Skip to content

Privacy Policy

Last updated: 31 March 2026 ยท Version 1.0

1. Who We Are

MyOracle ("we", "us", "our") operates the website myoracle.me and provides a cosmic intelligence platform. We are an Australian entity and comply with the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs).

Contact: contact@myoracle.me

2. Information We Collect

We collect the following categories of personal information:

Account Information: Email address, display name, and authentication credentials (via Google OAuth or email/password).

Birth Data: Date of birth, time of birth, and city of birth โ€” provided voluntarily for astrological calculations.

Payment Information: Subscription tier, Stripe customer ID, and Stripe subscription ID. We do not store credit card numbers โ€” all payment processing is handled by Stripe.

Usage Data: Chat conversations with the Oracle AI assistant, preferences, and interaction data.

Technical Data: Session cookies for authentication. We do not use tracking cookies or analytics.

3. How We Use Your Information

We use your personal information to: provide and personalise the MyOracle service, including generating astrological readings based on your birth data; process subscription payments through Stripe; maintain your account and preferences; respond to support requests; and improve the service.

We do not use your information for automated decision-making that has legal or similarly significant effects on you. All astrological readings are for entertainment purposes only.

4. Third-Party Services

We share data with the following third-party processors:

Supabase (Database & Auth): Stores your account data, profile, and chat conversations. Supabase servers are located in the United States. Supabase maintains SOC 2 Type II compliance and encrypts data in transit and at rest. By using MyOracle, you consent to the transfer of your data to the United States for processing.

Google (OAuth): If you sign in with Google, we receive your name, email, and profile picture from Google. We do not access any other Google data.

Stripe (Payments): Processes subscription payments. Stripe handles all credit card data โ€” we never see or store card numbers.

Anthropic (AI Chat): Chat messages are sent to Anthropic's Claude AI for generating responses. Messages are processed but not stored by Anthropic beyond the session.

Vercel (Hosting): Hosts the application infrastructure.

5. Data Retention

We retain your personal information for as long as your account is active. If you request account deletion, we will permanently delete your profile data, chat conversations, and associated records within 30 days. Stripe may retain payment records independently as required by financial regulations.

6. Your Rights

Under the Australian Privacy Principles (APPs 12 & 13) and the GDPR (where applicable), you have the right to:

Access your data: Request a copy of all personal information we hold about you. You can export your data from account settings.

Correct your data: Update or correct any inaccurate information via your profile settings.

Delete your data: Request deletion of your account and all associated data. We will process deletion requests within 30 days.

Data portability: Request your data in a machine-readable format.

Withdraw consent: You can withdraw consent for data processing at any time by deleting your account.

To exercise any of these rights, email us at contact@myoracle.me or use the account management features in the app.

7. Data Security

We protect your information through: encryption in transit (HTTPS/TLS); Row Level Security on all database tables ensuring users can only access their own data; secure authentication via Supabase Auth; Stripe webhook signature verification; and environment variable isolation for all API keys and secrets. No method of electronic storage is 100% secure, and we cannot guarantee absolute security.

8. Cookies

We use essential session cookies for authentication only. These cookies are necessary for the service to function and cannot be disabled while using MyOracle. We do not use advertising cookies, tracking cookies, or third-party analytics cookies.

9. Children's Privacy

MyOracle is not intended for users under 16 years of age. We do not knowingly collect personal information from children. If we discover that a child has provided us with personal information, we will delete that data promptly. Please contact us at contact@myoracle.me if you believe a child has provided us with data.

10. Changes to This Policy

We may update this policy from time to time. Material changes will be notified via the app or email. The "Last updated" date at the top indicates when the policy was last revised. Continued use of MyOracle after changes constitutes acceptance of the updated policy.

11. Cross-Border Data Transfers

Your personal information may be transferred to, and processed in, countries other than Australia. Our third-party service providers operate in the following jurisdictions: Supabase (United States), Google (United States), Stripe (United States), Anthropic (United States), and Vercel (United States).

We take reasonable steps to ensure that overseas recipients of your personal information comply with the Australian Privacy Principles, in accordance with APP 8. These steps include selecting providers that maintain industry-standard security certifications (SOC 2 Type II), encryption of data in transit and at rest, and contractual obligations regarding data protection.

12. Notifiable Data Breaches

In the event of a data breach that is likely to result in serious harm to any individual whose personal information is involved, we will comply with the Notifiable Data Breaches (NDB) scheme under Part IIIC of the Privacy Act 1988 (Cth). This includes notifying the Office of the Australian Information Commissioner (OAIC) and affected individuals as soon as practicable.

13. Complaints

If you believe we have breached the Australian Privacy Principles, you may lodge a complaint by emailing contact@myoracle.me. We will respond within 30 days. If you are not satisfied with our response, you may lodge a complaint with the Office of the Australian Information Commissioner (OAIC) at www.oaic.gov.au.

14. Contact

For questions about this privacy policy:
Email: contact@myoracle.me