Privacy Policy
Your privacy is important to us. Learn how we collect, use, and protect your information.
Last updated: August 10, 2026
This Privacy Policy is provided by MMC Media LLC, doing business as Psalmix ("we," "us," or "our").
Effective Date: June 12, 2026
This policy covers both the Psalmix website (psalmix.com) and the Psalmix mobile applications for iOS and Android.
What changed on July 25, 2026: we added the option of advertising cookies on our website, so we can measure whether our ads work. They are off by default and load only if you opt in — accepting analytics does not accept advertising. They never run inside the app, and we never share your listening history with advertisers. Previously this policy said we used no advertising cookies at all; sections 4, 8 and 12 now describe exactly what we do and how to opt out.
What changed on July 29, 2026: for people who opted in to advertising and arrived by clicking one of our ads, we now report account signups (including via Google or Apple), checkout starts, trial starts and payments to Meta from our own servers as well as from the pixel. This is how we find out which ads bring people who actually subscribe, rather than only which ads bring clicks — a payment is confirmed by our payment provider after you have left the page, and a Google or Apple signup finishes somewhere the pixel is never loaded. What is sent is the ad click identifier, a one-way hashed email address, and, for payments, the amount paid; never your listening history, and never anything if you did not opt in. Section 4 describes it in full.
What changed on August 9, 2026: on our public marketing and signup pages — and only if you opt in to analytics cookies — we now record how the page is used so we can replay it and see where people get stuck. A recording shows mouse movement, clicks and scrolling; all text on the page is masked in your own browser before the recording is sent — both what you type and what the page shows back to you — so we receive a moving wireframe, never readable words. Recording never runs on the pages where you listen, browse your library, or manage your account, and it is never used for advertising. Recordings are stored in the United States and deleted after 30 days. Sections 1, 4, 8, 9, 11, 12 and 13 describe it in full — Section 4 is where PostHog is named as our processor — and "Essential only" in the cookie banner declines it outright.
What changed on August 10, 2026: if you opt in to analytics cookies, we now count a short, fixed list of named steps — being shown a price, starting checkout, your browser seeing the subscription confirmed when you return from the payment provider, starting playback for the first time, and the steps of the signup form itself, such as moving between fields, a validation message, or choosing to sign up with Google or Apple. Some of these run before you have an account — the steps of the signup form, and being shown a price or pressing play on our public marketing pages — while starting checkout and seeing a subscription confirmed can only happen once you are signed in. Nothing is counted on a shared song link you open without an account. They carry nothing about what you listen to: no song, playlist, artist or station is ever attached, and the address of any page inside the app is replaced with a placeholder before it is sent. Where something goes wrong we record a fixed category — for example "that email is already registered" — never the error text itself. We also deliberately do not join the two halves: when you sign in, what you did beforehand is not linked to your account, and the session recording of your visit before signing up cannot be looked up from it. Session recording is unchanged and still never runs on the pages where you listen, browse your library, or manage your account. We also stopped naming Mixpanel as a provider — it was listed but never actually received anything, and leaving it in a list of who gets your data would have been misleading. Section 8 describes all of this in full.
What changed on August 13, 2026: on the same public marketing and signup pages, and under the same analytics opt-in, we now also add up where on a page people click and how far down they scroll, so we can see which parts of a page get used and which get missed. This is the same mouse activity a session recording already captured, counted as positions on the page rather than watched back one visit at a time — it adds no new kind of information about you, and it is not tied to your account. It carries no text: a click is recorded as a position, never as what you clicked on. Like recording, it runs only on those public pages — never on the pages where you listen, browse your library, or manage your account — and choosing "Essential only" declines it outright. Section 8 describes it in full.
Privacy at a Glance
We only collect what's necessary for the service
Your data is encrypted and secure
We share your data only with the service providers listed in this policy. We do not sell your personal information, and advertising cookies stay off unless you turn them on.
