Privacy Policy

Yeou Saju

Last Updated: August 16, 2026

Yeou Saju is operated by Four Pillars Labs, Inc., a Delaware corporation with its registered office at 1111B S Governors Ave, Suite 91742, Dover, Delaware 19904, United States ("we," "us," or "our"). We operate the Yeou Saju mobile application (the "App"), a Saju (Four Pillars of Destiny) reading service provided for entertainment purposes only. This Privacy Policy explains how we handle your information when you use our App.

For the purposes of the EU/UK GDPR, Four Pillars Labs, Inc. is the data controller of personal data processed in connection with the App.

We are committed to protecting your privacy and complying with applicable data protection laws, including the EU General Data Protection Regulation (GDPR), UK GDPR, Singapore Personal Data Protection Act (PDPA), Malaysia Personal Data Protection Act 2010, Hong Kong Personal Data (Privacy) Ordinance (PDPO), U.S. state privacy laws (including CCPA/CPRA and COPPA), Canada's PIPEDA and Quebec's Law 25, and the Australian Privacy Act 1988.


1. Information We Collect

We collect the following categories of information:

1a. Account Data (Stored)

The following information is collected and stored to operate your account and deliver the service:

  • Email address — used for account authentication, delivery of reading results, payment notifications, and service communications
  • Nickname — used to personalize your experience (not your real name)

1b. Reading Input Data

To generate your Saju reading, we collect the following:

  • Gender
  • Date of birth
  • Time of birth (if known)
  • Time zone / place of birth

This information is used to generate your reading. If you save it as a profile while signed in, it is recorded in your account so you can view that reading again across your devices (see Section 1c).

If you purchase a paid reading, payment is processed through Stripe (for international card payments) and Toss Payments (as the payment gateway). We do not directly collect, store, or have access to your full payment details (e.g., credit card numbers).

1c. Saved Profiles (Stored — Optional, Signed-In Users)

The App lets you save profiles — your own, and those of friends or family you add — so you can view their readings again without re-entering the details each time. A saved profile is used only to generate readings you ask for about that person in the App — for example their Daily Fortune or their compatibility with someone else. It is not used for anything other than producing a reading you have requested. A saved profile may include a nickname, date of birth, time of birth (if provided), gender, and birthplace / time zone.

  • If you are signed in, saved profiles are stored in your account so they are available across your devices.
  • If you are not signed in, saved profiles are stored only on your device and are never sent to or stored on our servers.

Saved profiles are protected by database row-level security so that no other user can view, edit, or delete them. They are not used for profiling or advertising, and are never sold or shared with third parties. You may delete any saved profile at any time within the App, and deleting your account deletes all of your saved profiles. You are responsible for having the necessary permission to save another person's birth details.

New kinds of readings, and profiles you saved earlier. We add new kinds of readings to the App over time. When we do, the profiles already in your account can be used for them as well, so that you do not have to enter the same birth details again — this includes profiles you saved before that reading existed. The purpose stays the same either way: producing a reading you asked for about that person. If you would prefer a profile not to be used this way, you can delete it at any time in the App, and we give notice of material changes as described in Section 11.

Access by our support team. Authorized members of our support team can view the saved profiles on your account when this is necessary to answer a request for help — for example, if you report that a reading looks wrong or that a profile has gone missing. They can only view them: our systems do not allow staff to change or delete a saved profile. Every such access is recorded, including which staff member viewed the information and when, and the information is not shown if that record cannot be written (see Section 1d).

1d. Support and Administration Records (Stored)

To keep our own access to your information accountable, we record administrative actions taken on accounts by our staff. Each record contains the action taken (for example, viewing saved profiles, granting or removing staff access, or suspending an account), the email address of the staff member who performed it, the email address and account identifier of the account concerned, and the time it occurred. Where the action was a profile view, the record also stores the number of profiles shown.

These records never contain the contents of a saved profile — no nicknames, birth dates, birth times, or birthplaces of the people you saved.

We keep these records so that the question "who looked at this information, and when" can always be answered. Because that is their purpose, they are retained differently from the rest of your account data: if you delete your account, we remove your email address from these records but keep the rest of the entry — see Section 3.

1e. If Someone Else Saved Your Details

Our users can save another person's birth details — usually a friend or family member — to see a reading about them. If someone has done this with your details, we hold that information without having collected it from you directly, and we have no way to contact you about it.

This section is provided so that the information is publicly available to you.

