SIBYRA

Privacy Policy

Effective date: · Document version: 2026-08-08

This policy explains what happens to your information when you use the SIBYRA app or this website. The short version is that SIBYRA is built to keep your information on your own device, so there is very little for anyone else to hold.

Key points

  • SIBYRA is for users 13+. Paid plans and every AI feature are for adults aged 18 or older.
  • Your profile, birth details, journal, dreams, and readings are kept on your device. We do not receive them, and nothing is synced to a cloud on its own.
  • Information reaches a server only when you do something that needs one: open this website, follow a link out of the app, or email support. Signing in, paid plans, and AI requests are not switched on in this release, so none of them can reach a server at all.
  • An AI request carries only what you typed and the details you ticked. The text of a dream is sent only if you switch that on.
  • No adverts, no analytics, no tracking, and nothing is sold.
  • You can export everything or delete everything from inside the app. Data questions: support.madebyone@gmail.com.

SIBYRA is operated by the controller identified in the controller and contact details at the end of this policy.

1. Who we are, and what this policy covers

SIBYRA is run by a UK sole trader, who is the data controller for everything described here. The trading name, the geographic establishment address, and how to make contact are in Controller and contacts at the end of this page. Below, “we” means that trader and “you” means the person using SIBYRA.

This policy covers the SIBYRA app and this website. It does not cover the other companies you reach through them — the app store, your own email app and its provider, or any site you open from a link — because they decide their own use of data and have their own policies.

2. What stays on your device

SIBYRA does its work on the device in your hand. Your age band and mode, your profile, your optional birth date, time, and place, your journal entries, dreams, saved spreads and readings, notes, reminders, settings, consent history, and the results the app calculates are all kept on your device. SIBYRA does not receive them automatically, and nothing is synced to a cloud on its own. The one exception is the optional cloud copy described in the next section: it exists only after you, signed in as an adult, explicitly save it — and until then we hold no copy of anything.

Teen Mode needs no birth date, and Profile may remain incomplete: you can skip anything you would rather not enter, leave the screen, and come back later. Nothing has to be filled in to use the app.

Asking the device where you are. The birth-place map has a “My location” button. Press it and your device asks your permission for a single reading of your position, which drops the pin; the coordinates are saved only if you confirm the place, and then only on the device. Nothing asks on its own, there is no background tracking, and no coordinate reaches us. Refusing costs nothing — the place can be pinned by hand.

Why this is lawful. Keeping this material on your device is how the features you opened work, so we rely on performing our agreement with you, together with our legitimate interest in running a service that leaves personal material in your own hands.

3. When data leaves your device

Only a short list of things reaches a server at all, and each one happens because you did something first.

Opening this website. Google LLC (Firebase Hosting) (privacy policy) may process the IP address, browser data, and request logs to deliver and protect the site under the legitimate interest in operating the site securely.

Opening a link we put in the app. Some screens link out — to this website, to the sources behind a library entry, to the app store. Following one hands the address to your own browser: you are then on someone else’s site under their policy. We send nothing with you and learn nothing about where you went.

Emailing support. Offline FAQ does not contact SIBYRA. Form text stays in the app. Continue to email asks your device to open an available email app for support.madebyone@gmail.com. SIBYRA receives no email until you press Send there; the app may keep a draft. If sent, the sender address, message, and email metadata are stored by Google LLC (Gmail) (privacy policy) so that we can answer you, keep the mailbox secure, and meet legal duties. The bases are your request and contract, legitimate interests, and legal obligation where applicable.

Checking that the app copy is genuine. The Android package includes Firebase App Check and Google Play Integrity components for abuse prevention: they let Google confirm that the copy running on your device is a real, unmodified SIBYRA. If a component initializes, Google may process app or device integrity signals, the IP address, and request metadata. This does not create a SIBYRA account and is not used for personalization.

Asking the AI. This is the only part of SIBYRA that sends what you wrote to another company, and it is set out in AI features below. Buying a paid plan is set out in Adverts, purchases, and what we never do.