1. Information We Collect
Account Information
- Name and email address
- Email address you provide if you join our pre-launch waitlist (used to contact you about availability; you can unsubscribe anytime)
- Date of birth (used to verify you meet our minimum age requirement)
- Password or, if you sign in with Apple or Google, the unique identifier those providers return to us
- Profile preferences and settings
- Family member profiles (names and ages, where applicable)
- Subscription and purchase records (handled by our payment processors — see Section 4)
Usage Information
- Songs listened to, playlists created, and listening history
- Achievement progress and activity logs
- Device information (model, operating system version, app version)
- IP address and approximate location derived from it
- Session recordings on our public marketing pages (web only, and only if you opt in to analytics cookies) — a replay of how a page was used: mouse movement, clicks, scrolling, and moving between pages. All text is masked in your browser, so the words never reach us. See Section 8.
- Click and scroll positions on those same public pages (web only, and only if you opt in to analytics cookies) — where on a page people click and how far down they scroll, added up across visitors into a heatmap. Positions only: never what you clicked on, and never tied to your account. See Section 8.
- A short, fixed list of named events (web only, and only if you opt in to analytics cookies) — recording that you were shown a price, started checkout, saw a subscription confirmed, pressed play for the first time, or moved through a step of the signup form. Some occur before you have an account and some only while you are signed in. They never include what you listened to, and the address of any page inside the app is replaced with a placeholder before anything is sent. See Section 8.
Mobile-Specific Information
- Push notification tokens: If you enable notifications, we store the device token issued by Apple or Google so we can send you alerts (new music, account activity, reminders). You can revoke this at any time in your device settings.
- In-app purchase receipts: When you subscribe through the App Store or Google Play, we receive a purchase receipt from RevenueCat to verify and provision your subscription. We do not see your payment card.
- Crash and diagnostic data: Anonymous crash reports and performance metrics may be collected to help us fix bugs.
Content You Create
- Playlists and favorites
- Profile customizations
2. How We Use Your Information
- To provide and improve our music streaming service
- To verify your age at signup and enforce our minimum age requirement
- To generate personalized recommendations
- To track achievements and progress
- To process subscriptions and manage billing
- To send transactional emails and, if you opt in, push notifications
- To deliver over-the-air updates to the mobile app
- To ensure content remains family-appropriate
- To prevent fraud and abuse
Refund Policy: For our refund policy, see Section 5 of our Terms of Service. Mobile in-app purchases are subject to Apple App Store or Google Play refund policies.
Listening Activity as Sensitive Data
Because our catalogue includes worship and gospel music alongside every other genre, your listening history may reflect religious preferences or beliefs. We treat this as sensitive personal information. We do not sell your listening history. We do not share it with advertisers or advertising networks. It is used only to improve your personal recommendations and service experience.
3. AI-Generated Content
Important Disclosure: All music on Psalmix is generated using artificial intelligence technology. We want to be transparent about how this works and what data is involved.
AI Music Generation Process
Our music is created using AI models, including OpenAI's API and other AI music generation services. The AI generates original music based on:
- Musical themes and genre preferences
- Lyrical concepts and topics
- Style and mood parameters
- Content safety and values-alignment guidelines
Data Sent to AI Services
We do NOT send any personal user data to the AI services that generate our music. Only song generation parameters are processed:
- What IS sent: Musical themes, genre specifications, lyrical concepts, style parameters
- What is NOT sent: Your name, email, listening history, personal information, or any data that identifies you
These music-generation services receive only the creative parameters needed to generate music. They do not receive or store any information about individual users. This is true regardless of whether you use Psalmix on the web or mobile. (Our in-app support assistant is handled separately — see "AI Customer Support Assistant" below.)
AI Service Providers
We use the following AI services for content generation:
- OpenAI API: For lyric generation, theme development, content safety analysis, and powering our in-app support assistant (see below)
- Suno AI: For music production and audio generation
For music and content generation, these services operate under their own privacy policies and terms of service and receive only anonymized creative parameters from us, never your personal information.
