Privacy Policy
Last Updated: December 21, 2025
1. Who We Are
We are Cosmic Blueprint, a service provided by BW Digital Publishing, LLC, based in Carrollton, Georgia. Our website is https://cosmicblueprint.io, and our application is hosted at https://app.cosmicblueprint.io. We provide personalized astrological readings using generative AI to explore your soul’s purpose.
2. What Data We Collect
We collect the following data solely to provide and improve your Cosmic Blueprint reading:
- Personal Data: Full name, email address, billing address (for purchases), and birth data (date, time, location) submitted for your reading.
- Technical Data: IP address and access timestamps when you access your reading, used for fraud prevention, security, and dispute resolution.
- Order Data: Order ID, user ID, product type, tax total, access code, and PDF URL for purchase and delivery tracking.
Media uploads are not allowed, so please provide only the requested details. We do not collect unnecessary data, and all data is used solely for processing your reading, service delivery, or complying with legal obligations.
3. Artificial Intelligence and Automated Processing
We use generative AI services to create personalized interpretations based on your birth data. Inputs are limited to your birth details (anonymized where possible) and astrological chart calculations. Outputs are reviewed for accuracy and relevance.
Important disclosures:
- Your data is not used to train or improve any AI models.
- AI processing is not fully automated decision-making with legal effects; human oversight ensures fairness and accuracy.
- You have the right to object to AI processing or request human review—contact us at the email below.
We implement safeguards like data minimization and pseudonymization to protect your privacy during AI use.
4. Cookies and Similar Technologies
We use cookies and similar technologies on app.cosmicblueprint.io as follows:
- Essential Cookies: A single HttpOnly, Secure cookie is set after successful payment verification or login. It stores a session identifier (no personal data) to maintain your authenticated state, track orders, enable access to your readings, and allow seamless log-back-in across devices. This cookie has a sliding expiration (extended on activity) and is required for core functionality.
- No Tracking or Analytics Cookies: We do not use cookies for analytics, advertising, or cross-site tracking. We do not engage in behavioral advertising or "sharing" of personal data under CCPA definitions.
You can manage cookies via your browser settings (e.g., block or delete them), but disabling essential cookies may prevent access to your account and readings.
5. Embedded Content
Some articles may include embedded content (e.g., videos or images) from other sites. These act as if you visited those sites and may collect data or use cookies, especially if you’re logged into them.
6. Who We Share Your Data With
We share your data only with trusted third-party processors (service providers) in the following categories, solely as necessary for service delivery:
- Payment processors: To handle transactions and tax calculations.
- AI service providers: For generative AI interpretations (anonymized birth data only; no training use).
- Cloud storage and hosting providers: For secure PDF storage and application hosting.
- Astrological calculation services: For generating natal charts.
All partners are contractually bound to protect your data, use it only for the specified purposes, and comply with applicable laws. We never sell or share your data for marketing or advertising. If our processors change, we will update this policy accordingly.
7. How Long We Keep Your Data
We retain data only as long as necessary:
- Personal Data (name, email, birth data, IP, timestamps): 1 year after purchase for service access, support, and fraud/chargeback defense.
- Order Data: 7 years for U.S. tax compliance (IRS requirements).
- Anonymization: After 1 year, identifiable personal data is anonymized (e.g., replaced with IDs) unless legally required otherwise.
Data is securely deleted afterward, except where retained for legal reasons (e.g., audits, disputes).
8. Data Security and Breach Notification
We use encryption (in transit and at rest), secure servers, access controls, and industry-standard measures to protect your data. Access is limited to authorized staff.
No system is 100% secure, but we minimize risks. In the unlikely event of a breach affecting your data, we will notify you and relevant authorities as required by law.
9. Children's Privacy
Our services are not directed to children under 13 (or 16 in some jurisdictions). We do not knowingly collect data from minors. If we learn of such collection, we will delete it promptly.
10. Your Rights Over Your Data
Under GDPR (EU), CCPA (California), and similar laws, you have rights including:
- Access: Request a copy of your data.
- Correction: Fix inaccurate data.
- Erasure/Deletion: Request removal (subject to legal retention, e.g., tax records).
- Opt-Out: Object to processing (including AI use).
- Non-Discrimination: Exercise rights without penalty.
Contact support@cosmicblueprint.com or use our data request form. We respond within 1 month (GDPR) or 45 days (CCPA, verifiable). Verifications may require identity proof.
11. International Data Transfers
Data is processed primarily in the U.S. For EU/UK users, transfers rely on adequacy decisions or Standard Contractual Clauses ensuring equivalent protection.
12. Contact Us
For questions, requests, or complaints: support@cosmicblueprint.com.
13. Changes to This Policy
We may update this policy for new features or legal changes. Material updates will be notified via email or prominent site notice. Continued use constitutes acceptance.