  • What is held: a nickname the person chose for you, your date of birth, and — if they entered them — your time of birth, gender, and birthplace / time zone. Nothing else about you.
  • Where it comes from: the account holder who entered it. They are required to have your permission before doing so, and they are responsible for removing your details if they no longer have it.
  • What it is used for: generating readings that the account holder asks for about you within the App. It is not used for profiling or advertising, is never sold, and is not shared with other users.
  • How to have it removed: ask the account holder to delete the profile — they can do this at any time in the App — or contact us at help@ysaju.com. If you contact us, we will need enough information to locate the record (for example, the email address of the person who saved it, if you know it). We will act on the request in line with the rights described in Section 8.
  • What we do not do: we do not use these details to create an account for you, to contact you, or to build any profile of you beyond generating the reading that was requested.

Information We Do NOT Collect

  • Government-issued identification numbers
  • Precise geolocation data
  • Biometric data
  • Social media account credentials

2. How We Use Your Information

Email Address

Your email address is used for the following purposes only:

  • Account authentication: Sending verification codes to confirm your identity
  • Reading delivery: Sending your completed Saju reading results
  • Payment notifications: Sending transaction confirmations and receipts
  • Service communications: Sending essential notices related to your account or the service

We do not use your email address for marketing communications unless you separately and explicitly opt in.

Reading Input Data

Your birth details are processed solely in real time to generate your personalized reading. Specifically:

  • Reading generation: Birth details are processed transiently to produce your reading
  • No profiling or automated decision-making: We do not use your data for profiling, behavioral analysis, or automated decisions that produce legal or similarly significant effects

Saved Profiles

If you save a profile while signed in, the stored birth details are used to let you view that profile's readings again across your devices, including readings we add to the App later. No other user can see them. Authorized members of our support team may view them only to resolve a request for help with your account, and each such access is recorded (see Sections 1c and 1d). We do not use saved profiles for profiling, behavioral analysis, advertising, or automated decision-making.

Support and Administration Records

We use these records for one purpose: to keep our own access to customer information accountable. They let us detect and investigate inappropriate access by our staff, and let us answer your questions about who has seen your information. We do not use them for analytics, profiling, or any other purpose.


3. Data Storage and Retention

What We Store

DataStoredRetention Period
Email addressYesUntil account deletion, or 7 years if associated with a payment record
NicknameYesUntil account deletion
Saved profiles (nickname, birth date, birth time, gender, birthplace)Yes — signed-in users onlyUntil you delete the profile or your account
Support and administration records (action, staff email, account email, timestamp)YesKept after account deletion, with your email address removed — see below
Payment transaction recordsYes (via payment processor)7 years (legal obligation under applicable financial regulations)
Email delivery logsYes (via AWS SES)90 days
Reading input data (birth details, time zone)No — except when saved as a profile (see above)Not retained — discarded after session

Account Deletion

Upon account deletion, your email address, nickname, and saved profiles are permanently deleted, except where retention is required by law (e.g., payment records).

Support and administration records are handled differently. If a member of our staff took an administrative action on your account — for example, viewing your saved profiles in response to a support request — a record of that action is kept after your account is deleted, but your email address is removed from it. What remains is the action, the staff member who performed it, the time, and an internal account identifier that no longer corresponds to any account.

We keep this much so that our own access to customer information stays reviewable after the fact — a record that can be erased on request would not serve that purpose. We remove your email address because keeping the record useful does not require keeping you identifiable in it. These records never contain the contents of your saved profiles.

You may request account deletion at any time by contacting us at help@ysaju.com.


For users in the European Economic Area (EEA), the United Kingdom, and other jurisdictions that require a legal basis for processing personal data, we rely on the following:

  • Contract performance (GDPR Art. 6(1)(b)): Processing your email address and nickname is necessary to provide the service, deliver your reading, and manage your account.
  • Consent (GDPR Art. 6(1)(a)): By entering your birth details and tapping "Next," you consent to the transient processing of your data for the purpose of generating your reading. Where you additionally choose to save a profile, you consent to our storing those details so you can reuse them for the readings you request in the App (and, for special category data, we rely on your explicit consent under Art. 9(2)(a)).
  • Legal obligation (GDPR Art. 6(1)(c)): Retention of payment records as required by applicable financial laws.
  • Legitimate interest (GDPR Art. 6(1)(f)): For basic service functionality such as fraud prevention and security; for allowing an authorized member of our support team to view the saved profiles on your account when that is necessary to answer a request for help; and for keeping a record of that access so that it remains auditable, including after an account is deleted.

