Legal
Privacy Policy
Effective and last updated: August 1, 2026
Stellica (the "Service") respects users' privacy and endeavors to protect personal information. This Privacy Policy (the "Policy") explains the information the Service collects, the purposes for which it is used, and how it is protected. Agreement to this Policy is separate from your choices about optional analytics. For access from Japan, Google Analytics 4 and Microsoft Clarity are enabled by default and a small notice is displayed. You may disable either service independently at any time. For access from outside Japan, or when the region cannot be determined, neither service is enabled until you explicitly allow it.
1. Information We Collect
The Service collects the following information.
(1) Information you provide
- Email address (when registering an account)
- Name or nickname
- Date of birth, time of birth, and place of birth (used for divination readings)
- Generated and saved AI divination interpretations
- Messages entered in consultation chat, conversation summaries, and AI responses
- Hand images uploaded for palm readings, extracted features, and reading results
- Checklist selections, type of residence, and reading theme selected in the Feng Shui structured beta
- Reports concerning AI output or public content (including reasons, optional comments, target IDs, and content snapshots)
- Registration information provided as a fortune teller (including profile and self-introduction)
(2) Information collected automatically
- IP address, browser information, and access logs
- Cookies and session information
- Service usage (pages viewed and interaction history)
2. How We Use Information
We use the information we collect for the following purposes.
- Providing divination readings and integrated AI interpretations
- Creating, managing, and authenticating accounts
- Saving and displaying reading results on the user dashboard
- Generating consultation chat responses, managing credits, and displaying conversation history
- Analyzing palm images, extracting features, and generating reading text and full reading reports
- Generating results from checklist input in the Feng Shui structured beta
- Processing paid-content payments, managing subscriptions, and handling refunds and billing
- Receiving reports about AI output and user-generated content, reviewing content, restricting display, and taking other operational measures
- Improving the Service and developing new features
- Sending important notices and Service updates
- Preventing misuse and maintaining security
- Providing customer support
3. Disclosure to Third Parties
The Service does not disclose users' personal information to third parties except in the following cases.
- When the user has consented
- When required by law
- When necessary to protect a person's life, body, or property
- When information is provided to service providers (see "External Services We Use" below)
4. External Services We Use
The Service uses the following external services, and data may be transmitted to them.
User authentication, database, and storage (storage of birth information, AI interpretation results, consultation history, palm images, payment status, and related data)
View privacy policy →Usage analytics based on regional defaults and user choices (including page views, actions, purchases, renewals, plan changes, and refunds)
View privacy policy →Analysis of interaction patterns, heatmaps, and session recordings based on regional defaults and user choices, limited to approved public pages
View privacy policy →Generating integrated AI divination interpretations, combined readings, consultation chat responses, and palm-feature extraction and summaries (including transmission of chart data, reading results, consultation text, palm images or features, and related data)
View privacy policy →Generating normal and deep responses for the new consultation-chat route (including transmission of consultation text and the diagnosis summary needed for the response)
View privacy policy →Generating full palm-reading reports, two-hand comparison reports, integrated reports, and related content (including transmission of palm images or features, reading results, and information needed to generate reading text)
View privacy policy →Processing paid-content payments, managing subscriptions, and handling refunds and billing
View privacy policy →Sending email (registration confirmations and notification emails)
View privacy policy →Information sent to external AI services is limited to what is necessary to generate output for each feature. We do not intentionally attach names or email addresses when sending information to external AI services, but information a user enters in consultation text or that appears in an image may be included in what is transmitted.
For the new consultation-chat route, inputs and outputs sent to the OpenAI API may be retained for up to 30 days under its standard terms. Longer retention may exceptionally apply for legal obligations, abuse prevention, or safety. This notice does not apply to the existing Google Gemini route.
Stellica does not separately persist raw AI request or response bodies in operational logs. Requests from the consultation chat to OpenAI use store=false. Messages and responses saved as consultation history within Stellica are handled under the retention rules below.
