Rebel Spirit Tarot logo

Privacy Policy

for Rebel Spirit Tarot
Last updated: July 21, 2026

Rebel Spirit Tarot is a tarot reading, journaling, and astrology application operated by Rebel Spirit LLC (“we”, “us”, or “our”). By default, everything you create stays on your device. For subscribers who want it, the App also offers an optional, encrypted cloud sync so you can back up your content, restore it on a new device, and keep your devices in sync. This Privacy Policy explains how we handle your information when you use our mobile application (the “App”).

By using the App, you agree to the practices described in this Privacy Policy. If you do not agree, please do not use the App.

At a glance
  • No account is required. Readings, journaling, and astrology all work without signing in.
  • By default, your readings, journal, birth data, and settings are stored only on your device. We never receive them.
  • Cloud sync is optional and available to subscribers. When you turn it on, your birth data and saved profiles are encrypted on your device with a key only you hold, so our servers cannot read them. End-to-end encryption for your readings and journal is rolling out; until it reaches your account they are encrypted in transit and at rest, but not yet end-to-end encrypted (see Section 6).
  • To use cloud sync you create an account with an email address and password, so we hold a basic account record. We cannot read your birth data; your readings and journal are not yet end-to-end encrypted.
  • The only other information that leaves your device is purchase information (handled by Apple or Google and our billing provider, RevenueCat) and the place name you type when looking up a birth location (sent to a map service to find its coordinates).
  • You can export all of your data, turn cloud sync off, or delete your account at any time, from inside the App.

1. Who we are & how to contact us

Controller: Rebel Spirit LLC

Email: rachael@rebelspirit.app

If you have questions about this Privacy Policy or our data practices, you can contact us at rachael@rebelspirit.app.

2. Who can use the App

Rebel Spirit Tarot is intended for adults and is not directed to children under 13. We do not knowingly collect personal information from children. If you believe a child has provided us with personal information, please contact us so we can delete it.

The App does not require you to create an account. You can perform readings, keep your journal, and use the astrology features without signing in. Creating an account is needed only if you choose to turn on optional cloud sync (see Section 5).

3. Information stored on your device

By default, the App stores the following information locally on your device. Unless you are a subscriber with cloud sync turned on (Section 6), none of this information is uploaded to our servers.

3.1 Readings & journal entries

When you save a reading or journal entry, the App stores:

  • The spread layout used
  • Cards drawn and their positions (including card IDs and orientation)
  • Timestamp of the reading
  • Optional tags/intent fields (e.g., “career”, “love”)
  • Optional titles, questions, and personal notes you choose to write
  • Optional astrology context attached to an entry (for example, a snapshot of the sky at the time of the entry)

3.2 Birth data & saved profiles (astrology)

To calculate astrological charts, the App allows you to enter and save birth information — for yourself and, optionally, for other people you add as profiles. This may include:

  • Date of birth
  • Time of birth (or a “time unknown” setting)
  • Place of birth (city and its coordinates and timezone)
  • An optional name, pronouns, and relationship label for each profile

This information is sensitive. It is stored on your device and used to compute charts within the App. Chart calculations happen entirely on your device. We never store your birth data in readable form on any server: if you enable cloud sync, your birth data is encrypted on your device before it is uploaded, and we cannot read it (see Section 6).

3.3 Settings & preferences

The App stores preferences on your device, such as:

  • Theme and appearance settings
  • Deck styling and display preferences
  • Astrology display settings (e.g., house system, rulership)
  • Language and other usability preferences
  • Onboarding completion flags

These preferences stay on your device and are not synced to our servers.

3.4 Device-level security

Information stored on your device is protected primarily by your device’s own security features (such as your passcode, biometric lock, or operating-system-level encryption). If someone gains access to your unlocked device or its backup, they may be able to view content stored in the App. You are responsible for maintaining the security of your device.

4. Birth-place lookup

When you type a birth place into the App, the text you type is sent to Nominatim, a geocoding service operated by the OpenStreetMap Foundation, to find the place’s coordinates and timezone. The query contains only the place text you typed — no name, birth date, account identifier, or other profile information is sent with it. Like any internet request, it is accompanied by your device’s IP address and is subject to the OpenStreetMap Foundation’s privacy policy. The lookup happens only when you search for a place; the resulting coordinates are then stored on your device with the rest of your birth data.

5. Accounts

5.1 Anonymous identifier

To honor purchases before you have an account, the App may create an anonymous account identifier (a random internal user ID with no email attached). This identifier lets us associate your subscription and unlocked content with your install so purchases can be validated and restored. It does not include your journal, birth data, or any content you create.