Where your birth details are used in the context of philosophical or belief-based analysis, this may constitute special category data under GDPR Article 9. We obtain your explicit consent before processing such data.

You may withdraw your consent at any time by discontinuing use of the App. Reading input data used only to generate a reading is never stored, so its withdrawal requires no deletion. Where you have saved a profile, you may withdraw consent by deleting that profile at any time within the App, which removes the stored data.

EU/UK Representative

As Four Pillars Labs, Inc. is established in the United States and offers services to individuals in the EU and UK, we are required under Article 27 of the GDPR and UK GDPR to designate a representative in the EU and the UK. Information regarding our designated representative will be made available upon request at help@ysaju.com.


5. International Data Transfers

Our App infrastructure operates in the following regions:

ServiceProviderRegion
App hosting & session processingVercelicn1 (Seoul, Republic of Korea)
Account data & saved-profile storageSupabaseap-northeast-2 (Seoul, Republic of Korea)
Email deliveryAWS SESap-northeast-2 (Seoul, Republic of Korea)

Your data is processed in the Republic of Korea. Although we are a U.S. (Delaware) corporation, the personal data we directly store (account data and saved profiles) is not held on servers located in the United States. Payment transaction data may be processed by our payment processors in accordance with their respective infrastructure — in particular, Stripe processes card payment data primarily in the United States (see Section 6). If you access the App from outside Korea, your data will be transferred internationally.

  • EEA / EU users: Four Pillars Labs, Inc. is established in the United States, which is not subject to a general adequacy decision. However, the personal data we collect is stored and processed exclusively in the Republic of Korea (which has received an EU adequacy decision in December 2021). For payment transaction data processed by Stripe in the United States, we rely on Standard Contractual Clauses or equivalent safeguards under Article 46 GDPR. To the extent any personal data is accessed by personnel or providers located in the United States (including our hosting provider, Vercel) for support or administrative purposes, we likewise rely on Standard Contractual Clauses.
  • UK users (UK GDPR): The UK has adopted an adequacy decision for the Republic of Korea (SI 2022/1213), permitting lawful transfers of data stored and processed in Korea (Vercel, Supabase, AWS SES). For payment transaction data processed by Stripe in the United States, and any access from the United States, we rely on the UK International Data Transfer Agreement or the UK Addendum to the EU Standard Contractual Clauses.
  • Australian users (APP 8): We take reasonable steps to ensure that data processed in Korea meets standards comparable to the Australian Privacy Principles. Payment transaction data processed by Stripe in the United States is subject to Stripe's own privacy framework; we take reasonable steps to ensure equivalent protection under APP 8.
  • Canadian users (PIPEDA / Law 25): Data is transferred to and processed in Korea. Payment transaction data processed by Stripe in the United States is governed by Stripe's privacy framework and applicable cross-border safeguards. Quebec residents are hereby notified that their data may be transferred outside Quebec, and equivalent protection measures are in place.
  • Singapore / Hong Kong users: We ensure cross-border transfers comply with the PDPA and PDPO respectively, including applicable contractual protections. Payment transaction data processed by Stripe may be transferred to and processed in the United States in accordance with applicable cross-border transfer requirements.

Saved profiles, when created, are stored in the Republic of Korea (Supabase) in the same manner as other account data. Birth details processed only to generate a reading are handled transiently in Korea during session processing.


6. Data Sharing and Third Parties

We do not sell or rent your personal information. Aside from the advertising and analytics partners described below (with whom we share only hashed, non-reversible identifiers and pseudonymous event data for advertising measurement and analytics), we do not share your personal information with third parties for their own independent purposes.

We share limited data with the following service providers, solely to operate the App:

Service ProviderPurposeData SharedRegion
VercelApp hosting & session processingTransient session data (not stored)icn1 (Seoul, Korea)
SupabaseAccount data & saved-profile storageEmail address, nickname, and saved profiles (signed-in users only)ap-northeast-2 (Seoul, Korea)
AWS SESEmail deliveryEmail address, email contentap-northeast-2 (Seoul, Korea)
StripeInternational card payment processingPayment transaction data onlyPer Stripe's infrastructure (primarily United States)
Toss PaymentsPayment processing (international gateway)Payment transaction data onlyRepublic of Korea

All service providers are bound by data processing agreements that restrict them from using your data for any purpose other than providing services to us.