AI Customer Support Assistant
Our in-app support chat is powered by OpenAI. The messages you type are sent to OpenAI for the sole purpose of generating a helpful reply. OpenAI processes this data under its API terms and Data Processing Addendum, which provide that data sent through the API is not used to train its models. We store your support conversation — together with any email address you give us so our team can follow up — in our own systems, and automatically delete those records after 90 days; OpenAI separately retains its own copy of the messages for at least 30 days under its API data-retention policies. When a request needs an account-specific action, we hand the conversation off to a human on our support team.
4. Service Providers & Information Sharing
We do not sell, trade, or rent your personal information to third parties. We share information only with the service providers listed below, and only for the purposes described. One of them — Meta, for advertising measurement — receives nothing at all unless you opt in to advertising cookies.
Web Service Providers
- Creem (web payment processing): Processes web subscription checkouts. Receives the information needed to bill you (name, email, payment instrument). We do not store full card numbers. See creem.io/privacy.
- PostHog (product analytics & session replay): Helps us see how visitors move through Psalmix, so we can find where people get stuck. PostHog loads only after you opt in to analytics cookies. It does two separate things, with different limits. Session replay runs only on our public marketing and signup pages, and never on the pages where you listen, browse your library, or manage your account. Product analytics — a short list of named events such as completing signup, viewing a price, starting checkout, and starting playback — runs both on those public pages and inside the app once you are signed in. Those events record that something happened, never what you listened to: no song, playlist, artist, or station is ever included, and the address of any page inside the app is replaced with a placeholder before anything is sent. When you sign in we start a new, unlinked identity, so the events and the recording from before you had an account are not joined to it. It acts as our data processor under a Data Processing Agreement — it processes this information only on our instructions, and does not use it for its own purposes or for advertising. Recordings are hosted in the United States and deleted after 30 days. All text on the page — what you type and what the page displays back to you — is masked in your browser before anything is sent, so PostHog never receives readable content. Withdraw consent anytime in Settings → Privacy. See posthog.com/privacy.
- Google Tag Manager: Manages our analytics scripts using Google Consent Mode. No analytics scripts are loaded until you give consent through our cookie banner. See policies.google.com/privacy.
- Vercel: Hosts our website and processes standard server logs (such as IP address and request data) needed to serve and secure the site. See vercel.com/legal/privacy-policy.
- Meta / Facebook (advertising measurement): If — and only if — you opt in to advertising cookies, the Meta pixel loads on our public marketing pages and tells us whether an ad led to a visit or a signup. Meta receives your IP address, browser information, and the marketing page you viewed. It does not receive your listening history, playlists, or any song data, and it never loads on the pages where you listen, browse your library, or manage your account. Under California law this counts as "sharing" for cross-context behavioral advertising. Withdraw consent anytime in Settings → Privacy. See facebook.com/privacy/policy.
Server-side conversion reporting. Under the same opt-in, and only for people who reached us by clicking one of our ads, we also report account signups (including via Google or Apple), checkout starts, trial starts and payments to Meta directly from our servers. We store that ad's click identifier on your account when you sign up, and when one of those events happens we send Meta that identifier, a one-way hashed (scrambled and unreadable) version of your email address, and, for payments, the amount paid. We do this because the events that matter do not happen in a web page: a payment is confirmed by our payment provider after you have left the site, and a Google or Apple signup completes on a part of our site the pixel is never loaded on. What we do not send: your email address in readable form, your IP address, your device or browser information, and — without exception — anything about what you listen to. If you did not opt in to advertising, nothing is reported from our servers. If you withdraw, the stored click identifier is deleted from your browser immediately, and our servers stop reporting for your account as soon as the withdrawal is connected to it — immediate when you make the change while signed in.
Mobile App Service Providers
- Apple App Store / Apple Sign-In: If you sign in with Apple, Apple shares a unique identifier and (if you choose) your name and email with us. In-app purchases on iOS are processed by Apple under its own privacy policy.
- Google Play / Google Sign-In: If you sign in with Google, Google shares a unique identifier and basic profile information with us. In-app purchases on Android are processed by Google under its own privacy policy.
- RevenueCat: Verifies App Store and Google Play purchase receipts and manages subscription state. RevenueCat receives the receipt and a pseudonymous user identifier — not your payment card. See revenuecat.com/privacy.