5.2 Creating an account

To use cloud sync, you create an account with an email address and password (passwords are handled by our authentication provider; we never see or store them in readable form). Your account record includes your email address and an internal user ID, and is linked to any purchases previously made under your anonymous identifier so your subscription follows you across devices. We use your email address for sign-in, password reset, and important service messages — not for marketing, unless you separately opt in.

6. Optional cloud sync & end-to-end encryption

Cloud sync is an optional feature for subscribers that lets you back up your content, restore it on a new device, and keep your devices in sync. If you never enable it, the App behaves exactly as described in Section 3 and your content never leaves your device (apart from the purchase information in Section 7 and the place lookups in Section 4).

6.1 What is included

When cloud sync is on, it covers your saved readings and journal entries and your birth data and saved profiles. Settings and preferences (Section 3.3) are not synced. You can turn cloud sync off at any time in the App.

6.2 End-to-end encryption & your recovery code

What end-to-end encryption covers today. End-to-end encryption is fully enabled for your birth data and saved profiles: they are encrypted on your device before upload, and we cannot read them. We are rolling end-to-end encryption out to your readings and journal entries; until that rollout reaches your account, those are stored encrypted in transit (HTTPS) and at rest on our servers, but are not yet end-to-end encrypted, which means our systems are technically able to access their contents. We will update this policy as the rollout completes.

When you set up cloud sync, the App generates an encryption key on your device and encrypts the content it protects with strong, authenticated encryption (AES-256-GCM) before anything is uploaded. That key is protected by a one-time recovery code that we show you once. Only a “wrapped” (encrypted) copy of your key is stored on our servers — it is useless without your recovery code.

We never receive your recovery code, and we cannot reset or recover it for you. If you lose your recovery code and no longer have a device that is already set up, your encrypted data cannot be decrypted — by you or by us. Resetting your account password does not affect your recovery code. Please keep your recovery code somewhere safe.

6.3 What our servers can see

Because your birth data and saved profiles are encrypted on your device before they are uploaded, for that content our servers store only:

  • opaque, encrypted data — which we cannot read;
  • limited technical metadata, such as record identifiers, timestamps, and deletion markers, used to sync your devices; and
  • your account record (described in Section 5).

We cannot read your birth data or saved profiles on our servers. Your readings and journal entries are not yet end-to-end encrypted (see Section 6.2): they are stored encrypted in transit and at rest, but our systems are currently able to access their contents, and we will only be unable to read them once the end-to-end encryption rollout reaches your account. When you delete an entry, the deletion syncs as a marker that replaces the entry’s stored content.

7. Purchases, subscriptions & unlocks

We use RevenueCat together with the Apple App Store and Google Play Store to manage in-app purchases and subscriptions.

From these services, we and/or RevenueCat receive:

  • Product identifiers (e.g., subscription tier IDs)
  • Subscription status (active, in grace period, cancelled, expired)
  • Purchase timestamps and renewal dates
  • Transaction identifiers and purchase receipts (used to validate your purchases and prevent fraud)
  • A RevenueCat App User ID for your install of the App, used to recognize and restore your purchases. This is linked to your internal user ID (anonymous or account) so your subscription follows you across your devices.

In our own backend, we also maintain:

  • Your subscription tier
  • Records of unlocked content (e.g., unlocked card backs or other unlockable items) and any credits balance

These purchase records are not end-to-end encrypted, because our servers must be able to read them to grant you what you paid for. We do not collect or store your full payment card number, security code, or bank account details. Payments are processed by Apple or Google.

8. Diagnostics & analytics

The App does not include third-party analytics, advertising, or tracking SDKs. We may receive aggregated, non-identifying statistics (such as install counts and crash summaries) from the Apple App Store and Google Play, according to your device’s own settings.

We do not use your journal, readings, birth data, or any content you create in the App for advertising, profiling, or to train AI models. We do not sell your personal information.

9. How we use your information

We use the limited information we do receive to:

  1. Provide and maintain the App and its features
  2. Store and sync your encrypted content across your devices, when you enable cloud sync
  3. Validate and restore your purchases through Apple/Google and RevenueCat, and track your subscription tier and unlocked content
  4. Send important service-related messages (e.g., password reset emails, material changes to this policy)
  5. Respond to support inquiries
  6. Comply with legal obligations

10. Legal bases for processing (EEA/UK users)

If you are located in the European Economic Area or the United Kingdom, we process the limited personal data described above on the following legal bases:

  • Contract: To provide the App, to operate cloud sync when you enable it, and to deliver, validate, and restore purchases.
  • Consent: Where required, for optional features you actively turn on, such as cloud sync. You can withdraw consent at any time by turning the feature off or deleting your account.
  • Legitimate interests: To prevent fraud, maintain security, and keep the App stable.
  • Legal obligation: To comply with tax, accounting, and consumer-protection laws.

