🔒 Our Privacy Promise
We never read your dreams. Your dream conversations are processed in real-time by AI and are NOT stored on our servers. Journal entries are stored locally on YOUR device. We never sell your data. We use Cloudflare for DDoS protection and Stripe for secure payments. Your spiritual journey is yours alone.
1. Information We Collect
Information you provide:
- Email address — for account creation and premium access verification
- Payment information — processed securely through Stripe (we never see or store your card number)
- Contact form messages — when you contact support or submit a feature request
Information we do NOT collect or store:
- Dream descriptions — processed in real-time by AI, NOT stored on our servers
- Journal entries — stored locally on your device using encrypted browser storage
- Tarot reading history — stored locally on your device only
- Your full name, address, or phone number — we don't ask for these
2. How We Use Your Information
- To provide dream interpretation via AI (real-time processing only)
- To process subscription payments through Stripe
- To verify your premium membership status
- To respond to support requests
- To improve our services (anonymized, aggregated analytics only)
We do NOT use your information for advertising targeting, data brokering, or selling to third parties.
3. Data Security & Infrastructure
We take data security seriously. Our security measures include:
- TLS 1.3 encryption for all data in transit
- Cloudflare for DDoS protection, WAF (Web Application Firewall), and SSL
- Stripe PCI DSS Level 1 certification for payment processing
- HTTP security headers including X-Content-Type-Options, X-Frame-Options, and CSP
- No server-side storage of dream content or personal readings
- Rate limiting on all API endpoints to prevent abuse
- Cookie-based authentication with secure, HTTP-only flags
4. Local Storage & Your Device
Premium features like Dream Journal and Tarot History use your browser's localStorage. This means:
- Your data stays on YOUR device — we cannot access it
- Clearing your browser data will remove these entries
- Your data is NOT synced across devices (by design — for privacy)
- Nobody at DreamVeil can read your journal entries or tarot history
5. AI Processing
When you use the AI Dream Interpreter, your dream text is sent to Google's Gemini API for processing. Important details:
- Dream text is processed in real-time and NOT stored on our servers
- We do not log, save, or archive your AI conversations
- Google's API processes the text according to their data handling policies
- We do not use your dreams to train any AI models
6. Cookies
We use only essential cookies:
- dreamveil_premium — stores your premium membership status
- dreamveil_email — stores your email for account identification
- dreamveil_lang — stores your language preference (localStorage)
We do NOT use tracking cookies, advertising cookies, or third-party analytics cookies that identify you personally.
7. Third-Party Services
- Stripe — payment processing (Stripe Privacy Policy)
- Google Gemini API — AI dream interpretation (Google AI Privacy)
- Cloudflare — security and performance (Cloudflare Privacy Policy)
- Google AdSense — ads for free users only (Premium is ad-free)
- Vercel — hosting infrastructure (Vercel Privacy Policy)
8. Data Breaches
In the unlikely event of a data breach, we will:
- Notify affected users within 72 hours via email
- Provide clear information about what data was affected
- Take immediate steps to contain and remediate the breach
- Report to relevant authorities as required by law
Note: Because we do not store dream content or journal entries on our servers, a server breach would NOT expose your personal spiritual content.
9. Your Rights
You have the right to:
- Access any personal data we hold about you
- Delete your account and all associated data
- Export your locally-stored journal entries
- Cancel your subscription at any time without penalty
- Opt out of any non-essential communications
- Request information about what data we hold
To exercise any of these rights, email support@dreamingveil.com.
10. Children's Privacy
DreamVeil is not intended for users under 13 years of age. We do not knowingly collect information from children under 13. If we learn we have collected information from a child under 13, we will delete it immediately.
11. Changes to This Policy
We may update this privacy policy periodically. Material changes will be communicated via email to registered users. The "Last updated" date at the top reflects the most recent revision.
12. Contact Us
For privacy-related questions, data requests, or concerns:
- Email: support@dreamingveil.com
- Help Center: dreamingveil.com/help