Lunina Policies
Privacy Policy
Lunina is designed as a reflective guidance experience. This Privacy Policy explains what personal information we collect, how we use it, how long we retain it, and what choices you have when using the service.
Information We Collect
We collect the account information you provide directly to us, including your email address, login method, password hash for email-based accounts, session records, membership status, wallet balance, and saved reading history.
When you choose to submit a question, focus area, birth date, follow-up prompt, or other reflective input, that information is stored as part of your reading record so we can generate, display, and preserve your guidance history.
We also collect operational and transactional records needed to run the service responsibly, including payment records, credit transactions, subscription status, email verification records, password reset records, and AI generation traces used for debugging, safety review, and prompt quality improvement.
How We Use Information
We use your information to create tarot readings, maintain access to your saved reflections, authenticate your account, process purchases, manage subscriptions, deliver verification and password-reset emails, and protect the service from abuse.
We may use technical logs and AI trace records internally to investigate failures, improve system reliability, review prompt quality, and support legitimate customer support requests. We do not sell your personal data to third parties.
AI and Third-Party Services
Lunina uses third-party service providers to operate core features, including payment processing, email delivery, hosting infrastructure, and AI generation. Information you submit as part of a reading may be processed by those providers strictly for the purpose of delivering the service.
AI-generated interpretations are created from the inputs you provide and the cards drawn by the application. They are intended for reflective and spiritual use, not for medical, legal, financial, or emergency decision-making.
Data Retention
We retain account, wallet, payment, and reading records for as long as reasonably necessary to provide the service, maintain user history, comply with legal obligations, resolve disputes, and protect the platform from fraud or misuse.
Verification records, password reset records, and operational logs may be retained for shorter or longer periods depending on security, auditing, and support needs. Expired security tokens are not treated as active credentials.
Your Rights and Requests
You may contact us to request account support, data access, deletion assistance, or privacy-related clarification. We may need to verify your identity before fulfilling sensitive account or deletion requests.
If you want us to review or delete personal data associated with your account, contact us using the privacy contact details listed on the Contact page.