Advertising and Analytics Partners

To measure advertising performance and improve our service, we use the following advertising and analytics partners. Where these partners receive identifiers, they receive them only in hashed (irreversible SHA-256) form for conversion matching; we do not transmit your plain-text email address.

PartnerPurposeData SharedRegion
Google (Google Analytics 4)Traffic & funnel analyticsPseudonymous usage / device dataUnited States
PostHogProduct analyticsPseudonymous usage / device dataUnited States
Meta Platforms (Meta Pixel & Conversions API)Advertising measurement & optimizationHashed email, hashed user identifier, conversion event dataUnited States
TikTok / ByteDance (TikTok Pixel)Advertising measurement & optimizationHashed email, hashed user identifier, conversion event dataUnited States / Singapore

For advertising optimization, Meta and TikTok may act as independent controllers of the hashed data they receive. Under certain U.S. state privacy laws, transmitting hashed identifiers to these partners for cross-context behavioral advertising may constitute "sharing" — see Section 14 for your opt-out rights. Where required by applicable law (e.g., the EU ePrivacy Directive / GDPR), we obtain your consent before activating these technologies (see Section 9).

We do not share saved profiles with any advertising or analytics partner.

Sub-Processor Privacy Policies


7. Children's Privacy

We take children's privacy seriously. Our App is not intended for children under the minimum age specified by applicable law:

JurisdictionMinimum AgeRequirement
United States (COPPA)13Verifiable parental consent required under 13
European Union / Germany16Parental consent required under 16
United Kingdom13Parental consent required under 13
Canada (general)13Parental consent required under 13
Canada (Quebec)14Parental consent required under 14
Malaysia18Parental consent required under 18
Singapore13Parental consent required under 13
Australia15Consent capacity assessed individually under 15
Hong Kong18Age-appropriate approach required under 18

If we become aware that we have processed data from a child below the applicable minimum age without proper parental consent, we will take prompt steps to address the situation. Reading input data used only to generate a reading is not stored; where any saved profiles have been stored for such an account, we will delete them.


8. Your Rights

Depending on your jurisdiction, you may have some or all of the following rights regarding your personal data:

  • Right of access: Request confirmation of whether we process your personal data and, if so, obtain a copy.
  • Right to rectification: Request correction of inaccurate data.
  • Right to erasure ("right to be forgotten"): Request deletion of your account data and any saved profiles. Reading input data used only to generate a reading is never stored and therefore cannot be subject to a deletion request; saved profiles can be deleted at any time within the App or by contacting us. Support and administration records are kept after account deletion for accountability purposes, with your email address removed from them — see Section 3.
  • Right to restrict processing: Request that we limit the processing of your data.
  • Right to data portability: Receive your data in a structured, commonly used format.
  • Right to object: Object to data processing based on legitimate interests.
  • Right to withdraw consent: Withdraw consent at any time without affecting the lawfulness of processing performed prior to withdrawal.
  • Right to non-discrimination: (California, USA) We will not discriminate against you for exercising your privacy rights.

These rights are not limited to account holders. If another person saved your birth details, you may exercise them too — see Section 1e for how.

How to Exercise Your Rights

To exercise any of these rights, please contact us at help@ysaju.com. We will respond within the timeframe required by applicable law (generally 30 days, or 45 days for CCPA requests).

Right to Lodge a Complaint

If you believe your data protection rights have been violated, you have the right to lodge a complaint with your local data protection authority:

  • EU/EEA: Your national data protection authority (list available at edpb.europa.eu)
  • UK: Information Commissioner's Office (ICO) — ico.org.uk
  • Singapore: Personal Data Protection Commission (PDPC)
  • Malaysia: Department of Personal Data Protection (JPDP)
  • Canada: Office of the Privacy Commissioner (OPC), or Commission d'accès à l'information du Québec (CAI) for Quebec residents
  • Australia: Office of the Australian Information Commissioner (OAIC)
  • Hong Kong: Office of the Privacy Commissioner for Personal Data (PCPD)

9. Cookies and Tracking Technologies

Our App does not use cookies for tracking or advertising purposes. If we use cookies or similar technologies in the future, we will update this policy and obtain your consent where required by law.


