Legal

privacy policy.

Last updated: 5 July 2026 · v1.1
◆ The short version

the free read is processed entirely in your browser — we never see your photo. things change only when you ask them to: buying the full reading or portrait sends your photo to our AI provider and stores the result so we can deliver it; sharing by QR or email uploads the finished images (QR files auto-delete in 7 days); and we keep emails you intentionally hand us. that's it.

◆ Contents
  1. what we collect
  2. your camera & photos
  3. why we collect what we do
  4. who we share with
  5. cookies & tracking
  6. your rights
  7. how long we keep things
  8. security
  9. children
  10. international users
  11. changes to this policy
  12. contact

1. what we collect

five categories, and that's the whole list:

we don't collect your location, browsing history, or any third-party data brokers' info about you. we don't run cross-site ad tracking today. if we ever switch on ad pixels for paid campaigns (meta or tiktok), we'll update this page first — see section 5.

2. your camera & photos.

this is the one that matters most, so it gets its own section.

when you open the reader at aura.refractventures.co/reader and grant camera permission, your browser hands the camera feed to the page. all processing happens locally on your device. the page reads pixels from your camera frame, extracts a dominant color band, and renders the aura portrait — all in your browser, using your machine's processor.

the camera frame itself is never uploaded. we don't have a server that sees your face. when you click "save aura," the resulting PNG is downloaded directly to your device from the canvas in your browser. it never touches our infrastructure.

four exceptions, all opt-in:

every one of these is opt-in, only triggered when you tap the button, and surfaced clearly in the interface. if you only use the default "save aura" button, your image never leaves your device.

3. why we collect what we do.

each thing has a job:

that's the complete list. we don't sell or rent any of this. we don't share it for marketing purposes. we don't use it to build profiles of users.

4. who we share with.

we use a small set of third-party services to operate the site. each one only sees the minimum data needed to do its job:

we also run vercel's built-in web analytics — aggregate, cookie-less page counts so we know which pages people visit. it doesn't identify you or follow you across other sites. beyond the list above: no ad networks, no tag managers, no chat widgets, no data brokers.

5. cookies & tracking.

we don't set cross-site tracking cookies. the only things stored in your browser are functional: your selected social-format preference in the reader (so it remembers between sessions), and stripe's checkout session cookies when you complete a purchase. neither is shared with anyone.

we don't use google analytics or ad pixels today. if we ever run paid ads, we may add meta or tiktok pixels to measure them — and if we do, we'll update this page and this section first, before any pixel goes live.

6. your rights.

regardless of where you are, you can:

if you're in the EU, UK, EEA, or California, you have additional rights under GDPR, UK-GDPR, or CCPA respectively. we honor all of them — including the right to lodge a complaint with your local data protection authority if you think we've handled your data badly.

7. how long we keep things.

email signups (waitlist, newsletter, aura+) — until you ask us to delete them or unsubscribe (which auto-deletes after 30 days).

operator and brand applications — for 24 months from submission, then deleted.

tip and purchase receipts — kept as long as legally required for tax purposes (typically 7 years in the US), then deleted.

paid readings and portraits — kept so you can re-open them from your receipt link; email us to delete yours sooner.

event-mode captures — kept for the event's gallery; deleted on request from you or the host.

print-order shipping details — kept until the order ships plus the return window, then reduced to the receipt.

QR-share image uploads — auto-deleted after 7 days.

email-share PNGs — not stored after sending.

request logs — 30 days, then rotated out.

8. security.

we use industry-standard practices: HTTPS everywhere, encrypted database storage, environment-variable secrets management, and no plaintext credentials in code. no system is unbreakable. if a breach happens, we'll notify affected users within 72 hours of discovery, as required by law.

9. children.

aura.refract is for people 13 and over. we don't knowingly collect data from children under 13. if you're a parent who believes your child has shared data with us, email privacy@refractventures.co and we'll delete it.

10. international users.

aura.refract is operated from the united states. by using the site, you understand that any data we do collect is processed in the US. if you're in the EU, UK, or another jurisdiction with stricter data protection laws, our practices are designed to meet those standards (minimal collection, explicit purpose, opt-in consent for anything beyond strictly necessary).

11. changes to this policy.

if we materially change how we handle data, we'll update this page and the "last updated" date at the top, and post a notice on the homepage for at least 30 days. for users who've given us an email, we'll send a notification.

12. contact.

privacy questions, deletion requests, anything else: privacy@refractventures.co

operating entity: refract ventures, LLC (USA).

if you'd prefer a postal address, email first and we'll provide one.