# Privacy Policy for AstraSolara.com / Astra Solara App

**Legal Entity:** RotationStudios LLC dba AstraSolara

**Last Updated:** September 15, 2025

Astra Solara (“we,” “us,” or “our”) is committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, disclose, and protect information when you use our website, mobile application, and related services (collectively, the “Services”). By using the Services, you agree to the practices described here.

> **Note:** This policy is a template and should be reviewed by a legal professional to ensure compliance with applicable laws and your specific practices.

## 1. Scope & Who We Are

This policy applies to users of the Astra Solara app, website visitors, and anyone who engages with our Services. The controller and service provider is **RotationStudios LLC dba AstraSolara** (P.O. Box 756, Occidental, CA 95465, USA). Contact privacy@astrasolara.com.

## 2. Information We Collect

We collect the following categories of information to provide personalized astrological services and operate our business:

### A. Personal Information You Provide

**User Profile & Account:** email address, username, password (hashed and salted).

**Birth Data (for astrology):** date of birth, time of birth, place of birth.

**Preferences:** notification settings, content preferences, saved items.

**Support Communications:** messages you send to our support channels.

### B. Usage & Device Data

**App/Website Interactions:** features used, time spent, pages/screens viewed, referrers.

**Device Information:** device type, operating system, app version, unique identifiers, approximate location (if enabled).

**Cookies/Similar Tech:** used for analytics, preferences, and fraud prevention (see “Cookies” below).

### C. Astrological Data We Derive

**Natal Chart Information:** planetary positions, house placements, aspects.

**Transits/Progressions:** current planetary positions relative to your natal chart and progressed chart calculations.

### D. Communications Data (Email, Push, SMS)

**Subscription Choices:** whether you opted in to email, push, or SMS.

**Messaging Logs:** send status, timestamps, and consent records (e.g., checkbox consent, IP, user agent, source URL).

### E. Payment & Commerce

**Orders/Subscriptions:** product, price, tax, and fulfillment details.

**Payment Processing:** handled by third‑party processors (e.g., Stripe, WooCommerce). We do **not** store full credit card numbers.

## 3. Sources of Information

– Directly from you (account creation, forms, checkout, support).

– Automatically via your device/browser (analytics, logs, cookies).

– From service providers (e.g., payment/communications/hosting) to support delivery of the Services.

## 4. How We Use Your Information

**Personalized Astrology:** generate natal charts; compute transits/progressions; craft personalized readings.

**Operate & Improve Services:** analyze usage; fix bugs; develop new features.

**Communications:** send notices about new insights, features, promotions (with your consent), and transactional messages (e.g., account/security, purchase confirmations).

**Security & Fraud Prevention:** monitor, prevent, and investigate misuse.

**Research & Analytics:** anonymized and aggregated analysis to improve interpretations and predictions.

**Legal Compliance:** comply with legal obligations and enforce our Terms.

## 5. SMS & Mobile Communications

If you opt in to our SMS program (“AstraSolara SMS” operated by **RotationStudios LLC dba AstraSolara**):

**Frequency:** approx. 1 message/week for astrology updates; frequency may vary.

**Opt‑Out/STOP:** Reply **STOP** to cancel. You will receive a final confirmation message.

**HELP:** Reply **HELP** for help or contact support@astrasolara.com.

**Charges:** **Message & data rates may apply.** Carriers are not liable for delayed/undelivered messages.

**Consent:** Consent is not a condition of purchase.

**Records:** We maintain consent logs (time, IP, user agent, source URL/form).

**Changes:** We may modify or discontinue the program consistent with law and our Terms.

## 6. Legal Bases for Processing (EEA/UK Only)

Where GDPR/UK GDPR applies, our legal bases include: performance of a contract; legitimate interests (e.g., to improve Services and ensure security); consent (e.g., marketing SMS/emails); and legal obligations.

## 7. Sharing & Disclosure

We do **not** sell your personal information. We share limited data with service providers that help us deliver the Services, under contracts that restrict their use to our instructions. Examples include:

**Hosting/Infrastructure:** Amazon Web Services (AWS).

**Email/SMS:** Brevo (Sendinblue) for email; Twilio for SMS/MMS.

**Payments/Commerce:** Stripe, WooCommerce.

**E‑commerce Fulfillment:** Printful (for on‑demand printing).

**Analytics/Crash Reporting:** common analytics tools and telemetry services.

We may disclose information to comply with law, protect rights/safety, or in connection with a business transaction (merger, acquisition, asset sale) with appropriate notice.

## 8. Cookies & Similar Technologies

We use cookies, SDKs, and similar tech to remember preferences, analyze usage, and prevent fraud. You can manage cookies via your browser settings; disabling cookies may affect functionality.

## 9. Data Retention

We retain personal information only as long as necessary for the purposes described or as required by law. Consent logs for messaging may be retained for compliance. When no longer needed, we delete or anonymize data.

## 10. Security

We use administrative, technical, and physical safeguards appropriate to the nature of the data, including encryption in transit, hashing/salting of passwords, least‑privilege access, and routine backups. No method of transmission or storage is 100% secure.

## 11. Your Rights & Choices

**Access/Correction/Deletion:** You can access or update certain data in your account; you may request deletion by contacting us.

**Marketing Choices:** Opt out of marketing emails via unsubscribe links; opt out of SMS by replying **STOP**; adjust push notifications on your device.

**Data Portability:** Request a copy of your data in a portable format when feasible.

**Consent Withdrawal:** Where processing relies on consent, you may withdraw it at any time.

### California Privacy (CCPA/CPRA)

California residents have rights to know/access, correct, delete, and opt out of certain data sharing. We do not sell personal information. To exercise rights, contact privacy@astrasolara.com.

### EEA/UK Privacy (GDPR/UK GDPR)

You may have rights to access, rectification, erasure, restriction, portability, and objection. You may also lodge a complaint with your local supervisory authority. Where applicable, our Data Protection Officer can be reached at dpo@astrasolara.com.

## 12. International Transfers

If we transfer data outside your region, we use appropriate safeguards (e.g., standard contractual clauses) where required by law.

## 13. Children’s Privacy

Our Services are not directed to children under 13 and we do not knowingly collect personal information from them. If we learn we have collected such information, we will delete it.

## 14. Do Not Track

Our Services currently do not respond to “Do Not Track” signals. You may use other privacy controls (e.g., cookie settings) to manage tracking.

## 15. Changes to This Policy

We may update this Privacy Policy periodically. Material changes will be communicated (e.g., via in‑app notice, email, or posting with an updated date). Your continued use after changes take effect indicates acceptance.

## 16. Contact Us

**Privacy:** privacy@astrasolara.com

**DPO (if applicable):** dpo@astrasolara.com

**Postal:** P.O. Box 756, Occidental, California 95465, USA

**By using Astra Solara, you acknowledge that you have read and understood this Privacy Policy.**