Skip to content
Back to Divinare

Divinare

Privacy Policy

Last updated: April 2026

Pixel du Nord LLC ("we", "the Company") operates the Divinare application. This Privacy Policy describes how we collect, use, and protect your personal information when you use our Application.

1. Information We Collect

Information you provide

  • Account: email address and username (nickname)
  • Social authentication: if you sign in with Google or Apple, we receive your name and email from those providers
  • Reading content: the questions, intentions, or queries you write when requesting a tarot or rune reading
  • Communications: messages you send us through the Application or by email

Information collected automatically

  • Device identifier: an anonymous ID generated on your device to link your session
  • Advertising identifiers: IDFA (iOS) or GAID (Android) for ad personalization, subject to your consent
  • Usage data: spreads performed, cards consulted, reading history (associated with your account)
  • Technical information: operating system, application version, device language
  • Advertising data: if you watch rewarded ads, ad networks may collect interaction data according to their own policies

2. How We Use Your Information

We use the collected information to:

  • Provide and improve the Application and its features
  • Authenticate your identity and maintain your session
  • Save your reading history and preferences
  • Generate interpretations using artificial intelligence (see section 3)
  • Process purchases and subscriptions
  • Personalize and display relevant ads
  • Send service-related communications (updates, notifications)
  • Detect and prevent fraud or abuse
  • Comply with legal obligations

3. Use of Artificial Intelligence and Reading Data

The questions and queries you write when requesting a reading are sent to external artificial intelligence providers (such as OpenAI) to generate interpretations. Regarding this processing:

  • Queries are sent anonymously, without linking your personal identity to the AI provider
  • We do not send your email, username, or account data to the AI provider
  • AI-generated content is stored on our servers as part of your reading history
  • AI providers may temporarily process the data according to their own retention policies
  • Recommendation: avoid including personally identifiable information (full names, addresses, medical data) in your reading questions

4. Legal Basis for Processing (GDPR)

If you are located in the European Economic Area (EEA), we process your personal data under the following legal bases:

  • Performance of contract: to provide you with the Application's services, manage your account, process purchases, and maintain your reading history
  • Consent: for sending marketing communications, ad personalization, and the use of advertising identifiers
  • Legitimate interest: to improve the Application, prevent fraud, and ensure the security of the service
  • Legal obligation: to comply with applicable tax, accounting, or data retention requirements

You may withdraw your consent at any time without affecting the lawfulness of prior processing. To do so, contact us or adjust your device settings.

5. Third-Party Services and Tracking Technologies

The Application uses the following third-party services that may collect information:

These services may use cookies, device identifiers, advertising identifiers (IDFA/GAID), and other tracking technologies for their own purposes, including ad personalization and analytics. Each service operates under its own privacy policy.

App Tracking Transparency (iOS)

On iOS devices, the Application requests your explicit permission through Apple's App Tracking Transparency (ATT) framework before accessing your advertising identifier (IDFA) for ad tracking purposes. You may deny or revoke this permission at any time from your device settings (Settings → Privacy & Security → Tracking).

6. International Data Transfers

Your data is processed and stored on Amazon Web Services (AWS) servers located in the United States (us-east-2 region). If you are located in the European Union, Brazil, or another jurisdiction with data protection laws, by using the Application you consent to the transfer of your data to the United States.

For transfers from the EEA, we rely on the European Commission's Standard Contractual Clauses (SCCs) implemented by our service providers (AWS, OpenAI, Google). For transfers from Brazil, we rely on the safeguards provided by the LGPD, including the data subject's consent.

7. Data Retention

We retain your data as long as your account is active or as necessary to provide you with the service. Specific retention periods are:

  • Account and reading data: as long as the account remains active
  • After deletion request: 30-day recovery period, after which data is permanently deleted
  • Transaction data: up to 5 years after the last transaction, per tax and accounting requirements
  • Security logs: up to 12 months

You may request the deletion of your account from the Application (see How to Delete Your Account) or by contacting us at contact@pixeldunord.com.

8. Your Rights

Depending on your location, you may have the following rights regarding your personal data:

  • Access: request a copy of the data we hold about you
  • Rectification: correct inaccurate or incomplete data
  • Erasure: request that we delete your personal data
  • Portability: receive your data in a structured, machine-readable format
  • Objection: object to the processing of your data in certain circumstances
  • Restriction: request that we limit the processing of your data
  • Withdrawal of consent: when processing is based on your consent

European Union (GDPR)

In addition to the above rights, EEA users have the right to file a complaint with their local Data Protection Authority if they believe their information has been processed unlawfully.

California (CCPA/CPRA)

California residents have the right to know what personal data we collect, to request its deletion, and not to be discriminated against for exercising their rights. We do not sell personal information within the meaning of the CCPA.

Brazil (LGPD)

Users in Brazil have rights under the Lei Geral de Proteção de Dados (General Data Protection Law), including: confirmation of the existence of processing, access to data, correction, anonymization, blocking or deletion of unnecessary or excessive data, portability, information about public and private entities with which data is shared, and revocation of consent. To exercise these rights, contact us at the email provided.

9. Data Security

We implement technical and organizational security measures to protect your information, including encryption in transit (HTTPS/TLS) and at rest. However, no system of transmission over the Internet is completely secure.

10. Children's Privacy

The Application is not directed at children under the age of 13 (or 16 in the EEA). We do not knowingly collect personal information from minors who do not meet the minimum age requirement. If you believe a minor has provided us with personal data, please contact us to have it removed.

11. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of any significant changes through a notice in the Application. The "Last updated" date at the top of this document indicates when it was last revised.

12. Contact

For questions or requests related to your privacy, contact us at:

Pixel du Nord LLC
Minnesota, United States
contact@pixeldunord.com

Legal & Support

Every product keeps its own policies — these apply to Divinare.