Privacy Policy

Last updated · 15 September 2026

This Privacy Policy explains what personal data Zodivia (zodivia.com) collects when you visit or create an account on this site, why we process it, how long we keep it, and the rights you have over it. By using the site you accept the practices described here.

1. Who we are

Zodivia, published at zodivia.com, is an independent astrology publication offering horoscope readings, celestial news and personal astrology content. It is run by a private individual rather than a registered company.

The data controller for the processing described in this policy is Kadir Güler, the private individual who operates the publication. For any question about this policy, or to exercise your rights over your data, write to [email protected]; requests are handled through that address.

2. Data we collect

We keep data collection to the minimum needed to run the site. Depending on how you use Zodivia, we may process the following categories:

  • Account data — the name, e-mail address and password you supply when registering. Passwords are never stored in readable form; only a one-way bcrypt hash is kept.
  • Profile data — any optional detail you add yourself, such as your zodiac sign or date of birth, used to personalise the readings shown to you.
  • Technical data — IP address, browser type and version, operating system, referring page and the language preference read from your URL.
  • Usage data — the pages you open and the time of the visit, recorded in server logs so we can diagnose faults and detect abuse.
  • Correspondence — the name, email address and message text you provide when you write to us through the contact form, together with our replies. Messages from the form are stored so that they can be answered.
  • Newsletter subscription — the email address you give when subscribing, the date you confirmed it and your preferred language. Subscription is double opt-in: nothing is added to the list until you click the link sent to your address.

3. Why we process your data

We only process personal data where we have a lawful basis to do so:

  • To provide the service — creating and maintaining your account, keeping you signed in, and showing content matched to your sign and chosen language. Basis: performance of a contract.
  • To keep the site secure — detecting abuse, brute-force sign-in attempts and technical faults. Basis: legitimate interest.
  • To answer your requests — responding to support messages and to requests about your data. Basis: legitimate interest and legal obligation.
  • To send the newsletter — to deliver the weekly sky dispatch if you subscribed. Basis: your explicit consent. You can withdraw it at any time, without giving a reason, using the link in every email.
  • To meet legal duties — retaining records where accounting, tax or telecommunications law requires it. Basis: legal obligation.

We do not sell your personal data, and we do not use it for automated decision-making that has a legal effect on you.

4. Cookies and similar technologies

Zodivia uses a small number of strictly necessary cookies. A session cookie identifies your browser so that you stay signed in while moving between pages, and a CSRF token cookie protects forms against cross-site request forgery. Neither is used for advertising or cross-site tracking.

These cookies are required for the site to function, so they are set without asking for consent. You can delete or block them in your browser settings, but signing in will no longer work if you do.

5. Third parties and international transfers

Some resources are loaded from external providers, which means your IP address and browser details reach those providers when a page renders:

  • Google Fonts — supplies the typefaces and icon set used across the interface.
  • Google user content delivery — serves some of the illustrations shown on the site.
  • Sign in with Google or Facebook — if you choose one of these routes, that provider authenticates you on our behalf and passes us your name, email address, account identifier and the address of your profile picture. Your password never reaches us. If you do not use these routes, no data is exchanged with those accounts.

These providers may process data on servers outside your country, including outside the European Economic Area and outside Türkiye. Beyond these providers and our own hosting supplier, we do not share your personal data with third parties, except where disclosure is compelled by a court order or a lawful request from a public authority.

6. How long we keep data

Account and profile data are kept for as long as your account exists. When you ask us to delete the account, your personal data is erased or anonymised — your name, email address and birth details are permanently removed — save for anything we must retain to comply with a legal obligation.

Server and security logs are kept for a short operational period and then discarded. Correspondence is kept for as long as needed to resolve the matter it concerns.

7. Security

We apply appropriate technical and organisational safeguards: encrypted transport, one-way password hashing, restricted administrative access and regular software updates. No transmission over the internet can be guaranteed completely secure, so we cannot promise absolute security, but we do commit to notifying you and the competent authority if a breach occurs that is likely to affect your rights.

8. Your rights

Subject to the conditions of the law that applies to you — the GDPR in the European Economic Area, the KVKK in Türkiye — you have the right to:

  • learn whether we process data about you, and obtain a copy of it;
  • have inaccurate or incomplete data corrected;
  • have your data erased where there is no longer a lawful reason to keep it;
  • ask us to restrict processing, or object to processing based on legitimate interest;
  • receive the data you gave us in a portable, machine-readable form;
  • withdraw a consent you previously gave, without affecting processing already carried out;
  • lodge a complaint with your national data protection authority.

To exercise any of these rights, contact us using the details below. We answer within the period set by the applicable law and may ask you to confirm your identity first, so that we do not disclose data to the wrong person.

9. Children

Zodivia is not directed at children and accounts are not knowingly created for anyone under the age set by their local law for independent consent. If you believe a child has registered, tell us and we will remove the account.

10. Changes to this policy

We may revise this policy as the service or the law changes. The date at the top of the page always shows the current version. Where a change materially affects your rights we will draw attention to it on the site before it takes effect.

11. Contact

For questions about this policy, or to exercise any of the rights described above, write to [email protected].