11. How we share information

We share the limited information described above with:

  1. Service providers
    • Firebase / Google Cloud — provides the authentication and cloud-storage backend. Your birth data and saved profiles are encrypted on your device first, so for them the backend stores only encrypted content; your readings and journal are stored there too (encrypted in transit and at rest) until the end-to-end encryption rollout reaches your account. The backend also holds sync metadata, your account record, and purchase records.
    • RevenueCat — manages in-app purchases and subscription validation.
    • OpenStreetMap Foundation (Nominatim) — receives the place text you type when you look up a birth place (Section 4).
    • Apple App Store and Google Play Store — process payments and distribute App updates.
  2. Legal and safety purposes
    • To comply with laws or legal processes
    • To respond to lawful requests from authorities
    • To protect our rights, property, or safety, or that of our users or others

We do not sell your personal data. Note that even in response to a lawful request, we cannot produce the readable contents of your end-to-end encrypted content — currently your birth data and saved profiles — because we do not hold the key to decrypt it. Content that is not yet end-to-end encrypted, currently your readings and journal entries, could be produced in readable form if we were legally compelled to do so.

12. Data retention

Because your readings, journal, birth data, and settings are stored on your device, they are retained for as long as the App remains installed. Deleting the App, or clearing its data through your device settings, removes that content from the device.

If you enable cloud sync, your synced content is retained while your account exists. Deleting your account permanently removes your account record, your synced content, and your encryption vault from our servers.

Certain purchase and transaction records are retained in de-identified form after account deletion, as required for tax, accounting, and fraud-prevention purposes (see Section 15). RevenueCat and the App Stores retain purchase records according to their own policies and applicable legal requirements.

13. International data transfers

Our service providers (such as Google, RevenueCat, and Apple) may process information in countries other than your own, including the United States. Where required by law, we and they take steps to ensure that such transfers are subject to appropriate safeguards.

14. Security

We take reasonable measures to protect the limited information we handle, including:

  • End-to-end encrypting your birth data and saved profiles on your device, before upload, so that they are unreadable to us and to our infrastructure providers — with end-to-end encryption for your readings and journal being rolled out (see Section 6.2)
  • Using encryption in transit (HTTPS) for communications with our backend, RevenueCat, and the App Stores
  • Relying on reputable infrastructure providers with encryption at rest and access controls
  • Limiting access to operational data to authorized personnel

No method of transmission or storage is 100% secure. While we work to protect the information we handle, we cannot guarantee absolute security. We also encourage you to use a strong passcode or biometric lock on your device, keep your recovery code safe, and keep your operating system up to date.

15. Your rights & choices

Depending on your location, you may have certain rights regarding your personal information, including access, correction, deletion, restriction, objection, and data portability.

You can exercise these rights directly within the App:

  • Access & portability: Use the export options in the App to download your journal as a CSV file, or export all of your data (journal, birth data, profiles, and customizations) as a readable file. This is available to everyone, free of charge.
  • Correction & deletion: Edit or delete your readings, journal entries, birth data, profiles, and settings at any time, or uninstall the App or clear its data through your device settings.
  • Turn off cloud sync: You can disable cloud sync at any time in the App.
  • Delete your account: You can permanently delete your account from the profile screen in the App, which removes your account record, your encrypted synced content, and your encryption vault from our servers. Certain purchase and transaction records are retained in de-identified form (with your user ID and email removed) as required for tax, accounting, and fraud-prevention purposes.

You can also see our account deletion page for step-by-step instructions, or contact us at rachael@rebelspirit.app and we will assist where possible. For purchase-related records held by RevenueCat or the App Stores, you can manage your subscriptions through your Apple ID or Google Account.

If you are in the EEA or UK, you also have the right to lodge a complaint with your local data protection authority.

16. Children’s privacy

The App is not directed to children under 13. We do not knowingly collect personal information from children under 13. If we learn that a child has provided us with personal information, we will take steps to delete such information promptly.

17. Changes to this Privacy Policy

We may update this Privacy Policy from time to time. When we do, we will:

  • Update the “Last updated” date at the top of this page
  • Provide additional notice within the App if a change is material

Your continued use of the App after the revised policy becomes effective means you accept the updated terms.

18. Contact us

If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, you can contact us at:

Rebel Spirit LLC

Email: rachael@rebelspirit.app

This Privacy Policy is provided for informational purposes and does not constitute legal advice.