- Expo: Used to deliver push notifications and over-the-air updates to the mobile app. Expo receives push tokens (when you opt into notifications) and basic device information needed to deliver updates. See expo.dev/privacy.
Shared Infrastructure (Web and Mobile)
- Supabase: Hosts our application database, authentication, and file storage. Substantially all personal information described in this policy is stored on Supabase's infrastructure on our behalf. See supabase.com/privacy.
- Cloudflare R2: Stores audio files and images we serve to you.
- Resend: We use Resend on our backend to deliver authentication emails (such as one-time verification codes), account notifications, and other transactional emails to both web and mobile users. Resend processes recipient email addresses and message content on our behalf. See resend.com/legal/privacy-policy.
Other Disclosures
- Legal Requirements: When required by law or to protect our rights.
- Business Transfers: In connection with a merger or acquisition (with notice to users).
- With Your Consent: When you explicitly agree to share information.
Third-Party AI Services: The AI services that generate our music (OpenAI and Suno) never receive your personal information — only anonymized creative parameters. Separately, if you use our in-app support assistant, the messages you type and any email you provide are sent to OpenAI only to generate a reply, as described in Section 3.
5. Age Requirements & COPPA Compliance
Psalmix is intended for users 13 years of age or older. We are committed to complying with the Children's Online Privacy Protection Act (COPPA).
Minimum Age Requirement
Psalmix is intended for users 13 years of age or older. We collect date of birth at signup to verify this. Users who indicate they are under 13 are blocked from creating an account and directed to a parent. If we become aware that we have inadvertently collected information from a child under 13, we will delete it promptly. To report a concern, contact hello@psalmix.com.
No Child Accounts
We do not offer child accounts. Psalmix is for users 13 and older. Family plans allow up to 6 household members, all of whom must be 13 or older.
6. Data Security
We implement industry-standard security measures to protect your information:
- Encryption of data in transit (HTTPS/TLS) and at rest
- Authentication and database access secured through Supabase, with row-level security policies enforcing per-user access
- Regular security audits and monitoring
- Limited access to personal information on a need-to-know basis
- Regular software updates and security patches
7. Your Privacy Rights
You have the right to:
- Access: Request a copy of your personal information
- Correct: Update or correct inaccurate information
- Delete: Request deletion of your personal information
- Portability: Export your data in a machine-readable format
- Opt-out: Unsubscribe from marketing communications and disable push notifications
- Restrict: Limit how we use your information
Account Deletion
You can delete your Psalmix account at any time. Here's how:
- 1. Log in to your Psalmix account (web or mobile)
- 2. Go to Settings → Account Settings
- 3. Tap or click "Delete Account" at the bottom of the page
- 4. Confirm your decision
When you request account deletion, your account enters a 30-day grace period during which you can cancel the request. After the grace period ends, all your personal information, playlists, preferences, and activity history are permanently deleted from our systems and cannot be recovered. If you have an active subscription, it will be cancelled. App Store and Google Play subscriptions must also be cancelled in the respective store to stop future billing.
To exercise other privacy rights or for assistance with account deletion, contact us at hello@psalmix.com
8. Cookies and Tracking
On the web we use three kinds of cookies, and you control two of them independently through our cookie banner:
- Essential cookies — to keep you logged in, secure your session, and remember your preferences. These are required for the site to work and are always on.
- Analytics cookies — PostHog, managed via Google Tag Manager with Consent Mode. Off unless you opt in. PostHog records how our public marketing pages are used, and counts a short list of named events describing how far you get through signup and checkout — some on our public pages before you have an account, the rest once you are signed in. Both are described below.
- Advertising cookies — used to measure whether our advertising works, so we can tell which ads brought people to Psalmix and stop paying for the ones that don't. This means the Meta (Facebook) advertising pixel, and the conversion reports our servers send to Meta for people who arrived from one of our ads. Off by default, and only ever on if you opt in — one choice governs both.
Accepting analytics does not accept advertising — they are separate choices, and you can change either at any time in Privacy Settings. For full details and controls, see our Cookie Policy.
