1. Who We Are & Scope
This Privacy Policy explains how TallBreeze Technologies LLC (“veas”, “we”, “us”) collects, uses, discloses, and protects information when you use the veas mobile apps, web app, and related services (together, the “Service”). For the purposes of the EU and UK General Data Protection Regulation, TallBreeze Technologies LLC is the controller of personal data processed through the Service.
The Service is offered globally, including to users in the United States, the European Economic Area, the United Kingdom, and elsewhere.
veas is built around personalized astrology features, account management, chat, and subscription functionality. Some of the information you provide to use the Service, including your exact birth date, birth time, and place of birth, is treated as sensitive personal information under the California Privacy Rights Act (CPRA) and may constitute special-category data under the GDPR/UK GDPR.
We do not sell personal information and do not share personal information for cross-context behavioral advertising.
2. Information We Collect
Account and sign-in information - your name, email address, password for email login, and the identity data we receive if you choose Sign in with Apple or Google Sign-In, such as your name, email, and provider account identifiers or authentication tokens.
Profile and chart data - your date of birth, exact birth time, place of birth, time-zone offset, gender, latitude/longitude derived from your submitted place of birth, chart identifiers, generated chart summaries, and related preferences. Birth date, exact birth time, and birth place are treated as sensitive personal information.
Chat, feedback, and support content - messages you send through veas, feedback you submit, questions sent to support, and related records.
Subscription information - your subscription tier, entitlement status, renewal or expiration dates, app-store or web-billing platform identifiers, and the customer/transaction identifiers issued by Apple, Google, RevenueCat, or Paddle. We do not store your full payment card details.
Device, browser, and usage data - technical and log information such as device type, operating system, browser or app version, IP-based request metadata, timestamps, and similar service diagnostics.
3. How We Use Your Information & Legal Bases
We use the information described above for the following purposes. The corresponding legal basis under the GDPR/UK GDPR is shown in parentheses.
Create and manage your account and authenticate you securely (performance of a contract).
Generate astrology charts, summaries, and personalized features (performance of a contract; where sensitive data is involved, your explicit consent given when you submit birth details).
Operate chat and AI-powered response features (performance of a contract).
Process subscriptions, entitlements, renewals, refunds, and support requests (performance of a contract; legal obligation for tax/billing records).
Troubleshoot issues, monitor reliability, prevent abuse, and protect the Service (legitimate interests in operating a secure service).
Comply with legal obligations and respond to lawful requests (legal obligation).
4. Sub-processors & Data Sharing
We share information with the following categories of service providers as reasonably necessary to operate the Service. Each operates under contractual confidentiality and data-processing obligations, and many process data on our behalf as sub-processors.
Identity & mobile billing - Apple (Sign in with Apple, App Store billing) and Google (Google Sign-In, Google Play billing).
Web billing - Paddle.com Market Ltd. acts as the merchant of record for web purchases and processes payments, taxes, and refunds for Premium subscriptions sold on the web.
Subscription management - RevenueCat manages subscription status and entitlements across platforms on our behalf.
AI inference - OpenAI is used via its standard paid API to generate chat responses, chart summaries, and related content. We send only the information reasonably necessary to fulfill the requested feature, and under that API your prompts and responses are not used to train their models.
Hosting & database - Vercel hosts the web application and Neon (Postgres) stores application data.
We may also disclose information if required by law, to protect rights and safety, or in connection with a merger, acquisition, financing, or other business transaction.
5. AI Processing
veas uses third-party AI services to help generate chat responses, chart summaries, and related personalized content. The prompts and context we send may include chart details, messages you submit, and account-linked context needed to answer your request.
We use the standard paid OpenAI API. Under that API, your prompts and the model responses are not used to train the provider's models. The provider may temporarily retain content for abuse monitoring as described in their own policies.
We send only the information reasonably necessary for the requested feature.
6. Device Permissions & Features
If you choose Sign in with Apple, Apple may provide us with your name and email address. If you choose Google Sign-In, Google may provide us with basic account identity information for login.
veas currently does not request access to your camera, microphone, photo library, contacts, HealthKit data, or precise device GPS location.
We use place-of-birth information only when you enter it for astrology functionality. We do not use background or real-time device location tracking to generate your chart.
If we introduce new device permissions in the future, we will request them through the relevant platform prompt and update this Privacy Policy.
7. Cookies, Local Storage, & Web Sessions
On the web experience, we may use cookies, local storage, and similar technologies to keep you signed in, remember session preferences, and protect the Service. We do not use third-party ad trackers in veas.
When you check out for a web subscription, the Paddle checkout may set its own cookies needed to complete the purchase. Those cookies are governed by Paddle's privacy notice.
