Privacy
Privacy Policy
Last updated: 24 June 2026
This policy explains how Zodelicious (“we”, “us”, “Zodelicious”) collects, uses and protects your personal data when you use zodelicious.net. We are the data controller for the purposes of the UK GDPR and the Data Protection Act 2018.
1. Who we are
Zodelicious is operated by Zodelicious. You can contact us about privacy matters at privacy@zodelicious.net.
2. What data we collect
When you use Zodelicious we may collect:
- Account data — your email address and a hashed password. If you sign in with Google (or another provider), we receive your email and basic profile from that provider.
- Birth chart data — the birth date, and optionally the birth time and birth location (city and approximate coordinates) you choose to enter to generate your chart. You control how much of this is visible to others through your privacy settings.
- Profile data — your chosen username, display name, optional bio and location.
- Content you create — recipes you author or import, ratings, saves and follows.
- Payment data — if you subscribe, our payment processor (Stripe) handles your card details. We never see or store full card numbers; we store a Stripe customer reference and your subscription status.
- Technical data — IP address, browser type and server logs, collected automatically to keep the service secure and working.
3. Why we use it & our lawful bases
- To provide your account and charts — lawful basis: performance of our contract with you.
- To process subscriptions and payments — performance of contract.
- To keep the service secure and prevent abuse — our legitimate interests.
- To send service emails (e.g. email verification, password resets, billing notices) — performance of contract.
- To send marketing or product-update emails, where you have asked us to — your consent, which you can withdraw at any time.
- To meet legal obligations (e.g. tax and accounting records) — legal obligation.
4. Who we share it with
We share data only with service providers who help us run Zodelicious:
- Stripe — payment processing.
- Google — optional “Sign in with Google” authentication.
- Our email provider (Fastmail) — sending service and account emails.
- Our hosting provider (Hetzner) — running the servers that host the site and database.
We do not sell your personal data. We may disclose data where required by law.
5. International transfers
Some of our providers (such as Stripe and Google) may process data outside the UK, including in the United States. Where data is transferred outside the UK, we rely on UK-approved safeguards such as the International Data Transfer Agreement or addendum to the EU Standard Contractual Clauses.
6. How long we keep it
We keep your account and chart data for as long as your account is open. If you delete your account, we delete or anonymise your personal data within a reasonable period, except where we must retain certain records (such as billing records) to meet legal obligations.
7. Your rights
Under UK data protection law you have the right to:
- access a copy of the personal data we hold about you;
- have inaccurate data corrected;
- have your data erased (“right to be forgotten”);
- restrict or object to certain processing;
- data portability; and
- withdraw consent at any time where we rely on it.
To exercise any of these rights, email privacy@zodelicious.net. You can also delete your account and download your data from your account settings.
8. Cookies
We use a small number of essential cookies to keep you signed in and to protect forms. For full detail, see our Cookie Policy.
9. Children
Zodelicious is not intended for children under 16. We do not knowingly collect personal data from children under 16. If you believe a child has provided us with personal data, please contact us and we will delete it.
10. Contact & complaints
Questions or concerns? Email privacy@zodelicious.net. If you are unhappy with how we have handled your data, you have the right to complain to the ICO at ico.org.uk.