Esoteric

Your cosmic almanac

Setting the sky

Privacy

Esoteric reads astrology, tarot, numerology and dreams from what you type into it. This page says plainly which data is kept, who else sees any of it, and how you get it back or delete it.

2026-08-12

A draft written by the people who built the product, not reviewed by a lawyer. It will be updated before public signup opens.

What is stored

Only what a specific feature needs:

  • Account: email, display name, language. Passwords are stored as a bcrypt hash — nobody, including us, can read the original back.
  • Google/Facebook/Apple sign-in: the provider's stable identifier and your email. No contacts, no friends, no posts.
  • Date, time and place of birth (with coordinates) — entered once, used to compute your chart and numbers.
  • Journal entries you write, and the mood and topic chips you tap.
  • Tarot pulls and dreams you record: the question, the cards, the symbols, the themes.
  • Your “true for me / not quite” votes.
  • The candle ledger: every grant, purchase, spend and refund, with its reason.
  • For each deep reading: token counts and cost. The text of the reading is not kept here.

What stays on your device

A few things live in your browser only and are never sent anywhere:

  • A spread in progress: the cards drawn and which of them you have turned over, so the table is still there when you come back. It clears itself after 24 hours, when you start a new draw, or when you sign out.
  • The reading voice you picked, the day you turned today's card, and your answer to the consent banner.
  • If you use the app without an account: your birth details, name and journal live here and nowhere else — they are only sent anywhere if you create an account yourself.

What we do not do

  • No advertising, anywhere in the product.
  • No selling, renting or trading your data with anyone.
  • No tracking you across other websites.
  • No reading your journal for anything other than the features you are using.

What a deep reading sends

Deep readings are written by a language model, and for it to speak about your life rather than about tarot in general, we send your own context along with the cards.

  • The themes you keep returning to, how often, and when you last did.
  • Cards or dream symbols that keep coming back.
  • The questions you typed, the journal lines you wrote, and the notes you attached to a pull.
  • Which readings you marked as having landed or missed.
  • You can switch this off at any time on your profile: nothing you wrote is then sent, only derived signals — the reading still happens, it is just thinner.
  • The model provider does not train on this, and nothing is retained once the reading is written.

Third parties — and exactly what they receive

The product runs on a few outside services. This is the complete list, with the data that actually reaches each one:

  • Google Firebase — used only to verify who you are when you sign in with Google, Facebook or Apple. They see an email and an identifier, never your journal or your cards.
  • Resend — sends password reset and email verification messages. Those emails contain a link and nothing else of yours.
  • Google Gemini or Anthropic — ONLY when you spend a candle on a deep reading. At that moment the question you typed, the cards you drew and a short summary of your recent activity are sent so the reading can be written. This is the furthest your data travels, which is why it only happens when you choose to pay for it.
  • Server and database hosting providers.
  • Google Analytics — only if you press Allow on the strip at the bottom of the page. Until you do, it is not loaded and no cookie is written.

What you control

  • Download everything you have, as JSON, any time, from your profile.
  • Delete individual tarot pulls, or clear the whole history at once — really deleted, and those pulls leave the Mirror and anything computed from them.
  • Delete your account — really deleted, immediately, taking your birth data, journal, readings, votes and candle ledger with it.
  • Change your email (confirmed by a link), your name, your language, your password.
  • Sign out of every other device with one button.
  • Withdraw analytics consent whenever you like, from the same profile page.

How long it is kept

Until you delete it. There is no shadow archive after account deletion: the delete runs against the database and cascades through every related table. Routine backups may hold data for a short period before they are rotated out.

Security

Passwords are bcrypt-hashed. Keys for outside services are encrypted with AES-256-GCM under a master key that is not in the database. Operator accounts require a second factor (TOTP). Ten wrong passwords locks an account for fifteen minutes.

No system is perfectly safe. If something happens that affects your data, we will tell you by email.

Children

This product is not for people under 16. If we learn an account belongs to a child under 16, we delete it.

Contact

Questions about your data: write to the support address listed in the app. Export and deletion you can do yourself, from your profile, without waiting for anybody to approve it.