Privacy Policy
Effective: 27 May 2026
This Privacy Policy explains what personal data we collect, why we use it, and what rights you have over it. It applies to the Zodiup website, the products you buy from us, and the emails we send you.
Who is the data controller
The data controller is George Germanos, sole trader, Greece.
- Address: Arta, Greece
- Contact: support@zodiup.com
We are not legally required to appoint a Data Protection Officer, but you can contact us at the email above for privacy questions.
What we collect
Depending on how you use the site, we may process email address, name and billing address, quiz responses, support messages, payment references, last four card digits, IP address, browser type, device type, referring URL, pages viewed, UTM parameters, cookies, local storage, server logs, and email delivery or engagement events from Brevo.
Stripe collects and stores payment-card data. We never see or store full card numbers. We do not intentionally collect special-category data. Astrological sign and birthday are treated as personal data but are not special-category data under GDPR.
Why we process your data
We process data to process orders, deliver products, send receipts and transactional emails, send the Day 1 preview and follow-up emails you opted in to, personalize site content based on quiz answers and UTM data, measure site usage, improve the product, comply with tax and accounting obligations, and prevent fraud or abuse.
Our legal bases include contract, consent, legitimate interest, and legal obligation under GDPR Article 6.
Who we share data with
We share data only with vendors that help us run the business, including Stripe Payments Europe Ltd. for payment processing, Sendinblue SAS / Brevo for email, our hosting provider, Google LLC if analytics are active, and tax authorities or accountants when required by law. We do not sell your data and do not share it with third parties for their own marketing.
International transfers
Some processors may transfer data outside the EEA. Where this happens, transfers are protected by Standard Contractual Clauses approved by the European Commission or by another valid transfer mechanism such as the EU-US Data Privacy Framework where applicable.
How long we keep data
Order records and invoices are kept for up to 10 years where required by tax law. Email subscriber data is kept until you unsubscribe or request deletion, with inactive subscribers deleted after 24 months. Quiz responses and personalization data are kept for 24 months from last activity. Support emails are kept for 24 months from last contact unless needed as evidence. Server logs are typically kept for 30 days and backups are overwritten within 90 days.
Cookies and tracking
We use strictly necessary storage for checkout currency, attribution parameters, and form state. Analytics and marketing pixels, where used, load only after consent through the cookie banner. You can clear cookies in your browser and withdraw consent through the cookie banner.
Your rights
Under GDPR, you may request access, rectification, erasure, restriction, portability, objection to legitimate-interest processing, and withdrawal of consent. To exercise rights, email support@zodiup.com. We respond within 30 days.
You may complain to a supervisory authority. In Greece, this is the Hellenic Data Protection Authority: https://www.dpa.gr/en/individuals/complaint-to-the-hellenic-dpa.
US buyers in California and similar states may have analogous rights under CCPA / CPRA, including the right to know, delete, correct, and opt out of sale or sharing. We do not sell or share data in the CCPA sense.
Children
The site is not directed at children under 16. If you believe we have collected data from someone under 16, email us and we will delete it where required.
Security
We use HTTPS, restricted access controls, backups, and regular software updates. Stripe handles card data under PCI DSS. No system is fully secure, and we cannot guarantee absolute security.
Automated decision-making
We do not make decisions based solely on automated processing that produce legal or similarly significant effects. Buy-page personalization adjusts presentation only.
Contact
Privacy questions: support@zodiup.com.