Privacy Policy
Privacy Policy v2.0Version 2.0 · · Governance 2.0 public evidence surface
Governance 2.0 Overview
This page is part of the starnum public Governance 2.0 surface and uses the same evidence layer as the system card, data governance, transparency report, use policy, and security policy.
Governance Summary
This page explains what data is collected, why it is processed, how long it is retained, and how privacy controls connect to the public governance evidence layer.
Scope
Birth data, chart identifiers, analytics signals, third-party processors, cross-border storage, deletion requests, and region-specific privacy rights.
Implementation Status
The original legal meaning is retained. Version 2.0 adds traceable evidence, release integrity, provider alignment, and machine-audited internal links.
Current data lifecycle (code is authoritative)
This is the current verifiable rule set. If legacy copy conflicts, this section and production code control.
- Stored data includes birth year, month and day; gender; optional time and birthplace metadata; chart structure; readings; language; tier state; and access/removal tokens. Birth data is personal data and is not described as anonymized.
- Primary records use Cloudflare R2, with lookup and state metadata in D1. KV is a time-limited repair backup. Supabase is an off-by-default legacy incident fallback, not the routine primary path.
- Front-end lookup lasts six months for free charts, one year for basic charts, and indefinitely for advanced or special charts. Expired free/basic R2 chart content is deleted; only the compact consumer index and order/audit records remain.
- User removal writes a soft-delete state that immediately blocks public lookup, listing, and overwrite. Protected records and audit metadata remain stored. This is removal from front-end access, not physical erasure.
- Only an enabled AI generation or translation operation may send the chart structure or text needed for that task to the configured provider. A provider listed as a benchmark is not a claim of production use.
src/chart-storage.js · src/api-handler.js
This Privacy Policy explains how starnum.com.tw (the "Platform") collects, uses, and protects your personal data. By using this service, you agree to the terms of this policy.
1. Data Collected
When you use this Platform, the following data may be collected:
- Date and time of birth: Used to calculate your Zi Wei Dou Shu chart and Life Path number
- Gender: Used for chart calculation (affects the direction of Major Cycles)
- Marital status and children (optional): Used to deepen readings of related life palaces
- Chart data: Stored for retrieval; contains no personally identifiable information
We do not collect: names, phone numbers, email addresses, ID numbers, or any information that directly identifies you.
4. Cookies and Tracking
This Platform uses browser localStorage to store language preferences. This Platform uses Google Analytics (GA4) for anonymous traffic statistics. GA4 sets first-party cookies (such as _ga and _ga_*) in your browser to distinguish between visitors; these cookies are not used for cross-site tracking or advertising. This Platform does not embed advertising tracking pixels.
5. Third-Party Services
This Platform uses the following third-party services. Each has its own privacy policy, and this Platform is not responsible for their policy content.
- Google Analytics (GA4): Anonymous traffic analytics service, governed by the Google Privacy Policy. GA4 collects anonymous data such as page views, device types, and geographic regions to improve website content and user experience. You may opt out via the Google Analytics Opt-out Browser Add-on
- Cloudflare Pages: Website hosting and CDN acceleration, governed by the Cloudflare Privacy Policy. Cloudflare may log visitor IP addresses and browser information for security purposes
- Cloudflare R2 / D1: Primary chart data, lookup indexes, and operational metadata storage at the edge
- Google Fonts: Font loading service, governed by the Google Privacy Policy
- jsDelivr CDN: Open-source library loading acceleration, governed by the jsDelivr Privacy Policy
- AI / translation providers: A provider is listed as production use only when code/config evidence verifies it. Public governance pages disclose verified providers through the system card and transparency report; unverified providers are not stated as active production use.
