EnglishالعربيةবাংলাDeutschEspañolFrançaisहिन्दीPortuguêsРусскийاردو中文

Privacy Policy

Last updated: 2026-09-16

1. Who we are

SoundForce ("we," "us," "our") is published by Maxence Lhuisset. It lets you log the concerts you've attended, visualize your live-music history as an interactive graph, and optionally connect it to your music-listening data. Questions about this policy: partytool.app@gmail.com.

2. Information we collect

Account information: your email and password (stored only as a salted hash, never in plaintext), or, if you sign in with Apple or Google, the identifier and email they share with us.

Profile information: your display name and, if you add one, a profile picture.

Places you go to shows: if you add them, your home city and up to five other cities you'd travel to for a concert, each picked from a list of cities. We use them to show upcoming concerts near those places. They come only from what you choose, never from your device's location, and are not shown to other users.

Content you create: concerts you log, photos and captions you attach to a concert, comments you post, and likes on other users' photos.

Safety reports and blocks: if you report content or another user, we store what you reported, the reason you chose, any description you wrote, and the fact that you filed it, so we can review it and act. If you block someone, we store that block so the two of you stay apart. Reports are visible only to us, never to the person you reported. Filing one also raises an alert in our server-side error-monitoring tool (Sentry) so we see it quickly; that alert carries only the report's internal identifiers and the reason category — never the text you wrote, your username, or your email.

Optional music connections: if you connect Spotify or Apple Music, we store what they share (playlists, listening/top-artist data, or your music library) and an access token, only to power the features you asked for. These connections are off by default — disconnect them anytime in Settings.

Listening-history files: if you import a data export you requested from Spotify or Google (YouTube Music), the app reads that file on your device and sends us only artist names, song titles and play counts — never the dates, IP addresses, locations or device details the file also contains. The file itself is not uploaded or kept. The counts join your library like any other entry, and you can remove them from your graph anytime.

Public catalog and event data: to fill in artist, concert, and song information, our backend queries MusicBrainz and, for upcoming concerts, Ticketmaster (or Bandsintown). These lookups are about artists and events, not about you, though a lookup may include a search term you typed or a city from your profile — never your name, email, or account.

Artist photos: artist photos are freely licensed images from Wikimedia Commons. Our backend picks each photo using public catalog identifiers only, and the app then loads the image directly from Wikimedia's servers, which — like any image on the web — shows Wikimedia your IP address and basic device information, but no account information. We don't store these photos.

Usage events: the app sends us a small, fixed set of events about key steps — for example opening the app, viewing the demo, going through onboarding, signing up, starting or finishing an import, logging a first concert, exporting your graph, opening a ticket link, viewing the Constellation+ offer, and starting or completing a purchase. Each event carries only its name, a few counts or options (such as the import source or plan), the app version, your platform (iOS, Android, or web), and a random install ID that the app generates and stores on your device. Once you're signed in, events are also linked to your account. They never include what you typed, the names of artists or concerts, your email, or any advertising identifier. We collect them ourselves — no third-party analytics service receives them — and use them only to understand how many people complete each step so we can improve the app, never for advertising or to track you across other apps or websites.

No third-party analytics or crash reporting in the app: SoundForce contains no third-party analytics, telemetry, or crash-reporting SDK, and does not collect your device model. Apart from the usage events above, the only device details we receive are the app version, platform, and language attached to an in-app feedback message, if you choose to send one.

Website: our website and web app (soundforce-rho.vercel.app) use Vercel Web Analytics to count page views. It uses no cookies and does not identify you personally. This does not apply to the iOS and Android apps.

Push notification token: a device identifier used to deliver notifications you've turned on.

Camera and photo access: requested only at the moment you choose to attach a photo to a concert.

Advertising: on the free tier, ads are served through Google AdMob. SoundForce requests non-personalized ads only — we do not read or transmit your device's advertising identifier (IDFA on iOS, AAID on Android), we do not track you across other companies' apps or websites, and we do not build an advertising profile from your concert or listening data. AdMob still receives the coarse, non-identifying signals it needs to deliver and count an ad (such as approximate region and device type).

