The short version: your reading journal stays on your device. We receive limited service data, and the personal text in a reading leaves your device only when you choose to request an AI reflection.
Who we are and what this covers
Sunny Systems provides The Oracle mobile application, its reflection service, and this legal website. In this policy, “The Oracle,” “we,” and “us” refer to Sunny Systems and these services.
This policy explains the information processed when you use the app, request an AI reflection, make an in-app purchase, contact us, or visit this website.
Information kept on your device
Your saved readings are stored in the app on your device. They can include a topic or question, optional notes, cast line values, the resulting hexagrams, reading text, dates, favorites, and any AI reflection you choose to save.
The app also stores your stalk balance, weekly gift status, preferences, and a random installation identifier. Where Apple iCloud key-value storage is available, balance and gift status may sync through the Apple account signed into your device. We do not receive your Apple ID from iCloud.
AI reflections
An AI reflection is optional. When you request one, the app sends our service your reading topic, optional notes, six cast line values, language and text-mode choices, the source of the stalks used, and any optional embodied signal included with the request. Our service adds the canonical I Ching material needed to interpret the cast and sends the prepared request to OpenAI.
We ask OpenAI not to store the response as application state. OpenAI states that API data is not used to train its models by default, although it may retain abuse-monitoring logs for up to 30 days unless a legal or security exception applies.
Our application logs and analytics do not contain your raw topic, notes, prompt, reading text, or generated reflection. We do retain pseudonymous operational metadata about reflection requests, such as time, status, model, language, approximate device context, processing time, token and cost totals, and any star rating you submit. This helps us operate and improve the service.
Service events and diagnostics
The app sends a limited set of product events so we can understand reliability and whether important parts of the experience are working. Events can describe app sessions, guide and casting progress, reading or reflection actions, weekly gifts, store interactions, purchase outcomes, language, device region and time zone, operating-system version, and app version.
We use a random installation identifier rather than your name, email address, Apple ID, or advertising identifier. The service transforms that identifier into a one-way pseudonymous label. Pending events may wait on your device until they can be uploaded, with a bounded local queue.
Servers and hosting providers also process ordinary technical logs, which can include IP address, request path, time, response status, and browser or device information. We use this information for rate limiting, security, troubleshooting, and service operation.
Purchases and complimentary stalks
Apple processes in-app purchases, payment details, receipts, storefront information, taxes, and refunds under its own terms and privacy policy. Apple sends The Oracle signed server notifications about purchase and refund events. We retain normalized details such as product and transaction identifiers, purchase or refund status, storefront, and time so income records remain accurate. We do not retain the raw signed notification, and we do not receive your payment-card details, buyer name, email address, or Apple ID through these notifications.
Your stalk balance and weekly complimentary gift status are maintained by the app and may sync through Apple iCloud as described above.
How we use information
- Provide readings, optional AI reflections, purchases, gifts, and balance synchronization.
- Keep the app and service reliable, secure, and reasonably protected from misuse.
- Measure feature performance, diagnose failures, and understand aggregate usage.
- Respond when you contact us and honor privacy requests.
- Comply with law and protect users, Sunny Systems, and the public.
Service providers and disclosures
We use service providers only where they help deliver or protect The Oracle. They process information under their own terms and our configuration of their services.
We do not sell your personal information. We do not use third-party advertising SDKs, and we do not track you across other companies’ apps or websites for advertising.
- Apple provides App Store distribution, StoreKit purchases, and optional iCloud synchronization.
- OpenAI processes the content sent for an AI reflection and returns the generated reflection.
- Amazon Web Services hosts the reflection service and this legal website.
- Telegram can carry privacy-filtered operational notifications. These may contain a short pseudonymous user label, language, broad device context, model, outcome, timing, and cost information. They do not contain your topic, notes, prompt, reading text, generated reflection, raw installation identifier, or full identifier hash.
- Professional advisers, authorities, or a successor organization may receive information where reasonably necessary for legal compliance, protection, or a genuine business transfer.
Retention
Device data remains until you delete readings, clear relevant app data, or remove the app, subject to any Apple backups or iCloud synchronization you control.
Raw AI request and response content is not written to our application logs or reflection-history database. OpenAI may retain qualifying abuse-monitoring data for up to 30 days as described above.
Pseudonymous events, reflection metadata, and security or access logs are kept only for as long as reasonably needed for service operation, reliability analysis, security, cost control, legal obligations, and resolving disputes. Retention periods can differ by record and backup. We delete or de-identify records when they are no longer reasonably needed.
Your choices and rights
To make a privacy request, email us from an address where we can reply. We may need limited information to verify that a request relates to your installation. Some records may be retained where law or legitimate security needs require it.
- You can use the core reading experience without requesting an AI reflection.
- You can omit sensitive details from topics and notes, or remove saved readings in the app.
- You can manage iCloud and device backups in Apple’s settings.
- Depending on where you live, you may request access, correction, deletion, restriction, portability, or objection, and may withdraw consent where consent is the basis for processing.
- You may contact your local data-protection authority if you believe your rights have not been respected.
Security and international processing
We use reasonable technical and organizational safeguards, including encrypted network connections, pseudonymous identifiers, restricted operational data, and separation of reading content from analytics. No system can promise absolute security.
Our providers may process information in countries other than your own. Where required, we rely on appropriate contractual or legal safeguards for those transfers.
Children
The Oracle is not directed to children under 13, and we do not knowingly collect personal information from a child under 13. If you believe a child has provided personal information to us, please contact us so we can review and delete it where appropriate.
Changes to this policy
We may update this policy when the app, our providers, or applicable law changes. We will post the revised policy here and change the effective date. If a change materially affects how we handle information, we will provide additional notice where reasonably required.
Contact
Questions and privacy requests can be sent to Sunny Systems at privacy@sunnysystems.net.