- Pagefind: On-site search functionality that runs entirely in your browser; no data is sent to any server
- iztro: Zi Wei Dou Shu chart calculation engine (open source), runs entirely in your browser locally, no data is sent to external servers
6. Data Processing Flow
The complete path of your data from input to storage is as follows:
- Input: You enter your birth data in the browser
- Calculation: Chart calculation is performed entirely in your browser locally (JavaScript side)
- Storage: After calculation, chart results are written over HTTPS to Cloudflare R2, with lookup indexes written to Cloudflare D1
- Analysis & translation: If AI-assisted analysis or multilingual translation is enabled, only the chart structure and analysis text needed to complete the reading are processed; production providers follow the verifiable settings disclosed in the system card
- Retrieval: When querying by chart ID, data is read from Cloudflare R2/D1 and rendered in your browser
- Front-end lookup lasts six months for free charts, one year for basic charts, and indefinitely for advanced or special charts. Expired free/basic R2 chart content is deleted; only the compact consumer index and order/audit records remain. User removal writes a soft-delete state that immediately blocks public lookup, listing, and overwrite. Protected records and audit metadata remain stored. This is removal from front-end access, not physical erasure.
7. Cross-Border Data Transfer
Your chart data is primarily stored in Cloudflare R2/D1 infrastructure and may be processed across regions according to Cloudflare network and data-processing arrangements. Legacy Supabase access is retained only as an off-by-default incident fallback and is used only when incident recovery is explicitly enabled.
9. Affiliate Marketing Disclosure
Some pages on this Platform contain affiliate marketing recommendation links. When you purchase products through these links, this Platform may receive a small referral commission paid by the brand, which does not increase the price you pay.
- All affiliate recommendations are marked with the
rel="noopener sponsored"attribute - Recommendations are based on this Platform's product evaluation and are not influenced by commission rates
- This Platform does not collect any behavioral data from your activity on third-party shopping websites due to affiliate relationships
- You are free to choose whether to click or purchase; this does not affect your use of any Platform features
10. Your Rights
You may at any time:
- Decline to provide birth data (no data will be stored)
- Request deletion of your chart data (contact us via Instagram @mychenan)
- Stop using this service
11. Disclaimer
The astrological analysis results provided by this Platform (including Zi Wei Dou Shu charts and Life Path number reports) are intended solely for personal self-exploration, learning, and reference purposes, and do not constitute nor should be regarded as any form of legal, financial, medical, psychological, or life-planning advice.
- Astrological analysis is based on traditional metaphysical theories and mathematical calculations; its accuracy and applicability vary from person to person
- This Platform assumes no liability for any decisions, actions, or consequences made by users based on analysis results
- If you require professional advice, please consult a licensed professional in the relevant field
- This Platform reserves the right to modify, suspend, or terminate its services at any time without prior notice
12. Data Breach Response
If a data security incident occurs with a third-party service used by this Platform, such as Cloudflare storage or a disclosed AI provider, this Platform will notify users as soon as possible through a website announcement, detailing the scope of impact and recommended response measures. As this Platform does not collect email addresses or phone numbers, individual notifications cannot be sent to each user.
13. Policy Updates
If significant changes are made to this policy, the update date on this page will be revised. Continued use of the service constitutes acceptance of the updated policy.
14. Region-Specific Privacy Rights
California Residents (CCPA/CPRA)
If you are a California resident, the California Consumer Privacy Act (CCPA) and the California Privacy Rights Act (CPRA) provide you with additional rights regarding your personal information:
- We do not sell your personal information. We have not sold personal information in the preceding 12 months and do not intend to do so
- Right to Know: You have the right to request disclosure of the categories and specific pieces of personal information we have collected about you
- Right to Delete: You have the right to request deletion of your personal information
- Right to Opt-Out: As we do not sell personal information, no opt-out mechanism is required
- Right to Non-Discrimination: We will not discriminate against you for exercising your privacy rights
UK and EEA Residents (UK GDPR / EU GDPR)
If you reside in the United Kingdom or European Economic Area, the following additional provisions apply under the UK GDPR and EU GDPR:
Legal Basis for Processing:
- Consent (Art. 6(1)(a)): By voluntarily entering your birth data and using our service, you consent to the processing of that data for the purpose of generating your astrological chart
- Legitimate Interest (Art. 6(1)(f)): We maintain minimal technical records necessary for the security and operation of the service
Data Subject Rights:
- Right of Access (Art. 15): Request a copy of the personal data we process about you
- Right to Rectification (Art. 16): Request correction of inaccurate data
- Right to Erasure (Art. 17): Request deletion of your personal data
- Right to Restrict Processing (Art. 18): Request restriction of processing of your data
- Right to Data Portability (Art. 20): Receive your data in a structured, commonly used, machine-readable format
- Right to Object (Art. 21): Object to the processing of your personal data
- Right to Withdraw Consent: You may withdraw your consent at any time without affecting the lawfulness of prior processing
To exercise any of these rights, contact us via Instagram @mychenan. We will respond to your request within 30 days.
