Privacy Policy
Divyana Inc. ("Divyana," "we," "us," or "our") operates the Divyana mobile application ("App"). This Privacy Policy explains how we collect, use, store, share, and protect your personal information when you use our App.
Contact: support@divyana.ai
Website: https://divyana.ai
1. Information We Collect
1.1 Account Information
- Email address (required for authentication)
- Display name and profile avatar (optional)
1.2 Birth & Astrological Profile
- Date of birth, time of birth, and place of birth
- Used to generate your natal chart, Western and Vedic astrological profiles, planetary positions, and Fortune timing windows
- Stored as your Esoteric Profile within the app
1.3 Health and Wellness Data (Optional)
If you choose to connect Apple Health, we may access the following data types with your explicit permission. You can grant or revoke access at any time from Profile > Data Sovereignty or from your iOS Settings > Privacy > Health.
Core Health Metrics (synced continuously):
- Step count and active energy burned
- Heart rate and resting heart rate
- Heart rate variability (HRV)
- Exercise minutes
- Sleep analysis
Additional Vitals (synced on request):
- Blood oxygen (SpO2)
- Respiratory rate
- Body temperature
- Blood pressure (systolic and diastolic)
Body Composition:
- Body mass (weight)
- Body fat percentage
Mindfulness & Nutrition:
- Mindful session data
- Dietary energy (calories), protein, carbohydrates, fats, fiber
Apple HealthKit Commitment:
- HealthKit data is used solely to provide and improve the App's wellness features
- HealthKit data will never be used for advertising, marketing, or sold to data brokers
- HealthKit data will never be shared with third parties except as required to deliver the core service (see Section 4)
- HealthKit data will not be used to build advertising profiles
1.4 Journal & Mind Content
- Voice recordings and text journal entries you create within the App
- Dream journal entries and interpretations
- AI-generated insights, reflections, and sentiment analysis based on your entries
- Oracle Chat conversation history with our AI
1.5 Goals, Life Areas & Rituals
- Personal goals and progress tracking data you enter
- Life area scores and focus areas (e.g., career, relationships, health)
- Custom daily rituals you create
1.6 Location Data
- Current location: Used for real-time weather, air quality, pollen count, and geomagnetic data to provide your World pillar insights. Accessed only while the App is in use (foreground only).
- Birth location: Collected during onboarding via Google Places Autocomplete. Used exclusively to calculate your astrological chart coordinates. Stored as part of your Esoteric Profile.
1.7 Subscription & Purchase Data
- Subscription tier (Free/Seeker, Mystic, Sovereign) and expiration date
- In-app purchase receipt data, validated with Apple's servers
- No full payment card or financial information is stored by Divyana — all payments are processed exclusively by Apple
1.8 Device and Usage Information
- Device model, iOS version, and app version
- Crash logs and performance data (collected anonymously and aggregated)
- App feature usage patterns (anonymized, used to improve the product)
1.9 Local Device Storage
- Sync anchors for Apple Health incremental data fetching (stored locally on your device using MMKV)
- Encrypted session tokens stored on your device using AES-256 encryption (LargeSecureStore)
- Biometric authentication data (Face ID / Touch ID) is managed entirely by iOS and never accessed or stored by Divyana
1.10 Notifications
- If you enable push notifications, we store your device push token to deliver Oracle Score alerts, morning rituals, and wellness reminders
- You can disable notifications at any time from iOS Settings or the app
2. How We Use Your Data
We use your information to:
- Calculate your daily Oracle Score and personalized wellness insights across four pillars: Body, Spirit, Mind, and World
- Generate and maintain your astrological profile and Fortune timing windows
- Provide body and health metrics analysis and trends
- Deliver environmental context (weather, air quality, pollen, geomagnetic data)
- Process voice journal entries, generate AI reflections, and power semantic search across your entries
- Power Oracle Chat conversations with personalized, cross-pillar context
- Track your goals, life areas, and custom rituals
- Send push notifications you have opted into
- Validate and manage your subscription status
- Improve the App, diagnose issues, and fix bugs
We do not sell your personal data. Ever.
We do not use your data for targeted advertising or cross-app tracking.