Session recording, and its limits. If you opt in to analytics cookies, PostHog records how our public marketing and signup pages are used and lets us replay it — mouse movement, clicks, scrolling, and moving between pages — so we can see where people get stuck before they ever create an account. This is web only; there is no session recording in the mobile app.
Heatmaps, and why they are the same promise. Under the same opt-in and on exactly the same public pages, we also add up where people click and how far they scroll, across everyone, into a heatmap. A recording answers "what did this one visit do"; a heatmap answers "which part of this page does everyone use" — the same mouse activity, counted rather than watched. A click is stored as a position on the page, never as what sits at that position, so no button label, link text, or any other words are collected. It is not attached to your account even when you are signed in, because it does not run on the pages you see while signed in. Every limit below applies to it unchanged: it never runs on the pages where you listen, browse your library, or manage your account, and if you are on a page whose web address carries anything beyond a campaign tag, nothing is collected there at all.
Named events, and what they are not. Understanding where people give up did not stop being useful the moment you created an account, so if you opt in to analytics cookies we also record a short list of named events: completing signup, being shown a price, starting checkout, your browser seeing the subscription confirmed when you return from the payment provider, and starting playback for the first time. Because the two halves of a visit are deliberately kept apart, pressing play while signed out and again after signing in counts once on each side rather than once overall. Once you are signed in these are tied to your account, so we can tell one person's journey from another's. All of them are recorded by your browser as you go — none of them are sent from our servers, and none of them is a record of a payment. What you actually paid, and when, lives with our payment provider and in your account, described in Section 4.
Some of them run before you have an account. The signup form is the single place where knowing what went wrong matters most, and everyone filling it in is by definition not signed in yet — so the steps of that form are recorded too: opening the page, moving between fields, a validation message such as "that email is already registered", choosing Google or Apple instead, and submitting. These are not tied to any account, because at that point there is not one. Where a step fails we record a fixed category, never the error message itself, and never the address you typed — if we suggest a correction to an obvious typo, only the domain (for example "gmail.com") is counted.
Two practical notes, so this is not overstated. If you sign up with Google or Apple, our server leaves a five-minute first-party cookie called psx_signup_completed on the way back, holding only which provider you used, so your browser can count the signup — the account is created on our server, where the analytics code does not run. It carries no identifier, and if you have not opted in it is discarded without sending anything. Separately, withdrawing consent takes effect immediately in the tab you withdraw it in and on every page load after that; a different tab you already had open may keep its recorder running until you reload or navigate it.
We do not join the two halves, on purpose. The moment you sign in, we start a fresh, unlinked identity in PostHog. What you did before you had an account — including the masked recording of you filling in the signup form — is not attached to your account and cannot be looked up from it. This costs us something real: we cannot follow one person from first visit through to payment as a single path. We would rather lose that measurement than turn a recording made of a stranger into a recording of you.
They are not a record of what you listen to. No song, playlist, artist, or station identifier is ever attached to one of these events — "playback started" says that you pressed play, never what you pressed play on. The web address of any page inside the app is replaced with a placeholder before anything is sent, so the page you were on cannot reveal it either. We hold this line deliberately: our catalogue includes worship and gospel music, and a listening history could suggest something about your religious beliefs. That is information we have chosen not to collect at all rather than promise to handle carefully. Session recording still never runs on these pages.
What a recording can never contain — and these are hard limits, not intentions:
- Readable text of any kind. Every piece of text on the page is replaced with a placeholder in your own browser before the recording is sent — not only what you type into a form, but any text the page displays back to you, such as an email address shown on a confirmation screen. A recording is a moving wireframe: layout, cursor, clicks and scrolling, with blocks where the words were. The words themselves never leave your device, so neither we nor PostHog can recover them.
- Anything you do in the app. Recording runs only on our public marketing and signup pages — the ones anyone can read without an account, like this one. It never runs on the pages where you listen, browse your library, or manage your account, so a recording contains no listening history, no playlists, and no song data.
