POLARIS · PRIVACY POLICY
Privacy Policy
Effective 30 August 2026. This public technical policy must be completed with the approved legal operator and contact details before advertising is activated.
1. Information and purpose
- Guest fortune scan: supported birth details, optional Latin-letter name, selected topic, method, and reference date are used only to calculate the requested result. Guest input is not persistently stored in the account database.
- Google sign-in: a hashed provider identifier, email, and display name are used for account access. Polaris never receives the Google password or verification code.
- Saved readings: only a result the user explicitly saves, with its topic, reference date, and save time, is stored for reopening, search, comparison, backup, and deletion.
- Service events: only allow-listed route, locale, device category, duration, and success or failure values may be used for quality monitoring. Birth inputs, names, email addresses, questions, and reading text are prohibited.
2. Advertising and similar storage
Advertising is disabled by default. Polaris does not make an external advertising request until the advertising account, official consent setup, user choice, page eligibility, and emergency switch all allow it. Names, email addresses, birth details, locations, questions, and fortune results are never used as ad parameters. Fortune input, personal result, account, sign-in, checkout, legal, and error screens are ad-free.
When approved demand partners compete, only the eligible surface, public slot, locale, and viewport class are used. Ad operations may record provider, timing, visibility, outcome, timeout, and broad price bands. Personal identifiers, reading inputs or results, full URLs, query strings, referrers, exact bids, and deal identifiers are prohibited.
3. User choices
Advertising choices are stored on the current device. Users may decline advertising, request contextual advertising, or allow advertising and may reopen the choice. Where an official certified consent process is required, advertising remains blocked until that process is active. U.S. state opt-out signals and other regional rights must be honored through the configured official provider.
4. Storage and retention
- Unsaved guest input is not persistently stored in the account database.
- Sessions last up to 30 days and end on sign-out or account deletion.
- Profiles and saved readings remain until item deletion or full account-data deletion.
- Language, daily goal, and advertising choice stay on the current device unless a later policy clearly states otherwise.
- Current service-operation logs are retained for 30 days.
5. Providers and processing regions
Application and account data use Google Cloud's Seoul region. Google processes information required for Google sign-in under Google's own policy. If advertising is activated, the current authorized sellers will be disclosed in ads.txt and the advertising policy. Cross-border advertising processing will not begin until the required notice and official consent configuration are active.
6. Access, export, restoration, and deletion
Signed-in users can update a display name, inspect and delete saved readings, export account data, preview and restore a valid backup, and delete the Polaris profile, sessions, and saved readings. Deleting Polaris data does not delete the Google account.
7. Security
Polaris uses HTTPS, secure server-managed session cookies, hashed provider identifiers, same-origin mutation checks, request size and format limits, user-level access checks, and no-store controls for sensitive responses.
8. Children and important decisions
Polaris is a general-audience reflective service and is not directed to children under 13. Known minors must not receive personalized advertising. Fortune results do not replace medical, legal, financial, employment, or other qualified professional advice.
9. Contact and changes
The public operator name and privacy contact must be inserted from approved operating information before advertising is activated. Material changes to processing or retention will be announced before they take effect and the effective date will be updated.