Last updated: 25 July 2026

Privacy Policy

This Privacy Policy explains how Arcana handles personal data when you use the free experience, request a personalized AI reading, use narration, or make a payment. Arcana is designed to keep the free reading and your saved result in your browser wherever possible.

The controller responsible for Arcana is the operator identified in the Impressum. You can contact the controller using the postal or email address shown there.

Your language, sound preference, selected focus, card choices, progress, free reading, and any personalized result you receive are stored in local storage in your browser so the experience can resume after a reload. The free reading is assembled locally from editorial content and does not send your personal free-text context to an AI model.

You can remove this local data by using Arcana's reset function or clearing the site's data in your browser. Local storage can also disappear when you use private browsing, change device, or clear browser data.

If you choose a personalized reading and confirm the disclosure in the form, Arcana sends your selected focus, three cards, preferred style, situation, question, and interface language to our server, OpenRouter, and the model provider selected for that request. If you use an included clarification, the clarification question and existing reading are sent to the same services. This is necessary to create the result or clarification you requested.

If you deliberately use a microphone button, the recorded audio is sent to our server, OpenRouter, and the selected speech-to-text model provider solely to create a transcript for that field. Arcana requests zero-data-retention routing and denied provider data collection. The server does not retain the audio or transcript after returning it; the transcript remains in the form in your browser and is treated like text you typed.

Arcana requests provider routing with zero data retention and provider data collection denied. The API response is marked private and no-store, and the finished reading is returned to and saved in your browser. These controls reduce provider retention but do not remove the need for those providers to process the request while generating the result.

AI narration is optional. Only when you choose the AI Listen action is the exact displayed section and its language sent through OpenRouter to the selected speech model, again with zero-retention routing and provider data collection denied. The returned audio may be cached locally in your browser so it does not need to be generated repeatedly.

The free device read-aloud option uses only a voice that the browser reports as installed locally. If no suitable local voice is available, Arcana leaves this option unavailable rather than choosing a cloud-backed browser voice.

When paid checkout is enabled, Stripe processes the payment. Stripe receives the checkout and payment information needed to complete the transaction under its own privacy information. Arcana does not receive or store your full card details; it receives a checkout status and session reference needed to confirm access. Arcana records the legal-copy version, age and immediate-performance confirmations, and—before paid AI generation—the AI-context consent version, interface language, and server timestamps in Stripe metadata as contract and consent evidence.

Your situation and question remain in your browser before checkout and are not added to the Stripe checkout request.

We process data to provide the experience and any purchased digital service, remember the settings you request, generate content only after your action, confirm payment, prevent abuse, and keep the service secure. Depending on the operation, the legal basis is performance of a contract or steps you request before a contract, your consent for an optional transmission, compliance with legal obligations, or our legitimate interest in operating and securing the service.

Your context can reveal special-category information, for example about health, religious or philosophical beliefs, sex life, or sexual orientation. Arcana processes any such details only on the basis of your separate explicit consent and solely to create the reading and included clarifications you request. Supplying those details is optional; do not submit sensitive or identifying information about another person.

Arcana does not use advertising pixels. On the global production site, a Plausible-compatible analytics script served by plausible.zeroleak.org measures aggregate page views and engagement for arcanatarotreading.com. The script sends the visited URL, referrer when available, and event data; the analytics and hosting infrastructure may also process IP address, request time, and user agent to deliver and aggregate the request. A signed, HttpOnly, same-site cookie can prove a completed purchase for up to 30 days and is consumed after the successful paid generation; it contains a signed Stripe session reference rather than card details. Standard web infrastructure may process technical and security logs to deliver and protect the service.

Reading text, context, card choices, and narration audio are stored in your browser until you reset Arcana, use the deletion control on this Privacy page, or clear site data. Arcana does not keep a server-side copy of the submitted context, generated reading, microphone recording, transcript, or narration audio after responding to the request. A separate security store keeps one-way identifiers, counters, expiry times, and consumed-payment markers so rate limits and one-reading entitlements work across server instances; it does not contain reading content. Security records expire automatically when their configured rate-limit, reservation, or entitlement-retention period ends, while the consumed status mirrored into Stripe follows the payment-record retention period. Hosting, analytics, and security providers may retain limited technical logs under the periods configured for the production account and any longer period required to investigate a concrete security incident or legal claim.

Stripe payment records and accounting documents are retained only for the applicable statutory periods. In Germany, booking documents and invoice copies are generally retained for eight years from the end of the relevant calendar year; records subject to a longer legal obligation are retained for that longer period. Privacy correspondence is normally deleted three years after the request is finally closed, unless it remains necessary for a legal claim.

Relevant recipients can include the hosting, analytics, and security-store providers, OpenRouter, the selected AI model provider, Stripe, and professional advisers or authorities where legally required. Some providers may process data outside the European Economic Area. Where required, transfers must rely on an adequacy decision, Standard Contractual Clauses, or another valid safeguard.

When you deliberately use WhatsApp, X, Facebook, email, or another sharing destination, that service processes what you choose to share under its own privacy terms.

Subject to the GDPR and applicable law, you may request access, correction, deletion, restriction, portability, or object to certain processing. Where processing is based on consent, you may withdraw that consent for the future without affecting processing that occurred before withdrawal. You may also lodge a complaint with a competent data protection supervisory authority.

Use the deletion control below to remove reading data from this browser. For access, deletion, recipient notification, or another GDPR request concerning server, provider, or payment metadata, email hello@petercsipkay.com. Requests are answered without undue delay and normally within one month; identity verification may be requested. Legally required accounting records cannot be erased before their retention period ends.

Arcana does not use the reading to make a decision that produces legal or similarly significant effects about you.

This policy may be updated when the service, providers, or legal requirements change. The current version and effective date are published on this page. Material changes to paid or privacy-relevant processing should be communicated before they take effect where required.

Delete data from this browser

This removes your saved cards, context, generated reading, narration cache, preferences, pending checkout reference, and any unused browser unlock. Download anything you want to keep first.