- A recording is never used for advertising, and is never sent to an advertising network. PostHog is our processor, not an advertiser.
Recordings are stored in the United States and deleted after 30 days. Choose "Essential only" in the cookie banner to decline recording entirely, turn analytics off later in Privacy Settings, or send a Global Privacy Control signal — any of the three stops it.
Two limits we place on advertising, deliberately. Advertising cookies run only on our public marketing pages — the ones anyone can read without an account — and never on the pages where you listen, browse your library, or manage your account. And we never send what you listen to, or any song or playlist information, to an advertising network. Advertising measurement can see that a visit, a signup, a trial or a payment happened; it cannot see what music was involved. That second limit holds for the conversion reports our servers send as well as for the pixel — there is no field in them that could carry a song, artist, playlist or genre.
We honor Global Privacy Control (GPC) browser signals. When a GPC signal is detected, analytics cookies are disabled unless you have explicitly opted in — and advertising cookies are disabled outright, even if you previously opted in, because under California law a GPC signal is itself a valid opt-out of sharing.
We do not use third-party analytics or advertising trackers in the mobile app. If this changes, we will update this policy and provide an in-app consent mechanism.
9. International Transfers
Psalmix is operated from the United States and is intended primarily for users in the United States. If you use Psalmix from another country, your information will be transferred to and processed in the United States, where our service providers (such as Supabase, Cloudflare and RevenueCat) operate. Our analytics processor, PostHog, processes this information in the United States. Where our service providers' data processing agreements include Standard Contractual Clauses (SCCs) or equivalent safeguards for EU and UK personal data, we rely on those safeguards.
Session recordings from our public marketing pages are stored in the United States by PostHog, our analytics processor, wherever in the world you happen to be reading from.
10. Changes to This Policy
We may update this Privacy Policy from time to time. For material changes, we will provide 30 days' advance notice by email and by posting the updated policy on our website and in the mobile app. Continued use after that period constitutes acceptance. When you create an account, we record your acceptance of these terms and the date accepted.
11. European Union & United Kingdom Privacy Rights (GDPR)
Applicability: This section applies to users in the European Economic Area (EEA), United Kingdom, and Switzerland.
Legal Basis for Processing
We process your personal data based on the following legal grounds:
- Consent: Push notifications and any optional marketing communications, and analytics cookies — covering both session recording on our public marketing pages and the named events described in Section 8, which run on those pages and inside the app once you are signed in. All of it is off until you opt in, and can be withdrawn at any time without affecting the lawfulness of what came before
- Contract: Providing account services, subscription billing, music streaming
- Legitimate Interest: Security, fraud prevention, service improvement
- Legal Obligation: Tax, accounting, and age-verification requirements
Your GDPR Rights
- Right to Access: View all personal data we hold about you
- Right to Rectification: Correct inaccurate or incomplete information
- Right to Erasure: Request deletion of your data (30-day grace period applies)
- Right to Data Portability: Download your data in machine-readable JSON format
- Right to Restrict Processing: Limit how we use your data
- Right to Object: Object to processing based on legitimate interests
- Right to Withdraw Consent: Change your consent preferences anytime in Settings → Privacy
- Right to Lodge Complaint: File a complaint with your local Data Protection Authority
How to Exercise Your Rights
Visit Settings → Privacy in your account or email hello@psalmix.com. We will respond within 30 days.
EU Representative
EU and UK users may contact us directly at hello@psalmix.com with any privacy request or question.
12. California Privacy Rights (CCPA/CPRA)
Applicability: This section is written for California residents with reference to the California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA). Psalmix may not currently meet the CCPA's applicability thresholds, but we honor the rights described below for all users as a matter of policy.
Categories of Personal Information Collected
- Identifiers: Name, email address, account ID, push notification tokens
- Demographic Information: Date of birth (for age verification)
- Commercial Information: Subscription history, purchase receipts
- Internet Activity: Listening history, playlists, app usage, and — with analytics opt-in — session recordings of how our public marketing pages were used, plus a short, fixed list of named events recording how far you get through signup and checkout, both on those pages and inside the app once you are signed in
- Device Information: IP address, browser type, device type, OS version
We Do NOT Sell Your Personal Information
Psalmix does not sell, rent, or trade your personal information to third parties for monetary consideration. We have never done so and do not intend to.