5. Use of Cookies
(1) Cookies required to provide the Service
The Service uses cookies and similar technologies that are required to manage sessions, maintain authentication status, and provide core features. It also uses non-identifying preference cookies (stellica_analytics_granted and stellica_analytics_denied) for up to one year to verify the analytics choice and keep a decline or withdrawal authoritative over a stale grant after reload. If cookie writes are restricted, a non-identifying denial preference is kept in session storage until you close that tab. We attempt to remove these denial preferences if you later allow analytics again. If you disable these cookies in your browser, some features may not function correctly.
(2) Google Analytics 4 (optional)
Stellica uses Google Analytics 4 (GA4) to understand use of the Service and improve features, navigation, and paid plans. For access from Japan, GA4 is enabled by default and a small notice is displayed. For access from outside Japan, or when the region cannot be determined, we do not load Google Tag Manager or GA4, connect to Google, set analytics cookies, or send analytics events until you explicitly allow GA4 on this browser.
- Information sent by the browser: GA4 client and session identifiers; analytics cookies such as
_gaand_ga_*; pages viewed, page titles, referrers, clicks and other action events; and device and browser information. Google may also receive an IP address when a connection is made. - Information sent by the server: For a signed-in user who has GA4 enabled, we may send purchase, subscription renewal, plan change, and refund events, together with transaction, item, plan, value, and currency information.
- Account identifiers: Stellica does not send your Stellica account ID or Supabase UUID as a GA4
user_id. Server events are associated using the GA4 client and session identifiers obtained after consent. - International transfer: This information is sent to Google LLC and its processors and may be processed in the United States and other countries or regions.
As of this Policy's effective date, the configured GA4 Admin retention settings are event data: two months; user data: fourteen months, with user-data retention reset on new activity enabled. Aggregated reports may be retained longer. We will reflect material configuration changes in this Policy.
You may enable or disable GA4 and Clarity independently on each browser. After closing the notice, you can reopen the settings from "Privacy settings" and change either choice at any time. When you are signed in, your GA4 choice is also recorded on your account to control server-side payment events. Disabling GA4 applies immediately in the browser and clears known GA cookies. If GA4 was already loaded, the page reloads to unload it. If recording the disabled state on your account fails, the browser keeps a pending retry until the server acknowledges it.
For access from outside Japan, or when the region cannot be determined, we treat GA4 as disabled unless there is an explicit grant for the current consent version. Previously stored analytics identifiers or other usage records are not treated as permission.
Analytics preferences
Initial settings depend on your region. Use “Privacy settings” at the bottom right to change GA4 and Clarity independently, or use the controls below to allow or decline both.
Not selected on this browser
(3) Microsoft Clarity (optional)
Stellica uses Microsoft Clarity to improve the usability of public pages and SEO journeys. For access from Japan, Clarity is enabled by default and a small notice is displayed. For access from outside Japan, or when the region cannot be determined, we do not connect to Clarity until you explicitly allow it on this browser. When enabled, the Clarity tag loads only on approved public pages. It does not load on authentication, account, administration, diagnosis, reading-result, consultation, payment, invitation, sharing, or unclassified new pages.
- Information sent: Clicks, scrolling, navigation, rendered layout, page URL and referrer, and device and browser information. Microsoft may also receive an IP address when a connection is made.
- Masking: The project uses strict masking, which masks page text and images. Input and drop-down content is not transmitted.
- Identification: We do not use Clarity's Identify API or send Stellica account IDs, names, email addresses, or birth information as identifiers. Ad storage is always denied.
- International transfer: This information is sent to Microsoft Corporation and its processors and may be processed in the United States and other countries or regions.
You may disable Clarity independently from GA4 at any time. Disabling it stops Clarity recording and removes known Clarity cookies. For access from outside Japan, or when the region cannot be determined, we do not connect to Clarity or switch to cookieless recording before explicit permission.
6. Data Retention Periods
- Account information and reading results: retained until the account is deleted
- Access logs: retained for up to 90 days
- Google Analytics 4: event data for two months and user data for fourteen months under the settings in effect on the effective date. Aggregated reports may be retained longer.
- Microsoft Clarity: session recordings are normally retained for 30 days. Certain sampled recordings and recordings saved as favorites or with labels may be retained for up to nine months. Aggregated heatmap and click data are retained for nine months.
