Privacy Policy

Last updated: December 16, 2025

Your privacy matters to us. This Privacy Policy explains what personal data Astro Attico collects, why we collect it, how we use it, where it is stored, how long we keep it, and what rights you have.

This Privacy Policy applies to:
• visitors of astroattico.com (the "Website")
• users who create an account or purchase a subscription
• users who receive emails from us (e.g., service emails, newsletters if you opt in)
• people who contact us for support

If you do not agree with this Privacy Policy, please do not use our Website or Services.

1) Definitions

Personal Data: any information relating to an identified or identifiable person.
Controller: the entity that decides why and how Personal Data is processed.
Processor: an entity that processes Personal Data on behalf of the Controller.
Services: subscription access to Daily / Weekly Individual Horoscopes

2) Who we are (Controller) and contact details

Controller: Astro Attico SL
Address: Passeig de Gracia, 17, 6th Floor, Barcelona, 08007
Email: hello@astroattico.com

If you have questions or requests regarding your Personal Data, contact: privacy@astroattico.com

3) What data we collect

A) Data you provide directly

When you create an account, subscribe, or use the Services, you may provide:

Account data: name (optional), email address, password (stored in encrypted/hashed form)

Subscription and billing data: subscription status, plan, payment confirmations/receipts, country, VAT info if applicable
(Note: payment card details are typically processed by our payment provider, not stored by us.)

Horoscope profile data (used to personalize content):
• date of birth
• time of birth (if you provide it)
• place of birth (city/country) (if you provide it)
• gender/pronouns (optional)
• relationship status or personal preferences (optional)
• topics you choose (love, career, wellbeing, etc.)

Support communications: messages you send us, and metadata needed to respond

B) Data collected automatically

When you browse or use astroattico.com, we may collect:
• IP address and approximate location (derived from IP)
• device and browser information (type, OS, language, timezone)
• pages viewed, clicks, session timestamps, referral URL
• cookie identifiers and analytics events (depending on your consent)

C) Email preferences

If you opt in to marketing emails/newsletters, we process:
• email address
• subscription preference and timestamp of consent
• open/click events (depending on your email provider and settings)

4) Why we use your data (purposes)

We use Personal Data to:
• create and manage your account
• deliver personalized daily/weekly horoscopes
• provide customer support
• manage subscriptions, payments, invoices, fraud prevention
• send essential service emails (password reset, payment confirmation, subscription status)
• send marketing emails only if you opt in
• improve our Website and Services (analytics, debugging, performance)
• comply with legal obligations (tax, accounting, responding to lawful requests)

5) Legal bases (GDPR)

We process your Personal Data under these legal bases:
Contract (Art. 6(1)(b)): to provide the subscription and deliver the Services
Consent (Art. 6(1)(a)): for non-essential cookies, and marketing emails/newsletters
Legitimate interests (Art. 6(1)(f)): to secure our Website, prevent fraud, and improve services (minimal analytics, service performance)
Legal obligation (Art. 6(1)(c)): for accounting/tax compliance and other legal requirements

6) Sensitive data note

Some information you provide (e.g., birth date/time/place) is not automatically "special category data" under GDPR, but it is personal and potentially sensitive in nature. We treat horoscope profile data with increased care and limit access to what is necessary to operate the service.

We do not request medical data, political opinions, religious beliefs, or other special category data. Please do not send such information to support.

7) Cookies and tracking

We use cookies and similar technologies to:
• make the Website function properly
• remember preferences (where applicable)
• understand usage and improve performance (analytics), only where required by law and based on your consent

For full details, see our Cookie Policy.

8) Who we share data with (processors)

We do not sell your Personal Data.

We may share Personal Data with trusted processors who help us run the service, for example:
• Payment processing (e.g., Stripe)
• Hosting / infrastructure (e.g., cloud hosting provider)
• Analytics (e.g., website analytics tool)
• Email delivery (e.g., transactional email/newsletter provider)
• Customer support tools (if and when used)

These processors may access Personal Data only to perform services for us under contract and confidentiality obligations.

Processor Purpose Location Safeguards
Stripe Payments, subscription management, invoicing, fraud prevention EEA/US/global DPA; SCCs
Hostinger Hosting & storage EU/global DPA; SCCs if applicable
GoDaddy Domain registration, DNS, website/email hosting, security services US/EU/global DPA; SCCs if applicable
Intercom Customer support chat, helpdesk/tickets, user messaging EU/US/global DPA; SCCs; access controls
Webflow Website hosting/CMS, form submissions US/global DPA; SCCs if applicable
Google Analytics Website usage analytics EU/US/global Consent; DPA; SCCs; IP anonymization

9) International transfers

Where Personal Data is processed outside the EEA/UK/Switzerland, we use appropriate safeguards such as:
• an adequacy decision (where available), or
• Standard Contractual Clauses (SCCs) and additional safeguards as required

10) Data retention

We keep Personal Data only as long as needed:
Account & horoscope profile: while your account is active, and for a limited period after deletion
Billing records: retained as required by tax/accounting laws
Marketing email data: until you unsubscribe
Analytics logs: kept for a limited period depending on tool settings

11) Data security

We use appropriate technical and organizational measures to protect Personal Data, including access controls, encryption in transit where applicable, and least-privilege access to production systems.

No method of transmission or storage is 100% secure, but we work to protect your data using industry-standard practices.

12) Your rights

Depending on your location (especially EU/EEA/UK/Switzerland), you may have the right to:
• access your Personal Data
• correct inaccurate data
• delete your data
• restrict or object to processing
• receive your data in a portable format (data portability)
• withdraw consent (where processing is based on consent)
• lodge a complaint with your data protection authority

To exercise your rights, email: privacy@astroattico.com
We may ask you to verify your identity before responding.

13) Children

Astro Attico is not intended for children under 16. We do not knowingly collect Personal Data from children under 16. If you believe a child has provided Personal Data, contact us and we will take steps to delete it.

14) Links to third-party services

Our Website may contain links to third-party websites or services. Their privacy practices are governed by their own policies, not this one.

15) Changes to this policy

We may update this Privacy Policy from time to time. If changes are significant, we will post a notice on the Website and/or notify you via email (if we have it and notification is appropriate). The "Last updated" date will be updated.