Privacy Policy
Last updated: September 27, 2026
Quenway provides card-based reflection, saved readings, private Journal notes and optional AI deeper readings. This policy describes how information is handled by the current service.
Information we collect and why
- Account information: your email address, a password hash, email verification status, verification-code records, account identifier and referral information, to sign you in, protect your account and manage invitation rewards.
- Reading information: your selected situation, question, cards, additional context, reading results, Journal notes and timestamps, to deliver readings and let you revisit them.
- Payment and credit records: top-up orders, network, amount, transaction identifiers, payment status, QBean balance and free-reading usage, to confirm payments, provide credits and resolve errors.
- Security information: connection IP addresses, request counts, sessions and verification-code information, to prevent abuse and protect login and registration.
Private notes and shared readings
Your Journal notes and saved deeper readings are restricted to your account in the website. They are not included on public sharing pages. Authorized operational access may still be necessary to maintain the service, investigate security issues or comply with legal obligations.
When you create a sharing link, anyone with that link can view the question, selected situation, cards and basic interpretation. Your email, Journal notes, additional context and AI deeper reading are not included. Recipients can forward links or copy their contents. Review your question for personal details before sharing.
AI deeper readings
When you request a deeper reading, we send your question, selected situation, cards, relevant card meanings and the additional context you enter to OpenAI to generate the response. We do not add your account email, payment details or private Journal notes to that request. Personal information you type into the question or additional context will be part of the request.
The generated result is saved with your reading. OpenAI may process and retain API data under its own service and security policies, including outside your country. See OpenAI’s API data controls for details. Avoid including unnecessary sensitive information about yourself or others.
Verification emails
We use our email delivery provider to send a six-digit verification code to your registered address. Verification codes expire after 10 minutes. We keep verification status and sending-limit records to activate accounts, prevent abuse and issue welcome and invitation rewards.
Contact messages
When you contact us, we store your subject, reply email, message, submission time and processing status. If you are signed in, the message is linked to your account. Only authorized administrators can review messages and record their handling. Image verification codes and request limits help prevent automated submissions.
Site statistics and administration
We use a first-party anonymous visitor cookie, valid for one year, to count page views and distinct browsers. We record daily activity for signed-in accounts and derive approximate country, region and city from connection IP addresses using a local database. We do not send visitor IP addresses to a geolocation service or store raw IP addresses in analytics tables. Daily visitor and account-activity records are kept for 400 days; aggregated page counts may be retained longer. Authorized administrators can manage account status and credits, with changes recorded in an audit log, and send password-reset emails.
Cookies and browser storage
We use essential session cookies and security tokens for authentication and request protection. Browser session storage supports reading progress and drafts. Blocking these features may prevent parts of the service from working. Signing out clears this application’s browser session storage; it does not delete readings saved on the server.
Payments and service providers
USDT transfers are recorded on public blockchains. Wallet addresses, amounts and transaction records may be publicly visible and cannot be erased by Quenway. We use blockchain data services to verify transfers. Infrastructure and AI providers may process information as needed to deliver and secure the service. Information may also be disclosed when required by applicable law.
Retention, security and your choices
Account information, readings, notes and transaction records are stored to provide account history and support service operations. Records may also need to be retained for security, accounting or legal reasons. The current website does not provide an automatic account-deletion or data-export tool, and no fixed automatic deletion period is currently configured.
Depending on applicable law, you may have rights to access, correct or request deletion of personal information. No security system can guarantee absolute protection. Use a unique password, keep sharing links private when appropriate and avoid entering information that is not needed for your reflection.
Policy updates
We may update this policy as the service changes. The revision date appears at the top of this page.
Back to home