You can manage browser cookies through your browser settings, but doing so may affect login or other features.
8. Security & Retention
We use reasonable administrative, technical, and organizational safeguards designed to protect personal information. No internet or storage system is completely secure, so we cannot guarantee absolute security.
We aim to keep retention tight. Indicative retention periods:
Account, profile, chart, chat, feedback - retained while your account is active and deleted from our active systems immediately upon a verified account-deletion request.
Subscription, billing & tax records - retained for approximately 7 years to meet tax, accounting, and audit obligations, including records held by Apple, Google, RevenueCat, and Paddle in their own systems.
Operational logs & diagnostics - typically retained for 30 to 90 days.
Backups - rolling backups are kept for approximately 90 days; data removed from active systems is overwritten as backups roll.
9. Your Choices & Rights (GDPR / UK GDPR)
If you are in the European Economic Area, the United Kingdom, or another jurisdiction that applies similar protections, you have the right to: access your personal data, request correction, request erasure, restrict or object to certain processing, request portability, and withdraw any consent you have given (without affecting the lawfulness of processing based on consent before its withdrawal).
You also have the right to lodge a complaint with your local data-protection authority. EEA users can find their authority via the European Data Protection Board; UK users can contact the Information Commissioner's Office (ICO).
To exercise any of these rights, email business@veasai.com from the email address on your account. We may take reasonable steps to verify your identity before acting on a request.
TallBreeze Technologies LLC has not appointed an EU representative under Article 27 GDPR at this time. EU/UK users can reach us at the email above for any privacy questions.
10. Your Choices & Rights (California / CCPA & CPRA)
If you are a California resident, you have the following rights under the CCPA, as amended by the CPRA:
The right to know what categories of personal information we have collected and the categories of sources, purposes, and third parties involved.
The right to request deletion of your personal information.
The right to correct inaccurate personal information.
The right to data portability (a copy of your personal information in a usable format).
The right to opt out of the sale or sharing of personal information. We do not sell personal information and do not share personal information for cross-context behavioral advertising.
The right to limit the use and disclosure of sensitive personal information. We use sensitive personal information (your birth date, exact birth time, and place of birth) only to provide the astrology features you have asked for and for the directly related business purposes permitted by the CPRA. We do not use it for inferring characteristics outside of those purposes.
The right to non-discrimination for exercising your privacy rights.
California residents may also request information regarding disclosures of personal information for direct marketing purposes under California Civil Code § 1798.83 (“Shine the Light”). We do not disclose personal information to third parties for their direct marketing purposes.
Categories of personal information we collect: identifiers, customer records, internet or other network activity information, geolocation derived from your submitted place of birth, and sensitive personal information as described above.
To submit a verifiable consumer request, email business@veasai.com.
11. Account Deletion
You can delete your veas account directly from inside the iOS and Android apps. From the app, go to your profile or settings screen and choose “Delete Account.”
When we receive a verified deletion request, we delete your account, profile, chart, chat, and feedback data from our active systems immediately. Subscription, billing, and tax records are retained as described in section 8 to meet legal obligations, and Apple, Google, RevenueCat, and Paddle keep their own records under their policies.
If you cannot access the in-app deletion option, email business@veasai.com from your account email and we will process the deletion.
12. Children's Privacy
The Service is not directed to children under 13, and we do not knowingly collect personal information from children under 13 in the United States, in accordance with the Children's Online Privacy Protection Act (COPPA). In jurisdictions that set a higher digital-consent age (for example, 16 in some EU member states), the Service is not directed to users below that age. If you are a parent or guardian and believe your child has provided us personal information, contact us at business@veasai.com so we can investigate and take appropriate action.
13. International Data Transfers
We are based in the United States and may process information in the United States and other jurisdictions where we or our sub-processors operate.
Where personal data is transferred from the EEA, the UK, or Switzerland to the United States or other countries, we rely on appropriate safeguards, including the European Commission's Standard Contractual Clauses and the UK International Data Transfer Addendum, as applicable, as part of our agreements with sub-processors.
By using the Service, you understand that your information may be transferred to countries that may have data-protection rules different from those in your home jurisdiction.
14. Changes to This Policy
We may update this Privacy Policy from time to time. If we make material changes, we will revise the date above and may also provide notice through the Service or by other appropriate means. Your continued use of the Service after the updated policy becomes effective means the updated policy will apply going forward.
15. Contact & Requests
For privacy questions, data-subject requests, or EU/UK enquiries, reach out to business@veasai.com. Postal address: TallBreeze Technologies LLC, 1005 E 8th St, Tempe AZ 85281, United States.