Privacy Policy
1. Information We Collect
At Spirit Animal Messages, we are committed to transparency about the information we gather. We collect the following types of information:
Account Information
- Email address and password (encrypted)
- Profile name and optional biographical details
- Payment and billing information (processed by secure third-party providers)
- Subscription preferences and history
Usage Information
- Pages visited and time spent on features
- Messages received and saved within your account
- Feature preferences and customization selections
- Search queries and spiritual interest indicators
Device and Technical Information
- IP address and device identifiers
- Browser type and operating system
- Mobile device information (if accessing via app)
- Crash reports and performance metrics
Optional Information
- Birth date (for personalized readings)
- Location data (if you grant permission)
- Survey responses and feedback
- Communication preferences
2. How We Use Your Information
Your information is used exclusively to enhance your experience with Spirit Animal Messages and support our service operations:
Service Delivery
- Authenticating your account and maintaining security
- Delivering spirit animal messages and personalized content
- Processing transactions and managing subscriptions
- Providing customer support and resolving issues
Enhancement and Improvement
- Analyzing usage patterns to improve features
- Personalizing your experience based on preferences
- Testing new functionality and services
- Conducting research and developing analytics
Communication
- Sending transactional emails (receipts, password resets)
- Notifying you of important account changes
- Providing updates about new features (with your consent)
- Responding to inquiries and customer service requests
Legal and Safety
- Complying with legal obligations and law enforcement requests
- Detecting and preventing fraud or security incidents
- Protecting the rights and safety of our users and platform
- Enforcing our Terms of Service and other agreements
3. How We Share Your Information
We respect your privacy and limit information sharing strictly. We do not sell your personal data.
Service Providers
We share information with trusted third parties who perform services on our behalf under strict confidentiality agreements:
- Payment processors for secure transaction handling
- Cloud hosting providers for data storage and security
- Email service providers for communications
- Analytics platforms (with anonymized data)
- Customer support tools and ticketing systems
Legal Requirements
We may disclose information when required by law, court order, or to protect our legal rights, including:
- Responding to subpoenas or legal investigations
- Complying with regulatory authorities
- Preventing fraud or illegal activities
- Protecting the safety of our users or the public
Business Transfers
In the event of a merger, acquisition, bankruptcy, or sale of assets, your information may be transferred as part of that transaction. We will provide notice before such changes occur.
Aggregated and Anonymized Data
We may share aggregated, anonymized statistics and insights with partners, researchers, and the public to improve spiritual wellness resources and industry understanding.
What We Do NOT Share
- Your personal messages or reading history with third parties
- Your email address with marketing partners
- Your data with advertisers for targeting purposes
- Your information with unaffiliated companies without consent
4. Cookies and Tracking Technologies
Spirit Animal Messages uses cookies and similar technologies to enhance your experience and gather usage information.
Types of Cookies We Use
- Essential Cookies: Required for core functionality (authentication, security)
- Performance Cookies: Analyze how users interact with our platform
- Preference Cookies: Remember your settings and customizations
- Marketing Cookies: Track engagement with our content (limited, with consent)
Your Cookie Choices
Most browsers allow you to control cookies through settings. You can:
- Accept or reject non-essential cookies on first visit
- Modify cookie settings in your browser preferences
- Delete cookies at any time
- Opt-out of specific tracking through your account settings
Please note that disabling essential cookies may impact platform functionality and your ability to access certain features.
Other Tracking Technologies
- Web beacons and pixels for email and page tracking
- Log files capturing server access information
- Mobile app analytics (with user consent)
5. Your Privacy Rights
You have significant rights regarding your personal information. Availability of these rights may depend on your location.