Sharing for advertising: California law treats advertising cookies as "sharing" personal information for cross-context behavioral advertising, even when no money changes hands. If you opt in to advertising cookies, that is what happens — the Meta (Facebook) pixel receives that a visit or signup occurred on our marketing pages, and, if you arrived by clicking one of our ads, our servers additionally report account signups (including via Google or Apple), checkout starts, trial starts and payments along with that ad's click identifier, a one-way hashed email address and, for payments, the amount paid, so we can measure whether an ad worked. If you do not opt in, no such sharing takes place — from the pixel or from our servers. It is off by default.
We do not share your listening history, playlists, or song data for advertising under any circumstances, opted in or not — see the sensitive-information commitment above. Advertising cookies never run on the pages where you listen, browse your library, or manage your account.
To opt out at any time: turn off "Advertising Measurement" in Privacy Settings, open "Cookie Settings" in the footer of any of our public pages (like this one) and switch off Advertising, or send a Global Privacy Control signal from your browser — we honor all three. When you first arrive you can also choose "Essential only" in the cookie banner, or "Customize" to allow analytics without advertising.
Your CCPA Rights
- Right to Know: What personal information is collected and how it's used
- Right to Delete: Request deletion of your personal information
- Right to Correct: Correct inaccurate personal information
- Right to Opt-Out of Sharing: Turn off advertising cookies at any time — in Privacy Settings, via "Cookie Settings" in the footer of our public pages, or with a Global Privacy Control signal
- Right to Non-Discrimination: No penalty for exercising your privacy rights
How to Exercise Your Rights
To submit a CCPA/CPRA request, email hello@psalmix.com with subject line "Privacy Request". We will respond to verified requests within 45 days.
Do Not Track & Privacy Signals
Do Not Track: Our website does not currently respond to browser Do Not Track signals. We will update this policy if our practices change.
Global Privacy Control (GPC): We honor Global Privacy Control (GPC) browser signals for all users, not just California residents. Analytics cookies are disabled when a GPC signal is present unless you have explicitly opted in through our cookie banner. Advertising cookies are disabled whenever a GPC signal is present, with no exception — a prior opt-in does not override it, because under CPRA the signal is itself a valid opt-out of sharing.
12-Month Lookback
Upon verified request, we will provide information about personal data collected in the 12 months preceding your request.
13. Data Retention
We retain your information only as long as necessary to provide our services and comply with legal obligations:
- Account data: Retained until account deletion, then permanently removed within 30 days
- Push notification tokens: Retained while valid; removed when you disable notifications, uninstall the app, or delete your account
- Consent records: Retained for 7 years for legal compliance
- Payment and subscription records: Retained for 7 years for tax and legal requirements
- Listening history: Retained until account deletion
- Session recordings (public marketing pages, analytics opt-in only): Retained for 30 days, then automatically deleted
- Named analytics events (analytics opt-in only): Kept for no longer than 12 months, after which our analytics provider deletes them on the retention setting we have configured with them. Twelve months is what a signup-and-checkout funnel needs in order to be compared against the same season a year earlier; we have no use for them beyond that. Events recorded before you had an account are not linked to any account and are not retrievable by you or by us as "your" data. Events recorded while you are signed in are keyed to your account, and are deleted along with your account — see below
- Audit logs: Retained for 90 days
- AI support chat logs: Retained for up to 90 days, then automatically deleted
Deletion Process
When you request account deletion, your data enters a 30-day grace period during which you can cancel. After this period, all personal data is permanently deleted from our systems. This includes your analytics profile and its events at PostHog, which are erased as part of the same process — deletion is not treated as complete until they are gone.
14. Contact Us
If you have any questions about this Privacy Policy or our privacy practices, please contact us:
Email: hello@psalmix.com
Entity: MMC Media LLC, doing business as Psalmix