4. AI features (adults only)

Ask SIBYRA and the four AI analyses — of a spread, a dream, a week, and a birthday year — are restricted to users aged 18 or older. They are not part of this release: the app sends nothing to an AI service, and this section describes how they will work if they are added later.

Nothing is sent quietly. You open the feature yourself, you choose which details to include, and you give permission for that one request. Only then does anything leave the device, and only two things do: the question or notes you typed, and the specific facts you ticked — a card you drew, your sun sign, your life-path number, and the like.

What is never attached. Your full journal, your full profile, your exact birth date, time, and place, the birth place you pinned on the map, and your contacts. The text of a dream is sent only if you switch that on for that one analysis; with the switch off, the analysis is made from the tags and the mood you chose instead.

Who sees it. The request goes first to SIBYRA’s own service, which confirms that it came from a genuine copy of the app and that the fair-use limits are respected, and then on to an external AI service, which writes the answer. The technical details used for that confirmation — the network address the request came from, a random identifier for this installation of the app, and the app and device version — are used only for it and are not added to the external AI request. A user in the 13–17 band is stopped on the device before any of this is prepared or sent, and no age information is sent to any server.

What you are shown before you send. There is no Ask SIBYRA screen to open in this release. Once it is switched on, that screen will list in full the facts that are about to leave the device, name the exact network address they go to, link to this policy, and warn you to keep sensitive details out. On this page we describe the AI service by what it is rather than by company name; ask us at support.madebyone@gmail.com and we will tell you which company provides the model and where to read its own privacy notice.

How long the AI service keeps what you send. No external AI service receives or retains a SIBYRA prompt or selected context in the current release. A future provider’s retention and data-use terms must be reviewed and disclosed before any future activation.

Where it is processed. No user prompt is transferred to an external AI provider in the current release. If a provider is selected for a future release, processing may occur outside the United Kingdom; provider retention, training use, data residency, deletion rights, and appropriate transfer safeguards remain release gates and are not represented as already resolved.

An AI answer is generated text and can be wrong. It is written for reflection and entertainment, it is not a prediction, and it is not medical, psychological, legal, or financial advice. We do not use it to make any decision about you.

SIBYRA does not make automated decisions about you that produce legal effects or anything similarly significant, and it does not profile you. A reading, a horoscope, or an AI answer is reflective content, not a decision about you.

6. Adverts, purchases, and what we never do

SIBYRA does not sell user data. There is no advertising software, no analytics, and no third-party tracking in the app or on this website, and we do not share your information for anyone else’s marketing.

Advertising and purchases. This release does not load ads, send data to advertising vendors, offer a subscription, or initiate a purchase or recurring charge. When paid plans are switched on, they will be sold through Google Play: Google would take the payment as our agent, so we would never see your card details and would learn only that a plan is active.

7. Cookies and similar storage

This website sets no cookies for analytics or advertising and loads no third-party scripts. The only thing it keeps in your browser is the light or dark theme you chose. The theme preference stays in the browser until site data is cleared and is not sent to SIBYRA or third parties. That is why you are not asked to accept cookies here.

The app saves your records on your device because saving them is the thing you asked it to do — storage that is strictly necessary for a feature you requested, which needs no separate cookie-style consent. None of it is an advertising or analytics identifier, and none of it reaches us.

8. How long anything is kept

Your own records stay on your device until you delete them: nothing expires by itself, and nothing is quietly copied elsewhere first. Support correspondence is kept for up to 730 days after closure unless law or a dispute requires longer. Mailbox backups follow the provider’s policy.

Firebase Hosting may retain the IP address and technical request-log data for a limited period under Google service settings and policies. The site does not use analytics or advertising trackers. If an app-integrity component runs, how long its technical data is kept follows Google service settings and policies. How long the external AI service keeps a request is set out in AI features above.

