Privacy Policy
Last updated: April 10, 2026
1. Information We Collect
We collect information you provide directly and data generated through your use of SonicPush:
- Account information: email address, name, and payment details (processed by Stripe).
- Spotify data: public artist profile, genres, monthly listeners, track catalog, and popularity scores — accessed via Spotify's API with your authorization.
- Profile data (optional): any additional information you choose to share through onboarding or settings — such as bio, genre tags, social handles, similar artists, or track context. We collect these only when you provide them.
- Usage data: pages visited, features used, and interaction patterns to improve the Service.
2. How We Use Your Information
- To configure and run Meta ad campaigns on your behalf, optimised for cost-per-Spotify-follow.
- To compose creative variants from the assets you upload (artwork, reels, performance clips, lyric snippets).
- To process payments and manage your subscription.
- To send you weekly performance reports, monthly summaries, and proactive recommendations.
- To improve our optimization, hook, and audience-inference systems across the platform.
3. Information Sharing
We do not sell your personal information. We share data only in these limited cases:
- With Meta: the ad creative, audience parameters, and campaign metadata required to run your campaigns inside your own Meta ad account. Your card stays on file with Meta directly — we never custody ad spend.
- Payment processing: Stripe handles your subscription billing. We never store your full card number.
- Legal requirements: if required by law, regulation, or legal process.
4. Spotify Data
We access your Spotify data through OAuth authorization. We only read your public artist profile — we cannot modify your Spotify account, playlists, or streaming data. You can revoke Spotify access at any time through your Spotify account settings.
5. Data Retention
We retain your account data for as long as your account is active. After cancellation, we retain your data for 90 days to allow reactivation. After 90 days, your data is permanently deleted. You may request immediate deletion at any time by contacting us.
6. Data Security
We use industry-standard encryption (TLS) for data in transit and at rest. Access to user data is restricted to authorized personnel. We conduct regular security reviews. However, no system is 100% secure — we cannot guarantee absolute data security.
7. Your Rights
Depending on your jurisdiction, you may have the right to:
- Access the personal data we hold about you.
- Correct inaccurate data.
- Request deletion of your data.
- Export your data in a portable format.
- Object to or restrict certain processing of your data.
- Withdraw consent at any time.
To exercise any of these rights, email privacy@sonicpush.ai.
8. Cookies
We use essential cookies for authentication and session management. We do not use third-party advertising cookies. Analytics cookies are used only to understand aggregate usage patterns — no personal tracking across sites.
9. Children
SonicPush is not intended for users under 18. We do not knowingly collect data from minors. If you believe a minor has provided us with personal information, please contact us immediately.
10. Changes to This Policy
We may update this privacy policy from time to time. We will notify you of material changes via email. The “Last updated” date at the top reflects the most recent revision.
11. Contact
For privacy-related questions or data requests, contact us at privacy@sonicpush.ai.