10. Data Security

We implement appropriate technical and organizational measures to protect your data, including:

  • Encryption in transit: All data transmitted between your device and our servers is encrypted using TLS/SSL.
  • Encryption at rest: Account data and saved profiles stored in Supabase are encrypted at rest using AES-256.
  • Access controls: Row-level security (RLS) is enforced on our database so that no user can access another user's data, including saved profiles. Access by our own staff is separately restricted: support personnel can view saved profiles only through a dedicated, permission-controlled interface that does not allow changing or deleting them.
  • Accountability for internal access: Every administrative action taken on an account by our staff — including viewing saved profiles — is recorded with the identity of the staff member and the time. If that record cannot be written, the information is not displayed.
  • Minimal retention: Reading input data used only to generate a reading is never written to storage. Saved profiles are stored only when you choose to save them and can be deleted at any time, significantly reducing the amount of sensitive information at rest.

In the event of a data breach affecting any stored account data, we will notify the relevant data protection authorities and affected individuals within the timeframes required by applicable law (e.g., 72 hours under GDPR; 72 hours to the Commissioner and 7 days to affected individuals under Malaysia's PDPA 2010 as amended).


11. Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or applicable laws. This includes adding new kinds of readings that saved profiles can be used for (see Section 1c). We will notify you of material changes by posting the updated policy in the App and updating the "Last Updated" date at the top. For significant changes, we will provide prominent notice (e.g., in-app notification) and, where required by law, obtain your renewed consent.


12. Contact Us

If you have questions about this Privacy Policy, wish to exercise your data protection rights, or have concerns about how we handle your information, please contact us. This includes people who do not use the App themselves but whose birth details someone else has saved — see Section 1e.

Four Pillars Labs, Inc. Email: help@ysaju.com Phone: +1 (839) 274-3653 Address: 1111B S Governors Ave, Suite 91742, Dover, Delaware 19904, United States


13. Entertainment Disclaimer

Yeou Saju provides Saju (Four Pillars of Destiny) readings based on traditional East Asian philosophical interpretation. All content is provided for entertainment purposes only and does not constitute financial, medical, legal, psychological, or any other form of professional advice.

We make no claims regarding the scientific validity, accuracy, or predictive power of our readings. Please consult qualified professionals before making important life decisions.


14. Jurisdiction-Specific Provisions

For California Residents (CCPA/CPRA)

  • Categories of personal information collected: Identifiers (nickname, email address); characteristics of protected classifications (gender and birth details — processed session-only to generate readings, and stored only if you save a profile); commercial information (payment transaction records via Stripe / Toss Payments); internal records of administrative access to your account by our staff (see Section 1d). We do not sell or share your personal information as defined under the CCPA.
  • Right to know, delete, correct, and opt out of sale: See Section 8. We do not sell personal information. Deletion rights apply to stored account data (email address, nickname) and to any saved profiles. Internal records of administrative access are kept after deletion for accountability purposes, with your email address removed from them — see Section 3.

For Quebec Residents (Law 25)

  • We provide this Privacy Policy in English and French (where applicable).
  • Your data may be transferred to servers outside Quebec (Vercel and Supabase — Seoul, Republic of Korea). We take reasonable steps to ensure equivalent protection applies.
  • You may request a privacy impact assessment summary for any cross-border transfer of your data.

For German Users (BDSG / GDPR)

  • Where your birth data is processed in connection with a philosophical belief-based analysis, we treat this as special category data (GDPR Art. 9) and obtain your explicit consent prior to processing.

For Malaysian Users (PDPA 2010)

  • We provide data collection notices in both English and Bahasa Malay.
  • We have appointed a Data Protection Officer as required under the 2024 amendments (effective June 1, 2025).

For Australian Users (Privacy Act 1988)

  • We comply with the Australian Privacy Principles (APPs). Under APP 8, we take reasonable steps to ensure any overseas processing of your data (Vercel, Supabase, and AWS SES — Seoul, Republic of Korea) meets APP standards.
  • You may request access to or correction of your stored account data at any time by contacting help@ysaju.com.

For Singapore Users (PDPA)

  • You may withdraw consent for data processing at any time by contacting us. We will process your withdrawal within a reasonable timeframe and inform you of any consequences.
  • Account data is stored in the Seoul region (Supabase — ap-northeast-2, AWS SES — ap-northeast-2). App session processing occurs via Vercel (icn1, Seoul).

For Hong Kong Users (PDPO)

  • You have the right to request access to and correction of your personal data held by us.
  • We will not use your personal data for direct marketing without your explicit consent.

This Privacy Policy is provided in English. Where translations are provided for convenience, the English version shall prevail in case of any inconsistency.