Privacy policy
Last updated 2026-09-05
Arcana Oracle does not require an account. We do not display advertising or use advertising trackers. Purchase receipts and messages you send us may include your email address.
Privacy-conscious usage statistics
We use our own counters, hosted on our VPS, to understand page views, arrival source categories, country when available (unavailable on the direct VPS connection), device category, language, tarot steps, chosen topic categories and AI task outcomes. Analytics do not collect question or reading text, full page or referrer URLs, pass codes, email addresses or raw IP addresses. Separate daily totals are kept for up to 180 days; they are not joined into visitor profiles. Random event identifiers and job identifiers prevent duplicate counts and are removed within three days. Hosting and anti-abuse systems still process connection information. No analytics cookies or cross-page visitor identifiers are used.
We respect browser Do Not Track and Global Privacy Control signals. You may turn off statistics in this browser or turn them back on. The preference is saved locally as arc_analytics_off. Clearing site data clears this preference. The private owner dashboard uses a separate secure, HTTP-only login cookie, __Host-arc_stats, which expires after 12 hours. It is not used for visitor analytics.
What we store
An anonymous browser session. A signed random identifier, valid for 30 days, is stored as arc_browser_session_v1 in local storage and sent to our VPS over HTTPS. Combined with a one-way hash of the connection IP, it enforces the rolling 24-hour free allowance without third-party cookies. It is not a verified identity; clearing storage or changing browsers may reset it. Network and provider limits also apply.
Pass codes. If you buy credits we store the pass code, how many credits remain, the order it came from and the email address our payment provider reports for the receipt. Nothing links that to your browsing.
Readings. AI reading text is stored for up to 30 days against a job id and, for paid readings, a pass code. The processing queue temporarily keeps the request, question, and connection IP for execution and rate limiting. Recent reading text is also kept in your browser history.
What we send to the AI provider
When you request a tarot AI reading, your question, selected focus, and drawn symbols are sent through OpenCode Go to the providers serving MiMo V2.5. Older queued readings and other existing divination services use Agnes AI. A tarot follow-up also sends up to four recent question-and-answer exchanges from the current page (up to 500 characters per question and 3,000 per answer). These providers process the submitted content under their own privacy policies. This conversation buffer stays in page memory and is cleared on reload or when you close the circle; previously stored readings are not erased. Questions may be reflected in the generated text. Do not include private information. The bottom-left AI badge explains how readings and suggested questions are generated.
Payments
Card payments for reading credits, when enabled, are handled entirely by Creem, which acts as merchant of record. We never see your card number. Creem's own privacy policy governs what they collect. Optional support payments use PayPal or WeChat Pay; those providers process payment information under their own policies, and the recipient may receive payer and transaction details. Support payments do not grant reading credits.
Cookies
Visitor allowances use the signed local session described above, not a third-party cookie. Your pass code, recent reading history and chosen language (arc_language_v1) are kept in your browser's local storage. A pass code is sent to our server when checking or spending credits. Clearing site data removes these local copies.
Language and hosting
The entry page uses your saved language choice, then your browser's preferred languages. If none match, English is the fallback. Explicit language pages are not automatically redirected. No precise location permission or third-party IP lookup is used. Cloudflare Pages serves the website. Our VPS processes API requests, connection IPs, the SQLite credit ledger and readings. Encrypted HTTPS protects transport. Restricted migration snapshots and daily same-server backups may also retain data; daily backups are kept for seven days and are not offsite disaster recovery. Changing website origins does not copy old browser-local history or pass codes; an existing pass can be entered again. Hosting providers process connection information to deliver and protect the service. Fonts may be requested from Google Fonts.
Your choices
Clearing site data removes local copies, not server-side readings, order records or emails. For a privacy or deletion request, contact huanyiiiii@outlook.com. Do not send payment credentials or a pass code. We may need enough non-sensitive information to locate a record and may retain records required for transactions or security.