Privacy Policy
US privacy notice
This Privacy Policy explains who controls your personal data, why we process it, the legal bases we rely on, how long we keep it, and how you can ask us to delete it. It is written to comply with US federal and state privacy laws — including the California Consumer Privacy Act as amended by the CPRA (together, the "CCPA") and other state consumer-privacy laws such as VCDPA (Virginia), CPA (Colorado), CTDPA (Connecticut) and UCPA (Utah) — and to give equivalent protections to visitors from the EU/UK under the GDPR.
Data controller / business
The data controller (and "business" under the CCPA) is Green Bloom Global LLC, a limited liability company organized under the laws of the State of Delaware, USA, operating Astro Star at www.astrostar.world. Contact for privacy and data-protection requests: support@greenbloomglobal.org · www.greenbloomglobal.org.
Personal data we process
Account data (email, name, mobile number where provided, authentication identifiers), reading inputs (date, time and place of birth, gender, relationship status, focus question), reading outputs and history, billing metadata from Stripe (we never see your full card number), and basic technical data (IP, device, log timestamps) needed to keep the service secure.
Why we process it (purposes)
(a) Provide the service: generate your personalized horoscope readings and maintain your account, credit balance and reading history. (b) Payments: process credit-pack purchases and refunds via Stripe. (c) Support: answer your questions and resolve issues. (d) Security & abuse prevention: detect fraud, abuse and violations of our Terms. (e) Legal & regulatory: comply with applicable US federal and state law and respond to lawful requests. (f) Service improvement: aggregated, non-identifying analytics on how the product is used.
Legal bases
For US users we process your data with your consent (given when creating an account and submitting reading inputs, and which you can withdraw at any time), to perform the contract you have with us to deliver readings and manage your account, on the basis of our legitimate interests in keeping the service secure and improving it, and to comply with our legal obligations. For EU/UK users, the same legal bases apply under Articles 6 and (for birth-detail inputs) 9 of the GDPR; sensitive inputs are processed solely on the basis of your explicit consent and only to generate the reading you requested.
AI processing
Reading inputs are sent to our AI provider to generate your horoscope. We do not sell or share your personal data, and we do not use it to train third-party AI models.
Sharing & subprocessors
We share personal data only with the processors needed to run the service: our cloud hosting and database provider, our AI inference provider, Stripe (payments), and our email/SMS delivery providers for authentication and support. Each processor is bound by confidentiality and data-protection terms and may only process your data on our instructions.
No sale or sharing of personal information
We do not "sell" or "share" personal information as those terms are defined under the CCPA, and we have not done so in the preceding 12 months. We do not use or disclose sensitive personal information (including birth details) for purposes other than providing the readings you request. You can still submit a privacy request at support@greenbloomglobal.org.
International transfers
Astro Star is operated from the United States and some of our processors may store or process data in the US or other countries. For personal data transferred from the EU/UK, we rely on the European Commission's Standard Contractual Clauses (and the UK IDTA where applicable) with our processors, together with supplementary technical and organizational measures, to provide an equivalent level of protection.
Retention
We keep account and reading data for as long as your account is active so you can revisit past readings. If you delete your account, we erase your personal data within 30 days, except for limited records we are required to keep for legal, tax, accounting or fraud-prevention purposes (typically up to 7 years for billing records under US tax rules), after which they are also deleted or fully anonymized.
Your rights
Depending on where you live you may have the right to: (i) know what personal information we hold about you and how we use it; (ii) access and receive a copy of that information; (iii) correct inaccurate information; (iv) delete your personal information; (v) opt out of the sale or sharing of personal information and of profiling that produces legal or similarly significant effects (we do not do either); (vi) limit our use of sensitive personal information; (vii) withdraw any consent you have given; and (viii) not be discriminated against for exercising any of these rights. California residents may also request the categories and specific pieces of personal information collected in the past 12 months. EU/UK residents have equivalent rights under the GDPR, including the right to lodge a complaint with a supervisory authority.
How to request data deletion or exercise rights
You can submit a request at any time in one of three ways: (1) sign in and use the "Delete account" option on the Account page, which removes your profile, reading history and credit balance; (2) email support@greenbloomglobal.org from the address linked to your account with the subject "Privacy request"; or (3) submit a request via the Contact page. We verify the request against your account email, respond within 45 days (extendable where permitted by law), and confirm by email once we've actioned it. Records we are legally required to retain (e.g. billing records for tax purposes) are kept only for the minimum period required and then deleted. You may designate an authorized agent to act on your behalf; we may require verification of that authorization.
Security
We protect your data with encryption in transit, access controls, row-level database security and audit logging. No system is perfectly secure; where required by applicable US state law (e.g. California's data-breach notification statute) or the GDPR, we will notify affected users and regulators of a personal-data breach that creates a material risk to your rights.
Cookies
We use only essential cookies needed to keep you signed in.
Children
Astro Star is not directed to children under 13 and we do not knowingly collect personal information from them, in line with the US Children's Online Privacy Protection Act (COPPA). Users under 18 require parental consent.
Updates
We'll post changes here and update the date below.
Governing law
This Privacy Policy is governed by the laws of the State of Delaware, USA, without regard to its conflict-of-laws principles. Any dispute relating to your personal data will be subject to the exclusive jurisdiction of the state and federal courts located in Delaware, USA, without prejudice to any non-waivable rights you have under your local law.
Contact
Privacy questions: support@greenbloomglobal.org — Green Bloom Global LLC, Delaware, USA.
Operated by Green Bloom Global LLC, Delaware, USA · Last updated: 8/11/2026