Subscription information: Constellation+ is billed by Apple or Google. We use RevenueCat to check your entitlement — it shares your purchase receipt and a SoundForce user ID (not your name or email) with us. We never see your payment card details.

3. How we use it

To run your account and the app's core features, sync data from services you've connected, populate accurate catalog data, validate your Constellation+ subscription, show and measure ads on the free tier, send notifications you've opted into, diagnose and fix bugs using the error reports our own servers produce when a request fails (we use Sentry for this), understand how many people complete key steps in the app, using the usage events above, so we can improve it, and meet legal obligations. We do not sell your personal information, we do not track you across other companies' apps or websites, and we do not use your concert or listening data to build advertising profiles.

4. Who we share it with

Our hosting provider and photo storage (Cloudflare R2, or local server storage) to run the app; Spotify or Apple Music if you connect them; MusicBrainz, which receives search terms; Ticketmaster (or Bandsintown), which receive artist names and cities, never anything that identifies you; Wikimedia, which receives your IP address when the app loads an artist photo; Vercel, which hosts our website and counts its page views; RevenueCat and Apple/Google to manage and process your subscription; Google AdMob, which receives only coarse, non-identifying delivery signals and never an advertising identifier, for non-personalized ads on the free tier; Sentry, which receives server-side error reports from our backend and safety-report identifiers, but no app crash logs, device model or usage data; and law enforcement or regulators only if legally compelled. We never sell your data to data brokers or advertisers, and we don't share your content beyond what you post publicly in the app. Usage events are not shared with anyone.

5. How long we keep it

As long as your account is active. Deleting your account (Settings → Delete account) removes your profile, concerts, photos, comments, likes, library and imported listening data, saved places, and the usage events linked to your account within 30 days, except records we must legally retain. Usage events recorded before you signed in carry only the random install ID and are not linked to your account. Backups age out of rotation within 90 days.

6. Your rights and choices

View and edit your content in the app anytime; delete individual items or your whole account (irreversible); disconnect Spotify or Apple Music anytime in Settings; control notifications in your device settings; ad tracking: there is nothing to opt out of — we request non-personalized ads only and never ask for tracking permission; remove imported listening data from your graph and change or clear your places anytime; reset the install ID by uninstalling the app; go ad-free with Constellation+; contact us for a data export.

If you're in the EEA/UK: our legal bases are contract performance, legitimate interests, consent, and legal obligation. You have rights to access, correct, delete, restrict, and port your data, and to object to processing — contact us or your local data protection authority. Usage events rely on our legitimate interest in understanding whether the app works; you can object by contacting us.

If you're a California resident: you can ask what personal information we collect, request deletion, and opt out of "sale" or "sharing" — we do not sell personal information.

7. Children's privacy

SoundForce isn't directed to children under 13 (or the minimum age in your country, if higher), and we don't knowingly collect their personal information. Contact us if you believe a child has created an account and we'll delete it.

8. International data transfers

Our infrastructure may process and store data outside your own country. Where required, we rely on appropriate safeguards for transfers out of the EEA/UK.

9. Security

Passwords are hashed and never stored in plaintext; your login token lives in your device's secure keychain/keystore; data in transit is encrypted (HTTPS). No system is perfectly secure, and we can't guarantee absolute security.

9a. Ticket links and music-service links

If you follow a ticket link, you leave SoundForce for that seller's own site or app, and their privacy policy applies from that point. The link may carry an affiliate code identifying SoundForce as the referrer, and a label saying which screen of the app it was tapped on. It does not carry any identifier for you — not your account, not your email, and not an advertising identifier.

Buttons that open a song, artist, or setlist search in Spotify, YouTube, or Apple Music take you to that service and send it only the search term (such as an artist or song name) — never your account or any identifier. Its own privacy policy applies from there.

10. Changes to this policy

We'll notify you in-app or by email before material changes take effect. Continued use of SoundForce after that means you accept the update.

11. Contact us

Questions, requests, or complaints about this policy: partytool.app@gmail.com