Privacy

Privacy Policy

Written to be read, not to be survived.

The Ancient Cycle is built on data minimisation. We ask for the few details needed to cast your charts and write your weekly reading, and we ask for nothing else.

What we store

This is the complete list. There is no hidden sixth table.

  • Your profile — email address, first name, the date you joined, and whether you want the Sunday email.
  • Your birth data — birth date, birth time (only if you know it and choose to give it), birth place name, its latitude and longitude, and the UTC offset at that place on that date. We also store the three charts calculated from them.
  • Your cycle settings — the start date of your last period, your average cycle length and your average period length. Three numbers and a date.
  • Your subscription — a Stripe customer reference, a status, and which plan you are on.
  • Your readings — the weekly readings written for you, so you can re-read them.

Why we store it

One purpose only: to generate your charts and your weekly reading, and to keep your membership working. Birth details position the three skies. Cycle settings place you in your phase. The subscription row tells us what you can see. Nothing here is used for profiling, scoring, targeting, or research.

What we deliberately do not store

No symptom logs. No mood logs. No health notes. No analytics events. There are no third-party analytics SDKs, advertising pixels, session recorders or ad tools anywhere in this app, on any page, at any time.

Legal basis: your consent

We process your data on the basis of the consent you gave in step three of onboarding. You can withdraw that consent at any time, and withdrawing it is simple: delete your account from Account & Privacy. Deletion is how consent is withdrawn, because once the data is gone there is nothing left to process. Withdrawing consent does not affect processing that already lawfully happened.

We do not sell or share your data

We do not sell your data. We do not rent, trade or broker it. We do not share it with advertisers, data brokers, insurers or employers. We do not publish it. The only third parties who touch it are the three processors below, each doing one narrow job on our instructions.

The processors we use

  • Supabase — hosts the database and handles sign-in. Your rows live here. supabase.com/privacy
  • Stripe — takes payment and holds your card details. We never see or store a card number; we keep only a customer reference and a status. stripe.com/privacy
  • Resend — delivers the Sunday reading email, if you asked for it. resend.com/legal/privacy-policy

Who can read your rows

Every table is protected by row-level security. A signed-in account can only ever read, change or delete rows belonging to that same account — including ours.

How long we keep it

Until you delete it. There is no fixed retention schedule and no archive: your rows stay while your account exists, and vanish when it does. Stripe keeps its own billing records for as long as tax and accounting law requires it to, which is outside our control.

Your rights: export and delete

  • Download my data — on Account & Privacy, one button builds a JSON file containing every row we hold about you, generated fresh at the moment you ask.
  • Delete my account — the same page. It hard-deletes your profile, birth data, cycle settings, subscription record and every stored reading, cancels your Stripe subscription, and signs you out. No soft delete, no grace period, no shadow copy. This works even if a payment has failed; billing problems never lock you out of deleting your data.
  • You may also ask us to correct anything, or object to processing, by email.

One more thing

The Ancient Cycle is for reflection and educational purposes only. It is not medical advice, not a contraceptive method, and not a diagnostic tool.

Contact

Write to privacy@theancientcycle.com with any question or request about your data. A person reads it.