3. Data Storage and Security
- All data is stored securely using Supabase, with encryption in transit (TLS) and at rest (AES-256)
- Authentication is handled via Supabase Auth using industry-standard practices including PKCE (Proof Key for Code Exchange) for OAuth flows
- Row-Level Security (RLS) is enforced at the database level — you can only access your own data
- Session tokens are stored in AES-256 encrypted local storage on your device
- Journal entries are processed by AI services to generate reflections and semantic search embeddings; your content is not used to train AI models
- Apple Health data synced to your account is not shared with third parties except as described in Section 4
- Vector embeddings generated from your journal entries are used solely for in-app semantic search and personalized Oracle context; they are not shared externally
4. Third-Party Services
We share the minimum necessary data with the following categories of service providers to operate the App:
| Service Category | Purpose | Data Shared |
|---|---|---|
| Cloud Infrastructure & Backend | Authentication, database, and serverless functions | Account data, health metrics, journal entries, preferences |
| Apple HealthKit | Health data access on-device | Permission-gated; synced to your secure account |
| AI & Machine Learning Services | Journal entry analysis, AI reflections, Oracle Chat, and insight generation | Journal text, relevant health context for personalized responses |
| Weather & Environmental Data Providers | Real-time weather, air quality, pollen count, and geomagnetic activity data | Approximate location |
| Location & Mapping Services | Birth location lookup during onboarding | Birth location search query |
| Apple (In-App Purchases) | Subscription and purchase validation | Purchase receipts validated with Apple's servers |
These services operate under their own privacy policies. We do not permit third-party services to use your data for their own advertising or marketing purposes.
5. Your Rights and Choices
5.1 Control Your Integrations
- Apple Health: Revoke access at any time via iOS Settings > Privacy & Security > Health > Divyana, or from Profile > Data Sovereignty in the App
- Location: Disable location access at any time via iOS Settings > Privacy & Security > Location Services > Divyana
- Push Notifications: Disable at any time via iOS Settings > Notifications > Divyana
- Granular Health Data Controls: Toggle individual data types (sleep analysis, HRV, nutrition/weight) on or off from Profile > Data Sovereignty
5.2 Access Your Data
Contact us at support@divyana.ai to request a copy of the personal data we hold about you.
5.3 Delete Your Data
Request complete deletion of your account and all associated data:
- In-app: Profile > Delete Account
- By email: support@divyana.ai
All personal data is permanently deleted within 30 days of your request.
5.4 Opt Out of Optional Features
You can use the App without connecting Apple Health or enabling location access, though some features will be limited.
5.5 California Privacy Rights (CCPA)
If you are a California resident, you have the right to:
- Know what personal information we collect, use, disclose, and sell (we do not sell your data)
- Delete personal information we have collected, subject to certain exceptions
- Opt out of the sale or sharing of personal information (we do not sell or share for advertising)
- Non-discrimination — we will not discriminate against you for exercising your privacy rights
- Correct inaccurate personal information
To exercise these rights, contact us at support@divyana.ai with the subject line "California Privacy Request."
5.6 International Users
Divyana is operated in the United States. If you access the App from outside the United States, your data will be transferred to and processed in the United States. By using the App, you consent to this transfer. If you are located in the European Economic Area or United Kingdom, you may have additional rights under GDPR — contact us at support@divyana.ai to exercise them.
6. Data Retention
- We retain your data for as long as your account is active
- If you delete your account, all personal data is permanently deleted within 30 days
- Apple Health data synced to your account is deleted along with your account
- Anonymized, aggregated data (e.g., aggregate wellness trend statistics with no personally identifiable information) may be retained for product analytics
7. Children's Privacy (COPPA)
Divyana is not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child has provided us with personal information, please contact us at support@divyana.ai and we will delete that information promptly.
Users between 13 and 17 years of age may only use the App with parental consent.
8. No Cross-App Tracking
Divyana does not track you across third-party apps or websites for advertising purposes. We do not participate in cross-app data sharing for advertising or marketing. Apple's App Tracking Transparency (ATT) framework applies — if we ever implement tracking, we will request your explicit permission first.
9. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes through the App or via email at least 30 days before the change takes effect. Continued use of the App after changes constitutes acceptance of the revised policy. The "Last Updated" date at the top of this page reflects the most recent revision.
10. Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy:
Email: support@divyana.ai
Website: https://divyana.ai
Mailing Address: Divyana Inc., California, United States