Right to Lodge a Complaint: If you believe that the processing of your personal data infringes applicable data protection law, you have the right to lodge a complaint with the supervisory authority in your country of residence.
We do not sell your personal data.
15. Contact Us
If you have any questions about this Privacy Policy, please contact us via Instagram: @mychenan
External standards and primary sources
These primary sources inform this page. They are benchmarks, not third-party endorsements of this site.
Current Machine Audit Snapshot
This block uses only traceable local audit data. No unsupported metrics or model claims are added.
- data/state-machine/i18n-parity.json: 8,036 parent URLs, 7,976 articles.
- data/kb-machine-audit.json: 3,238 source files, 0 missing coverage, 0 orphan chunks.
- data/discovery-surface-audit.json: 0 errors, 0 warnings.
- data/sla-report.json: critical / 5 critical, 0 warnings.
Content Maintenance And Update Decision
This block makes governance-page content machine-checkable: every page must disclose its source artifacts, related pages, and the gate that reports update needs.
Update Decision
This is not static copy. When source artifacts, related policies, public metrics, or generators change, AI Ops reports evidence and an AI agent decides whether the page needs edits.
Human Boundary
Systems detect, report, and preserve machine-readable evidence. Codex/Claude agents perform final judgment and repair.
Verification Command
node scripts/verify-trust-pages.js --check
data/state-machine/trust-pages.jsondata/public-claim-registry.jsondata/sla-report.json- Related governance pages: Data Governance · Security Policy · Acceptable Use Policy · FAQ
- Update flow:
npm run update:trust-pages→npm run test:trust
Release Integrity And GPG
GPG signing configured locally. signingkey=0934DFA0EDA6363A. GitHub verification pending until the public key upload and Verified badge are confirmed.
Verifiable Evidence Layer
This block is not a narrative claim. Each core assertion has a claim id, source JSON, hash, and a repeatable verification command. Public pages disclose governance evidence without exposing source code, secrets, private data, or exploitable attack details.
| Claim ID | Verifiable value | Status | Owner | Source and verification |
|---|---|---|---|---|
| claim.public-url-manifest.indexable-count Public URL and canonical inventory |
38,965 indexable URLs | verified | sitewide | node scripts/generate-public-evidence-manifest.js --dry |
| claim.trust-pages.audit-pass-rate Trust page machine audit |
180/180 pass | verified | sitewide | node scripts/verify-trust-pages.js --check |
| claim.discovery-surface.zero-errors AI discovery surface audit |
{"errors":0,"warnings":0} | verified | sitewide | node scripts/verify-discovery-surface.js |
| claim.structured-data.jsonld-errors JSON-LD / structured data audit |
{"structured_data_invalid_files":0,"breadcrumb_count":28274,"faq_count":27506,"dataset_count":30,"article_count":27406} | verified | sitewide | node scripts/site-machine-audit.js |
| claim.status.sla-state Status page SLA source |
critical / 5 critical, 0 warnings | verified | sitewide | node scripts/generate-status-page.js |
| claim.provider-alignment.openai-anthropic-gemini OpenAI / Anthropic / Google Gemini benchmark alignment |
benchmark alignment only unless code/config evidence exists | verified | sitewide | node scripts/verify-public-evidence.js --check |
| claim.transparency-report.sha256 Transparency report SHA-256 anchor |
{"report":"transparency/report-2026-Q3.json","sha256":"47b09e2ca4e8b8fe9dffdfaccef3b11212de9ee3a8a14badca8044e2481203c5"} | verified | sitewide | node scripts/update-transparency-current-data.js |
| claim.release-integrity.gpg-signing GPG signing status |
GPG signing configured locally; GitHub verification pending | github_verification_pending | sitewide | gpg --list-secret-keys --keyid-format=long && git log -1 --show-signature |
OpenAI / Anthropic / Google Gemini Alignment
