Privacy policy
What we collect, why we collect it, and what you can do about it. The short version: your audio is yours, and the data we hold about you exists to run the product and answer you when you write in.
Structure and layout only. Every clause below is placeholder wording and must be written or reviewed by qualified counsel before this document is published or relied on.
01What we collect
Account information: your name, email address, and anything you add to your profile.
Your content: the audio files you upload, and everything derived from them — duration, waveform, BPM, key, sample rate, channel count and tags.
Usage information: sign-in events, API request logs, and basic device/browser information needed to keep the service secure.
02Why we collect it
To run the product: store and serve your audio, generate the metadata and tags that make search and browsing useful, and keep collections and shared packs working.
To operate your account: sign-in, billing, plan limits, and responding when you write in.
To keep the service secure and debug failures — most log data exists for this reason alone.
03How your audio is analyzed
Ready samples carry suggested tags, BPM, key and a waveform, produced by an automated analysis service that reads the file you uploaded. Every suggested tag is editable or removable — the vocabulary stays yours.
We do not use your audio to train models outside the pipeline that analyses and serves it back to you, and we do not license or sell it to anyone.
04Where it is stored
Audio files are held in Cloudflare R2 object storage. Account records, tags and other structured data live in a [REGION] database.
Payment details are held by our payment processor — see "Payment information" below; we never see or store a card number ourselves.
05Payment information
Paid plans are billed through [PAYMENT PROVIDER]. We receive confirmation that a payment succeeded or failed, and enough detail to show it on an invoice — never the full card number.
06Cookies
Loopbox sets a small number of cookies, all necessary to keep you signed in, plus one that carries a referral code to checkout. The full list, with names and lifetimes, is in the Cookie Policy.
07Your rights
You can ask to access, export, correct or delete the personal data we hold about you. There is no self-service control for this yet — write to legal@[DOMAIN] and we will handle the request by hand, normally within [N] days.
Depending on where you live, you may also have the right to object to or restrict certain processing, and to complain to your local data protection authority.
08Retention
We keep your content and account data for as long as the account is active. After cancellation we keep your files for [N] days so you can retrieve them, then remove them from live systems; backups age out within a further [N] days.
Server logs are kept for [N] days and then deleted automatically.
09Children
Loopbox is not directed at children under [AGE], and we do not knowingly collect personal data from anyone under that age.
10International transfers
Our infrastructure and subprocessors may process data outside the country you are in. Where that crosses a border requiring a safeguard, we rely on [TRANSFER MECHANISM — e.g. SCCs / adequacy decision]. [COUNSEL TO CONFIRM.]
11Changes to this policy
We may update this policy. Material changes are announced by email and on this page at least 30 days before they take effect.
12Contact
Questions about this policy, or a request under "Your rights" above, go to legal@[DOMAIN] or the registered address on the Legal page.