- Data after account cancellation: deleted or anonymized within 30 days after receiving the cancellation request, after identifying records that must be retained for payments, billing, or related purposes
- Consultation chats and AI reading results stored in Stellica: retained until the account is deleted or the user deletes them. For external processing on the new consultation-chat route, OpenAI API inputs and outputs may be retained for up to 30 days under its standard terms, except where longer retention is required for legal compliance, abuse prevention, or safety. This notice does not apply to the existing Google Gemini route.
- Report-response records: retained for as long as necessary for support, fraud prevention, and legal compliance
- Palm images: permanently deleted 30 days after the reading or when the user deletes them
6-2. Special Handling of Palm Images
Images uploaded for palm readings (photographs of the palms) are handled as follows in accordance with Article 22 of Japan's Act on the Protection of Personal Information (APPI).
- Consent: Consent to retaining the images is required. The reading cannot begin if you do not consent.
- Data stored: Original right- and left-hand images, cropped palm images for analysis, extracted features, reading text, and overlay information
- Retention period: 30 days after the reading, or until the user deletes the data
- Purpose: Only to generate the reading result and allow the user to review their own previous reading results
- External transmission: Palm images, cropped images, features, and information needed to generate reading text may be sent to the Google Gemini API or Anthropic API for feature extraction, reading-text generation, and full-report generation.
- Third-party disclosure: Except for transmission to the service providers described above, we do not sell, publish, or share palm images.
- Deletion timing: Automatically deleted when the user selects "Delete this reading" on the result screen or in reading history, or after 30 days
- Sharing: Social-media sharing features do not include photographed images or palm-line data.
6-3. Handling of the Feng Shui Structured Beta
In the public beta of the Feng Shui reading, users enter information by selecting items describing the condition of their home, which are matched against fixed rules and prewritten reading text. We do not upload images, ask for an address, or automatically obtain location information. We also do not use map images or transmit information to external AI services.
The reading result stores the selected checklist items, type of residence, reading theme, result text, and purchase status. Room photographs, floor plans, map images, addresses, latitude, and longitude are not stored.
6-4. Use of Data for Machine Learning (Optional Consent)
In the future, to improve the accuracy of palm readings, the Service may reuse palm images and feature data that have been anonymized (with identifying characteristics removed) as training data for its own models. This use is based on optional consent, and users choose whether to consent through a checkbox when starting a reading.
How to withdraw consent: To withdraw consent to machine-learning use, delete the relevant reading result by selecting "Delete this reading" on the result screen. Deletion permanently removes all data, including images in Storage and features and reading text in the database, and excludes that data from subsequent machine-learning use.
6-5. Handling of Report Data
The Service provides channels for reporting problematic content in AI reading results, consultation chat responses, palm readings, fortune-teller profiles, landing pages, services, and reviews. When a report is submitted, the target ID, reason, optional comment, reference URL, content snapshot, logged-in user ID, and related information are stored as a support record. This information is used to review content, respond to inquiries, prevent misuse, and make operational decisions such as restricting display.
7. Your Rights
Users have the following rights.
- Request disclosure: The right to request disclosure of personal information we hold
- Correction or deletion: The right to request correction of inaccurate information or deletion
- Suspension of use: The right to request that use of personal information be suspended
- Account cancellation: The right to initiate a request from the user dashboard to delete the account and applicable data
You can request account cancellation and deletion from "Account Cancellation / Delete Account" in the user dashboard. For disclosure, correction, suspension of use, or other requests, contact us using the details below.
8. Use by Minors
The Service is not intended for use by children under 13. If a child under 13 provides personal information, we will delete it promptly after becoming aware of it.
9. Security
The Service implements appropriate technical and organizational safeguards to prevent unauthorized access to, loss, destruction, alteration, or leakage of personal information. However, we do not guarantee complete security over the internet.
10. Changes to This Policy
This Policy may be changed as necessary. We will provide notice within the Service or by email if there is a material change. A Policy change or continued use of the Service alone does not change your saved individual settings or constitute consent to analytics where explicit permission is required.
11. Contact Us
For questions about this Policy, contact us at:
Stellica株式会社
Email: info@stellica.jp