1. General provisions
The Rightsholder has developed and adopted this Privacy Policy (the "Policy") for the website https://mytarotadvisor.com/ (the "Website"). Aware of its responsibility for the protection of Users’ personal data and respecting the fundamental right to data protection, the Rightsholder complies with applicable personal data laws and the EU General Data Protection Regulation (GDPR, Regulation (EU) No 2016/679), which defines personal data as any information relating to an identified or identifiable natural person. For the purposes of this Policy, "Personal Data" means any information relating to an identified or identifiable natural person ("data subject"). An identifiable natural person is one who can be identified, directly or indirectly, in particular by reference to an identifier such as a name, an identification number, location data, an online identifier or to one or more factors specific to the physical, physiological, genetic, mental, economic, cultural or social identity of that natural person.
2. Consent to the processing of personal data
The User, accepting the terms of the Public Offer for the use of services on the website https://mytarotadvisor.com/ , and the terms of this Privacy Policy, gives his consent in accordance with the legislation on the protection of personal data and the GDPR Regulation to the processing of his personal data by the Rightsholder and confirms that, by giving such consent, he acts of his own free will and in his own interests. The consent applies to the following information that may be provided by the User to the Rightsholder: name, surname, patronymic, date of birth, gender, device data, email address (or other means of communication), IP address; parameters and settings of Internet browsers, other information provided by the User.
3. Purpose of collecting, processing, storing personal data
Consent to the processing of personal data is provided by the User for the purpose of fulfilling the terms of this Policy to perform any actions with respect to personal data, including, but not limited to: collection, systematization, accumulation, storage, adaptation, clarification (update, change), use, dissemination (including by sale or transfer), cross-border transfer, depersonalization, blocking, destruction, as well as performing any other actions with personal data in accordance with applicable law. The processing of personal data is carried out by the Rightsholder using automation tools. When processing personal data, the Rightsholder is not limited in the application of the methods of their processing.
4. Data availability to third parties
- 4.1. Personal data provided by the User will be available to the Rights Holder's employees. The Rights Holder does not sell or disclose personal data to third parties without necessity, except in cases provided for by this Policy or the law, the GDPR Regulation. In particular, the Rights Holder may use the services of third parties to process the User's personal data. This processing is carried out for various purposes, for example, to provide services to the User (advice, interpretation of online tarot card spreads provided to the User), to send information materials, etc. Independent service providers agree to strictly observe confidentiality and are not entitled to use the User's personal data for other purposes. The Rights Holder also transfers the User's personal data to law enforcement, judicial, tax, fiscal and other competent authorities to the extent required by applicable law, the GDPR Regulation, or if necessary to prevent, detect or suppress criminal acts and fraud, as well as to protect the property rights of the Rights Holder or third parties.
- 4.2. The Rightsholder ensures appropriate security of the User's personal data, including protection against unauthorized or unlawful processing and against accidental loss, destruction or damage, using appropriate technical and organizational tools.
- 4.3. The Rightsholder may engage independent service providers (processors) to process personal data for various purposes (e.g., delivering services such as consultations/interpretations, sending informational materials). Such providers must keep data confidential and may not use it for other purposes.
- 4.4. The Rightsholder may transfer personal data to law‑enforcement, judicial, tax, fiscal or other competent authorities as required by applicable law/GDPR, or when necessary to prevent, detect or suppress criminal acts and fraud, or to protect the property rights of the Rightsholder or third parties.
5. Policy validity period
- 5.1. This Policy is valid for an indefinite period and applies to all Users from the start of service provision on the Website.
- 5.2. The User's consent to the processing of personal data is valid for the entire period of validity of this Policy, during the provision of services to the User in accordance with the Public Offer for the use of services on the website https://mytarotadvisor.com/ (hereinafter referred to as the Website) and after the provision of these services. By agreeing to the terms of this Policy, the User confirms that the scope of the Rights Holder's rights as a subject of personal data in accordance with the legislation on personal data protection, the GDPR Regulation is known and understood by him.
6. Application of personal data protection legislation and the GDPR Regulation (EU No. 2016/679)
This Privacy Policy has been developed in accordance with the requirements of the legislation on personal data protection and in accordance with the GDPR Regulation EU No. 2016/679 on the processing and transfer of personal data used for the purposes of effective use of the website https://mytarotadvisor.com/, and provided with its help, taking into account the key principles of the GDPR. In cases where the relations of the parties are not regulated by this Policy, the provisions of the legislation on personal data protection and the GDPR Regulation apply.
7. Types of personal data that may be collected, stored and used
- 7.1. Information about the User's computer and other device, including IP address, geographical location, browser type and version, and operating system.
- 7.2. Information about visits to and use of the website, including referral source, length of visit, page views and navigation paths.
