Privacy Policy
Last updated: 08/06/2026
At Kozmik we take seriously the privacy of the data you entrust to us. This policy explains what information we collect, how we use it, who we share it with and what rights you have over your information.
1. Who is responsible
Kozmik is responsible for the processing of your personal data. If you have questions, write to us at hola@kozmik.fun.
2. Data we collect
Data you give us:
- Username and email when you register
- Password (stored encrypted with bcrypt, never in plain text)
- Optional answers to the welcome questionnaire
- WhatsApp data and message when requesting a live session
Data generated when using the Site:
- Readings you perform, cards drawn and date
- Purchase and payment history (without storing card data)
- Event logs (login, errors, access attempts)
Automatic technical data:
- IP address (stored hashed for anti-abuse purposes)
- Browser and device type (User-Agent)
- Strictly necessary cookies to maintain your session and language preference
3. What we use your data for
- Provide the service (readings, sessions, account management)
- Process payments through Mercado Pago and PayPal
- Send you transactional emails (verification, purchase confirmation, password recovery)
- Detect and prevent fraud, abuse and security vulnerabilities
- Comply with legal, accounting and tax obligations
- Improve the Site through aggregated and anonymous analytics
4. Cookies
We use strictly necessary cookies. We do not use advertising or social media tracking cookies.
- PHP session: identifies your session while you browse (deleted when closing browser or logging out)
- kozmik_lang: remembers your language preference (valid 1 year)
- kozmik_remember: if you choose "remember me", encrypted token valid 30 days
5. Who we share your data with
Your data is not sold or transferred for commercial purposes. The only third parties with access are:
- Hostinger (Site and database hosting)
- Mercado Pago (payment processing in Argentina, policies at mercadopago.com.ar)
- PayPal (payment processing in the rest of the world, policies at paypal.com)
- SMTP/IP-geo services used to send emails and detect approximate country
If a competent judicial authority requires it through a valid legal order, we may be obliged to deliver specific information.
6. Storage and security
- Passwords are stored hashed with bcrypt cost 12
- IP addresses are stored hashed (SHA-256) except for active manual bans
- We do not store credit card data or sensitive financial information (that remains with MP/PayPal)
- The Site uses HTTPS on all pages
- There is rate limiting and automatic blocking against suspicious access attempts
7. Retention periods
- Active account: we keep your data while your account exists
- Inactive account +2 years: we may delete or anonymize the account
- Transactional data (purchases): we keep them for at least 10 years to comply with Argentine accounting and tax obligations
- Technical logs: 6 months
8. Your rights
As the owner of your data, you can exercise at any time the rights of:
- Access: ask us for a copy of the data we have about you
- Rectification: correct inaccurate data
- Deletion: request the deletion of your account and personal data
- Portability: request your data in structured JSON format
- Opposition: oppose the processing of your data
To exercise any of these rights, write to us at hola@kozmik.fun.
In Argentina, you can also contact the Agency for Access to Public Information (AAIP).
9. Minors
The Site is not directed at minors under 18. If we detect accounts registered by minors, we delete them.
10. International transfers
Some of our providers (Hostinger, PayPal) operate servers outside Argentina. By using the Site you accept that your data may be transferred and processed in jurisdictions with equivalent levels of protection.
11. Changes to this policy
We may update this policy. The current version is the one published here. Substantial changes will be notified by email.
12. Contact
For any questions about this policy or your data: hola@kozmik.fun