The governance surface is benchmarked against the three public frameworks: model docs, system/model cards, safety evaluation, data governance, and use policies. This is benchmark alignment, not a claim that every provider is active in production inference. Official docs checked: 2026-07-31
| Provider | Governance focus | Starnum disclosure | Official source |
|---|---|---|---|
| OpenAI | Model documentation, latest model notes, safety best practices, and data controls. | No verifiable production model setting was found in the production code scan; providers are listed as governance benchmarks. | https://platform.openai.com/docs/models |
| Anthropic | Claude model documentation, system/model cards, Responsible Scaling, and safety policy. | No verifiable production model setting was found in the production code scan; providers are listed as governance benchmarks. | https://docs.anthropic.com/en/docs/about-claude/models |
| Google Gemini | Gemini API model documentation, safety settings, data governance, and platform policy. | No verifiable production model setting was found in the production code scan; providers are listed as governance benchmarks. | https://ai.google.dev/gemini-api/docs/models |
System Card V2.0: Technical Transparency Layer
This layer publishes the technical governance evidence that can be safely disclosed: architecture, data sources, AI-use boundaries, quality gates, release integrity, and provider alignment. Source code, secrets, exploitable attack details, and private data remain out of scope.
Public architecture
Cloudflare Pages/Workers, R2/D1/KV/Pagefind, and local generation scripts form the public-site and governance publication chain. Public pages disclose behavior, state, and traceable sources, not secrets or internal permissions.
AI-use disclosure
AI-assisted workflows are used for knowledge-base retrieval, cross-checking, and error detection. Governance documents are benchmarked against OpenAI, Anthropic, and Google Gemini public frameworks. Production model usage is disclosed only when code/config evidence exists.
Quality and safety gates
Governance page audit 180/180 passing, JSON-LD errors 0, discovery-surface errors 0. Status pages report critical / 5 critical, 0 warnings as-is.
Data traceability
Knowledge base 32,724 chunks, TM 789,031 entries, AI answer-ready 7,976/7,976. Public metrics trace to data/state-machine/*, data/*audit*.json, and transparency reports.
| Governance area | OpenAI | Anthropic | Google Gemini | Starnum implementation evidence |
|---|---|---|---|---|
| Model/system-card disclosure | OpenAI models + safety docs | Claude model docs + system/model cards | Gemini model docs + safety settings | system-card, model-card, methodology, benchmark, transparency-log |
| Safety evaluation and use boundaries | Safety best practices / deployment checklist | Responsible Scaling / safety policy | Gemini safety controls / policy | AI safety, acceptable-use, ethics, risk-boundary copy, crawler policy audit |
| Data governance | Data controls / privacy controls | privacy and data handling docs | Gemini API data governance references | privacy, ai-data-governance, KB/TM source tracking, SHA-256 hashes |
| Monitoring and release | production checklist / eval discipline | system-card transparency discipline | model/version documentation discipline | deploy.js, status.html, SLA report, trust-pages-machine-audit, sitemap/hreflang audits |
- Sources: data/state-machine/model-card.json, public-bench.json, trust-pages.json, security-headers.json.
- Sources: data/trust-pages-machine-audit.json, data/discovery-surface-audit.json, data/ai-answer-readiness-audit.json.
- Sources: data/kb-machine-audit.json, data/tm/quality-audit-report.json, data/sla-report.json.
- Official benchmark docs checked: 2026-07-31; links are listed in the OpenAI / Anthropic / Google Gemini alignment table.
The V2.0 goal is not more claims; it separates implemented controls from planned controls. Production usage, benchmark alignment, status exceptions, GPG signing, and SLA breaches are disclosed from source data.