- 7.3. Information that the User enters when entering data to receive services on the website: name, gender, date of birth, e-mail, other data that may be required by the Rightsholder to begin providing services.
- 7.4. Information generated during the use of the website, including when, how often and under what conditions the User uses the website.
- 7.5. Information relating to all website services that the User uses, as well as information about transactions that the User makes through the website, paying for the services provided, including the User's payment details.
- 7.6. Any other personal data that the User provides to the Rightsholder when using the website.
8. Use of personal data
The use of personal data provided by the User to the Rightsholder through the website is used for the purpose of:
- 8.1. Website administration.
- 8.2. Personalization of service provision.
- 8.3. Providing access to services available on the Website.
- 8.4. Sending information regarding payment for paid services.
- 8.5. Sending marketing communications to the User.
- 8.6. Sending electronic informational messages if the User subscribed (the User may unsubscribe at any time).
- 8.7. Sending the User marketing communications related to the website or business of third parties that, in the opinion of the Rightsholder, may be of interest to the User.
- 8.8. Providing third parties (specialists engaged by the Rightsholder to provide services to the User) with information provided by the User to provide services on the website (advice, interpretation of online tarot card spreads).
- 8.9. Handling requests and complaints sent by the User regarding the operation of the website.
- 8.10. Ensuring website security and preventing fraud.
- 8.11. Checking compliance with the terms and conditions governing the use of the website.
- 8.12. Other uses.
The User may at any time terminate the use of the website services and request the deletion of his/her registration data. The withdrawal of consent by the User does not affect the lawfulness of the processing of personal data that was based on the User's consent prior to its withdrawal.
9. International data transfer.
- 9.1. Information that the Rightsholder collects may be stored, processed and transferred between any of the countries, including the countries of the European Economic Area, and those in which the Rightsholder operates, in order to allow the information to be used in accordance with this policy.
- 9.2. The information collected by the Rightsholder may be transferred to countries that have an adequate level of protection of personal data equivalent to that in force in the European Economic Area. Member States of the European Economic Area, as well as states that have signed the Council of Europe Convention for the Protection of Individuals with regard to Automatic Processing of Personal Data, are recognized as ensuring an adequate level of protection of personal data.
- 9.3. The User hereby provides informed consent to the transfer and processing by the Rightsholder of the User's personal data in accordance with the purpose of using this data, which is specified in this Policy.
10. Retention of personal data.
- 10.1. The Rightsholder is obliged to comply with legal obligations regarding the retention and deletion of personal data.
- 10.2. Personal data that the Rights Holder processes for any purposes provided for in this Policy may be stored after providing services to the User on the website.
- 10.3. User data must be deleted immediately upon the User's request, which is sent in an electronic message to the website administrator.
- 10.4. Notwithstanding the provisions of this section regarding the deletion of personal data, the Rightsholder will retain certain information containing personal data:
- 10.4.1. to the extent that the Rightsholder is required to do so in accordance with the legislation on personal data protection and the GDPR Regulation;
- 10.4.2. if the Rights Holder believes that this information may be relevant to any current or future legal proceedings or criminal proceedings;
- 10.4.3. to establish, exercise or defend the Rightsholder 's legal rights (including providing other information to prevent fraud and reduce financial risk).
11. Security of the User's personal data.
- 11.1. The Rights Holder will take reasonable technical and organizational precautions to prevent the loss, misuse or alteration of the User's personal data.
- 11.2. The Rights Holder will store all personal data of the User on the Rights Holder's secure (password-protected and firewall-protected) servers.
- 11.3. All electronic financial transactions made through the website will be protected by encryption technology or otherwise.
- 11.4. The User acknowledges that the transmission of information (data) via the Internet is inherently dangerous, and the Rightsholder cannot guarantee the security of information (data) sent via the Internet.
- 11.5. The User is responsible for keeping the passwords he uses to access the website, to carry out financial transactions, etc.
12. Final provisions
- 12.1. Right to change this Policy. The User agrees with the Rightsholder's right, at its sole discretion, to change, add or delete the terms of this Policy in part or in whole at any time now or in the future. Such changes must comply with the provisions of the legislation on personal data protection and the GDPR Regulation. Continued use of the services on the website after notification of any such changes, additions or deletions indicates that the User acknowledges such changes, additions or deletions and agrees to consider them binding for proper performance.
- 12.2. Compensation for damages. If the Rightsholder or the User, as a result of improper fulfilment of the terms of this Policy, cause harm to each other, such damages, moral damage, and damage to business reputation shall be compensated in accordance with the law.
- 12.3. Geographical restrictions. The law of a particular country or due to technical restrictions in force in a particular country in which the User is located may impose restrictions on access to the services provided on the website. The Rightsholder is not responsible for such restrictions.