1. Information We Collect
1.1 Personal Information
- Email address and password for account creation
- First and last name
- Payment information (processed securely by Stripe)
- Subscription and billing details
1.2 Usage Data
- Music projects and compositions you create
- Audio files uploaded for AI transcription
- MIDI files and music notation data
- Usage patterns and feature interactions
- Device information and browser type
1.3 Technical Data
- IP address and location data
- Cookies and session information
- Analytics data for service improvement
- Error logs and performance metrics
2. How We Use Your Information
- Account Management: Create and manage your user account
- Service Provision: Provide piano roll editing and AI transcription services
- Payment Processing: Handle subscriptions and billing through secure payment processors
- AI Transcription: Process audio files to generate MIDI transcriptions
- Project Storage: Save and retrieve your music projects
- Communication: Send verification emails and service updates
- Analytics: Improve our service and user experience
- Error Tracking: Monitor and fix technical issues
3. Data Storage and Security
3.1 Data Storage
- User data stored in secure cloud databases with point-in-time recovery
- Project files stored in secure cloud storage with versioning enabled
- Audio files temporarily processed for transcription
- All data encrypted in transit and at rest
3.2 Security Measures
- HTTPS encryption for all data transmission
- Password hashing using bcrypt
- Rate limiting to prevent abuse
- Regular security audits and updates
- Access controls and authentication
4. Data Sharing and Third Parties
We do not sell, trade, or rent your personal information to third parties. We may share data with trusted service providers who help us operate our platform:
- Payment Processors: Secure payment processing and subscription management
- Email Services: Email delivery and communication services
- Cloud Infrastructure: Secure data storage and hosting services
- Analytics Services: Platform performance monitoring and user experience improvement
- Monitoring Services: Error tracking and technical issue resolution
- AI Services: Audio transcription and processing services
4.1 Service Provider Categories
Our service providers fall into the following categories:
- Infrastructure Services: Cloud hosting, storage, and database services that securely store your data
- Business Operations: Payment processing, email delivery, and customer support services
- Performance Monitoring: Analytics, error tracking, and service improvement tools
- AI and Processing: Machine learning services for audio transcription and analysis
All service providers are contractually bound to protect your data and use it only for the specific purposes we've authorized.
5. Your Rights (GDPR)
Under GDPR, you have the following rights:
- Access: Request a copy of your personal data
- Rectification: Correct inaccurate personal data
- Erasure: Request deletion of your personal data
- Portability: Receive your data in a structured format
- Objection: Object to processing of your data
- Restriction: Limit how we process your data
To exercise these rights, contact us at: privacy@keycraft.org
6. Data Retention
- Account Data: Retained while your account is active
- Projects: Stored until you delete them or close your account
- Audio Files: Deleted after transcription processing
- Logs: Retained for 30 days for security and debugging
- Analytics: Retained for 1 year for service improvement
7. Cookies
We use cookies for:
- Authentication and session management
- Analytics and performance monitoring
- User preferences and settings
- Security and fraud prevention
8. Contact Information
If you have questions about this Privacy Policy, please contact us:
9. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by:
- Posting the new Privacy Policy on this page
- Sending an email notification for significant changes
- Updating the "Last updated" date