AstroJson logostroJson

Privacy Policy

Last updated: 2025-02-17

1. Introduction

AstroJson ("we," "our," or "us") operates the AstroJson API and related website and services (collectively, the "Service"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Service. By accessing or using the Service, you agree to this Privacy Policy. If you do not agree, please do not use the Service.

2. Information We Collect

We may collect the following types of information:

  • Account information: When you register, we collect email address, password (stored in hashed form), and any profile information you provide.
  • API usage data: We log API requests (endpoints, parameters such as sign and language, timestamps, and usage counts) for authentication, rate limiting, subscription enforcement, and service improvement.
  • Payment and subscription data: When you subscribe, our payment provider (LemonSqueezy) collects and processes payment information. We receive subscription status, plan tier, and related identifiers—not full payment card details.
  • Technical and usage data: We may collect IP address, browser type, device information, and general usage patterns (e.g., pages visited) for security, analytics, and improving the Service.
  • Communications: If you contact us, we keep records of that correspondence.

3. How We Use Your Information

We use the information we collect to:

  • Provide, operate, maintain, and improve the Service.
  • Authenticate users and enforce API access and subscription limits.
  • Process payments and manage subscriptions.
  • Send service-related communications (e.g., account verification, subscription updates).
  • Respond to your requests and support inquiries.
  • Detect, prevent, and address fraud, abuse, and security issues.
  • Comply with legal obligations and enforce our Terms of Service.
  • Analyze usage to improve our products and user experience.

4. Legal Basis (EEA/UK)

Where applicable (e.g., if you are in the European Economic Area or the United Kingdom), we process your personal data on the following bases: (a) performance of a contract (providing the Service and subscriptions); (b) consent where you have given it; (c) our legitimate interests (security, analytics, improving the Service); and (d) compliance with legal obligations.

5. Third-Party Services

We use third-party services that may process your data. Each has its own privacy practices; we encourage you to review them:

  • Supabase: Authentication and database (account data, API keys, usage-related data). Privacy Policy
  • LemonSqueezy: Payment and subscription processing. Privacy Policy
  • Cloudflare (or similar): Hosting, CDN, and security. Traffic and logs may be processed according to their policies.

6. Cookies and Similar Technologies

We and our service providers may use cookies, local storage, and similar technologies to maintain your session, remember preferences, and analyze usage. You can control cookies through your browser settings. Disabling certain cookies may affect the functionality of the Service (e.g., staying signed in).

7. Data Retention

We retain your data for as long as your account is active or as needed to provide the Service, and thereafter as required for legal, tax, or regulatory purposes, or to resolve disputes and enforce our agreements. API and usage logs are typically retained for a limited period necessary for operations and security. You may request deletion of your account and associated data subject to applicable law and our retention obligations.

8. Your Rights

Depending on your location, you may have the right to:

  • Access your personal data.
  • Rectification of inaccurate data.
  • Erasure ("right to be forgotten") in certain circumstances.
  • Restriction of processing in certain circumstances.
  • Data portability (receive your data in a structured, machine-readable format).
  • Object to processing based on legitimate interests or for direct marketing.
  • Withdraw consent where processing is based on consent.
  • Lodge a complaint with a supervisory authority (e.g., in your country or region).

To exercise these rights, contact us at the email below. We will respond within the timeframe required by applicable law.

9. International Transfers

Your information may be transferred to and processed in countries other than your own. We take steps to ensure that such transfers are subject to appropriate safeguards (e.g., standard contractual clauses or adequacy decisions) where required by law.

10. Children

The Service is not directed to individuals under the age of 16 (or higher where required by law). We do not knowingly collect personal data from children. If you believe we have collected such data, please contact us and we will take steps to delete it.

11. Security

We implement technical and organizational measures to protect your data against unauthorized access, alteration, disclosure, or destruction. No method of transmission or storage is 100% secure; we cannot guarantee absolute security.

12. Changes to This Policy

We may update this Privacy Policy from time to time. We will post the revised policy on this page and update the "Last updated" date. For material changes, we may notify you by email or through the Service. Your continued use of the Service after the effective date constitutes acceptance of the updated policy, except where further consent or other steps are required by law.

13. Contact Us

For questions about this Privacy Policy, your personal data, or to exercise your rights, contact us at:

support@astrojson.com

You may also use the contact details provided on our website or in your account dashboard.