9. Where your information is processed

We are established in the United Kingdom. Your records stay on your device, so the only things that can be processed abroad are the ones listed in When data leaves your device and, if you use it, an AI request. Google may process website technical data, Android app-integrity signals, support correspondence, and support-adjacent technical data outside the United Kingdom under an applicable adequacy regulation or appropriate contractual safeguards. Details are available in the provider privacy policies linked above.

The external AI service is not sending anything yet. Before it is switched on, any transfer it needs outside the United Kingdom will be covered by an appropriate safeguard — a UK International Data Transfer Agreement, the UK Addendum to the EU standard contractual clauses, or, for users in the European Economic Area, the EU Standard Contractual Clauses (Commission Decision (EU) 2021/914) — and this policy will say which one before the first request leaves a device.

10. Your rights, and how to use them

In the app, without asking us. Because your records are on your device, you already hold the controls: open any entry to read it, edit or delete a single record, export everything to one file you can keep or move elsewhere, and use the delete-everything control to erase your local data in one step. Clearing the app’s data or removing the app does the same. We cannot see, restore, or delete those local records for you.

From us. For the little we do control — support correspondence, and anything tied to an AI request or a purchase — you may request access, correction, erasure, restriction, portability, or object to processing. Consent may be withdrawn without affecting earlier lawful processing. Write to support.madebyone@gmail.com. We may have to ask something to be sure the data is yours, and we answer within one month.

A data-protection complaint can be emailed to support.madebyone@gmail.com. SIBYRA will acknowledge it within 30 days, investigate as appropriate, provide progress information where necessary, and tell the complainant the outcome.

You may also complain to the UK Information Commissioner’s Office or, where applicable, your local data-protection authority. You do not have to contact the operator first. Mandatory rights in your place of residence remain unaffected. ICO.

11. Children and teenagers

SIBYRA is intended for users aged 13 or over; anyone under 13 may not use the service. The user self-declares “I am 13 or older” or “I am under 13”. A blank date means Teen Mode; a local date showing age 18+ means Adult Mode. This is not identity or age verification. The choice, date, and mode stay on device until app data is reset.

Because a declaration is not proof, a younger user is protected by the way SIBYRA is built rather than by a promise: the private setting is where everyone starts, nothing has to be shared to use the app, there is no advertising, no profiling, and no background location tracking, there is no public profile and no way for users to reach one another, and buying a paid plan and every AI feature are closed on the device to the 13–17 band before a request can be prepared or sent. We do not knowingly collect information from a child under 13; if you believe a child has sent us something, write to support.madebyone@gmail.com and we will delete it.

12. Keeping your records safe

Your records sit in SIBYRA’s own storage on your device, protected by the device and its operating system. SIBYRA does not add a second password or encryption of its own on top of that, so the honest advice is the simple one: protect the device with a screen lock and install security updates. Every connection SIBYRA itself makes runs over HTTPS, and the Android build refuses unencrypted traffic outright. An email to us is the exception we cannot speak for: it travels through your own email app, on that provider’s terms.

Export. A backup is a readable JSON file without encryption or a digital signature. It may contain profile and birth details, journal entries, spreads, and dreams. Store it securely and do not share it unnecessarily. Exported files are outside the app and must be deleted separately.

13. Changes to this policy

We will update this policy before starting materially new processing, show a new effective date, and request consent where required. If a change matters to you, we will point it out in the app or on this site rather than quietly editing the page, and the version and date at the top always tell you which text you are reading.

Version history.

In the app, your consent is recorded against policy version 2026-07-16 — the base version of this text.

Third-party data licences

The offline place reference uses GeoNames cities500 (CC BY 4.0) and Natural Earth (public domain). Time-zone boundary data is derived from © OpenStreetMap contributors through timezone-boundary-builder 2026c and made available under ODbL 1.0.

14. Controller and contacts

Euzheniu Shendrya, a UK sole trader trading as SIBYRA. The controller is established in England and Wales, United Kingdom.

Geographic establishment address: 4 Buckfast Square NN188DT Corby.
No public business telephone is provided.
Privacy requests: support.madebyone@gmail.com.