Access and Portability
You have the right to:
- Request a copy of all personal data we hold about you
- Download your information in a portable, machine-readable format
- Access your account details and history at any time
Correction and Updates
- Edit or update your account information directly
- Request correction of inaccurate data
- Update your contact preferences and notification settings
Deletion
You may request deletion of your account and associated personal data. Exceptions include:
- Data required for legal compliance or disputes
- Aggregated, anonymized information
- Information needed for fraud prevention
- Data subject to longer retention periods by law
Consent Withdrawal
- Unsubscribe from marketing communications anytime
- Withdraw consent for optional data processing
- Disable location sharing in your settings
- Opt-out of analytics and tracking (through your account)
Objections and Restrictions
- Object to certain types of data processing
- Request restriction of data use for specific purposes
- Request limitations on automated decision-making
How to Exercise Your Rights
To submit a privacy request, visit your account settings or contact our privacy team at privacy@spiritbeast.co. Include sufficient information to identify your account and specify your request. We will respond within 30 days (or as required by law).
California Residents (CCPA)
California residents have additional rights under the California Consumer Privacy Act, including the right to know, delete, opt-out of sale, and non-discrimination. Please reference our California Privacy Notice or contact us for more details.
EU Residents (GDPR)
If you reside in the European Union, United Kingdom, or European Economic Area, the General Data Protection Regulation applies. You have enhanced rights, and we process data only with a lawful basis. See our GDPR-specific addendum for more information.
6. Data Security
We implement comprehensive security measures to protect your information from unauthorized access, alteration, and disclosure.
Security Measures
- SSL/TLS encryption for data transmission
- AES-256 encryption for sensitive stored data
- Secure password hashing with salting algorithms
- Multi-factor authentication options for account protection
- Regular security audits and penetration testing
- Intrusion detection and prevention systems
- Access controls and role-based permissions
- Data center security with redundancy and backups
Employee and Partner Safeguards
- Confidentiality agreements with all employees
- Limited access to personal data on need-to-know basis
- Regular security training and awareness programs
- Background checks for critical personnel
- Vendor security assessments
Your Responsibilities
You are responsible for maintaining confidentiality of your login credentials. We recommend:
- Using a strong, unique password
- Changing your password regularly
- Not sharing your account credentials
- Logging out after using shared devices
- Reporting suspicious activity immediately
Data Breach Notification
In the unlikely event of a data breach affecting your personal information, we will notify affected users and relevant authorities as required by law, without undue delay.
Limitations
While we employ industry-leading security practices, no method of data transmission or storage is 100% secure. We cannot guarantee absolute security, though we maintain high standards.
7. Children and Privacy
Spirit Animal Messages does not knowingly collect or solicit information from children under 13 years of age.
Age Requirements
- Our service requires users to be at least 13 years old
- Account registration includes age verification
- We do not intentionally collect data from users under 13
For Children 13-18
Users under 18 may use our service with parental awareness. We recommend parents:
- Review our privacy practices with their children
- Monitor account activity and spending
- Discuss online safety and privacy
- Use parental controls if available
Parent or Guardian Rights
If you are a parent or guardian and believe your child has provided information to us, please contact us immediately at privacy@spiritbeast.co. We will take steps to delete such information and terminate the child's account.
COPPA Compliance
Our practices comply with the Children's Online Privacy Protection Act (COPPA) for users under 13.
8. International Data Transfers
Spirit Animal Messages operates globally, and your information may be transferred to countries outside your country of residence.
Transfers Outside Your Country
- Data may be transferred to United States and other countries
- Transfers comply with applicable data protection laws
- We implement Standard Contractual Clauses for EU/EEA transfers
- International transfers maintain equivalent privacy protections
Your Consent
By using Spirit Animal Messages, you consent to the transfer of your information to countries outside your country of residence for the purposes outlined in this policy.
Privacy Shield and Adequacy Determinations
We maintain compliance with applicable international data protection frameworks and adequacy determinations.
9. Data Retention
We retain your information for as long as necessary to provide our services and fulfill the purposes outlined in this policy.
Retention Periods
- Account Data: Retained while your account is active
- Transaction Records: Retained for 7 years (legal and tax requirements)
- Message History: Retained per your account settings (deletable)
- Marketing Communications: Retained until you unsubscribe
- Usage Analytics: Retained for up to 2 years (anonymized)
- Customer Support Records: Retained for 3 years
- Log Files: Retained for 90 days (security purposes)