preferences

Service Improvement

  • • Analyze usage patterns
  • • Enhance AI models and accuracy
  • • Develop new features
  • • Ensure platform security

Data Sharing and Disclosure

We do not sell, trade, or rent your personal information to third parties. We may share data only in the following circumstances:

  • Service Providers: Trusted partners like Supabase for hosting and Together AI for AI services
  • Legal Requirements: When required by law or to protect our rights
  • Consent: With your explicit consent for specific purposes
  • Business Transfers: In case of merger, acquisition, or asset sale

Data Security

We implement appropriate technical and organizational measures to protect your personal data:

  • Encryption: Data encrypted in transit and at rest
  • Access Controls: Role-based access to personal data
  • Regular Audits: Security assessments and monitoring
  • Secure Infrastructure: EU-based hosting with SOC 2 compliance

Your Rights Under GDPR

Access & Portability

  • • Right to access your personal data
  • • Right to data portability
  • • Right to rectification
  • • Right to erasure ("right to be forgotten")

Control & Objection

  • • Right to restrict processing
  • • Right to object to processing
  • • Right to withdraw consent
  • • Right to lodge a complaint

To exercise your rights: Contact us at privacy@urbanshaman.app

Data Retention

  • Account Data: Retained while your account is active
  • Reading History: Retained for 3 years for service improvement
  • Usage Analytics: Anonymized after 2 years
  • Legal Requirements: Some data may be retained longer for compliance

Cookies and Tracking

We use essential cookies for authentication and service functionality. We do not use tracking cookies or third-party analytics without your consent.

For detailed information about our cookie usage, please see our Cookie Policy.

International Data Transfers

Your data is primarily processed within the European Union. Any international transfers are protected by appropriate safeguards, including Standard Contractual Clauses (SCCs) and adequacy decisions.

Children's Privacy

Our services are not intended for children under 16. We do not knowingly collect personal information from children under 16. If you believe we have collected such information, please contact us immediately.

Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of any material changes by email or through our application. Your continued use of our services after such changes constitutes acceptance of the updated policy.

Contact Us

If you have any questions about this Privacy Policy or our data practices, please contact us:

Email: privacy@urbanshaman.app

Data Protection Officer: dpo@urbanshaman.app

This Privacy Policy is effective as of 18 November 2025 and complies with GDPR and applicable European data protection laws.