Skip to content

Last updated · 24 May 2026

Privacy policy

This policy explains what personal data WowAstro collects, why we collect it, where it lives, who we share it with, and what rights you have. It's written in plain English; if anything is unclear, email us at [email protected] and we'll explain.

1. Who we are

WowAstro (wowastro.com) is operated by Sento Group LLP, a limited-liability partnership registered in the Republic of Kazakhstan under Business Identification Number (BIN) 230440014536, with its registered office at 193B Karasai Batyr Street, Almalinsky District, Almaty 050008, Republic of Kazakhstan. Sento Group LLP is the data controller for the personal information collected through wowastro.com. Full company details, including how to contact us about your data, are on our /contact page.

2. What we collect

Account data: your email address, name (if you provide one), and a hashed password (only if you sign up with email + password — not used for Google or magic-link sign-in).

Birth data: the date, time and city of birth you enter for each reading. This is what makes your reading personal; without it we cannot compute your chart.

Purchase data: the readings you've ordered, what tier, when. Payment card details are NEVER stored by us — payments are processed by Dodo Payments Inc. (our Merchant of Record), and we only receive a transaction reference.

Technical data: IP address and basic request metadata, kept for short-term security and abuse prevention. No advertising trackers, no analytics fingerprinting.

3. Why we use it (legal basis under UK GDPR / GDPR)

Contract: to deliver the reading you've paid for. This covers your birth data, purchase history, and email used for delivery.

Legitimate interests: to keep the service secure (logs, abuse detection) and to send you essential transactional emails about your account or reading.

Consent: for any marketing email, which we send only if you opt in separately. The cookie banner only covers essential cookies — no analytics or marketing trackers run without explicit consent.

4. Where your data lives

All personal data is stored in the European Union. Specifically:

• Database: Neon (Postgres), Frankfurt region (AWS eu-central-1) • Hosting: Vercel, Frankfurt region (fra1) • File storage: Cloudflare R2, Western Europe (WEUR) • Transactional email: Resend, Dublin region • Payment processing: Dodo Payments Inc. (Delaware, USA — see section 8 on international transfers) • AI generation: DeepSeek API, with prompt content limited to the astrological data needed for the reading (no email or name passed to the model)

When we send your birth data to the AI generation service, we strip personally identifying information first — the model receives chart coordinates and your first name only.

5. How long we keep it

Account + readings: for as long as your account is active. You can delete your account at any time from /dashboard, which removes all your readings, birth data and personal details within 30 days.

Purchase records: 7 years after the purchase date, for tax and legal compliance (this is a regulatory requirement; we can't shorten it).

Logs: 30 days, then rotated out.

Marketing consent: until you withdraw it (every marketing email contains an unsubscribe link).

6. Your rights

Under UK GDPR and GDPR you have the right to:

• Access — get a copy of the personal data we hold about you. • Correct — fix anything that's wrong. • Delete — have your account and all associated personal data erased (except purchase records we're legally required to keep). • Portability — receive your data in a machine-readable format and move it elsewhere. • Object — to certain kinds of processing. • Withdraw consent — for any processing based on consent (e.g. marketing).

To exercise any of these rights, email [email protected]. We'll respond within 30 days. For most rights, we can act within 48 hours; the longer window is the regulatory ceiling.

7. Sub-processors

We use the following sub-processors to run WowAstro. Each is bound by a Data Processing Agreement and processes your data only on our instructions:

• Neon Inc. — database hosting (EU) • Vercel Inc. — application hosting (EU region) • Cloudflare Inc. — CDN, file storage (EU region) • Resend Inc. — transactional email (EU region) • Dodo Payments Inc. — payment processing and Merchant of Record (Delaware, USA) • DeepSeek (Hangzhou DeepSeek Artificial Intelligence Co., Ltd.) — AI text generation (chart data passed without name or email)

This list may change. We'll update this page when it does.

8. International transfers

Most of your data stays within the European Union. Two transfers happen outside the EU:

• Dodo Payments Inc. (USA) — processes your payment, the transaction reference, and the email address used for the receipt. Transfers to Dodo rely on EU Standard Contractual Clauses (the UK Addendum for UK-originating data) plus PCI-DSS controls on the payment data itself.

• DeepSeek (Hangzhou DeepSeek Artificial Intelligence Co., Ltd., People's Republic of China) — processes the astrological prompts used to generate your reading. We apply EU Standard Contractual Clauses and pass only pseudonymised chart data (first name + planetary coordinates), never your email address, full name or birth city.

• Sento Group LLP (Kazakhstan) — as data controller, has access to your account data for support and account-management purposes. Transfers to Kazakhstan rely on the EU Standard Contractual Clauses and additional contractual safeguards.

You can request a copy of the SCCs at [email protected].

9. Children

WowAstro is intended for adults (18+). We don't knowingly collect personal data from anyone under 18. If you believe someone under 18 has signed up, email [email protected] and we'll delete the account. This aligns with our terms of service and reflects the fact that astrological readings often touch on adult themes (relationships, money, life direction).

10. Changes to this policy

If we materially change how we handle your data, we'll update this page and — for active users — email you the summary before the change takes effect. The 'last updated' date at the top reflects the most recent revision.

Questions or complaints

Email us at [email protected]. If you're in the UK or EU and aren't satisfied with our response, you have the right to complain to your local data protection authority — for UK readers, that's the Information Commissioner's Office.