Privacy Policy
Last updated: 17 October 2025
1. Introduction
Welcome to Pitch Generator ("we", "our", or "us"). We are committed to protecting your personal data and respecting your privacy. This Privacy Policy explains how we collect, use, share, and protect your information when you use pitch.totalaudiopromo.com (the "Service").
Data Controller: Total Audio Promo
Contact: info@totalaudiopromo.com
Location: United Kingdom
2. What Data We Collect
2.1 Account Information
- Email address (required for account creation)
- Name (if provided during registration)
- Authentication credentials (securely hashed)
2.2 Content You Create
- Contact information (names, email addresses, roles, outlets)
- Music pitch content (artist names, track details, pitch text)
- Voice profile settings (writing style preferences)
- Saved pitches and templates
2.3 Usage Data
- Pages visited and features used
- Time spent on the Service
- Browser type and version
- Device information (type, operating system)
- IP address (anonymized for analytics)
2.4 Payment Information
We use Stripe for payment processing. We do not store your credit card details. Stripe handles all payment data in compliance with PCI-DSS standards.
3. How We Use Your Data
We use your data for the following purposes:
- Provide the Service: Generate AI-powered music pitches based on your inputs
- Account Management: Create and maintain your user account
- Communication: Send service updates, support responses, and marketing emails (with consent)
- Improvement: Analyze usage patterns to improve features and user experience
- Security: Detect and prevent fraud, abuse, and unauthorized access
- Legal Compliance: Comply with legal obligations and protect our rights
4. Legal Basis for Processing (GDPR)
Under GDPR, we process your data based on:
- Contract Performance: To provide the Service you signed up for
- Legitimate Interests: To improve the Service and ensure security
- Consent: For marketing communications (you can opt out anytime)
- Legal Obligation: To comply with UK/EU laws
5. Data Sharing
We share your data with:
5.1 Service Providers
- Supabase: Database hosting and authentication (EU servers)
- Anthropic (Claude AI): AI-powered pitch generation (your data is not used for training)
- Stripe: Payment processing (PCI-DSS compliant)
- Vercel: Website hosting and infrastructure
- Plausible Analytics: Privacy-friendly analytics (no cookies, GDPR-compliant)
5.2 We Do NOT
- Sell your data to third parties
- Use your data for AI model training without consent
- Share your contact lists with other users
- Display your pitches publicly
6. Data Retention
- Active Accounts: We retain your data as long as your account is active
- Deleted Accounts: Data is permanently deleted within 30 days of account deletion
- Legal Requirements: Some data may be retained longer to comply with UK tax/legal obligations
7. Your Rights (GDPR)
As a UK/EU data subject, you have the right to:
- Access: Request a copy of your data (export feature in dashboard)
- Rectification: Correct inaccurate data (edit in dashboard)
- Erasure ("Right to be Forgotten"): Delete your account and all data
- Portability: Export your data in JSON format
- Object: Opt out of marketing communications
- Restrict Processing: Limit how we use your data
To exercise your rights, email us at privacy@totalaudiopromo.com or use the settings in your dashboard.
8. Security
We implement industry-standard security measures:
- Encrypted connections (HTTPS/TLS)
- Hashed passwords (bcrypt)
- Regular security audits
- Access controls and authentication
- EU-based data servers (Supabase)
9. Cookies & Tracking
We use minimal cookies:
- Essential Cookies: Authentication session (NextAuth)
- Analytics: Plausible (no personal data, no tracking across sites)
- We do NOT use Google Analytics, Facebook Pixel, or invasive tracking
10. Children's Privacy
The Service is not intended for users under 16. We do not knowingly collect data from children. If you believe a child has provided data to us, contact us immediately.
11. International Data Transfers
Your data is primarily stored in the EU (Supabase). When we use US-based services (Anthropic, Vercel), we ensure appropriate safeguards (Standard Contractual Clauses, adequacy decisions).
12. Changes to This Policy
We may update this policy from time to time. Material changes will be notified via email. Continued use of the Service after changes constitutes acceptance.
13. Contact Us
For privacy questions or to exercise your rights:
Email: privacy@totalaudiopromo.com
Subject: Pitch Generator - Privacy Request
Response Time: Within 30 days (as required by GDPR)
14. Complaints
If you're not satisfied with our response, you have the right to lodge a complaint with the UK Information Commissioner's Office (ICO):
ICO Website: ico.org.uk
Phone: 0303 123 1113
Questions about your data?
We're committed to transparency. If you have any questions about how we handle your data, we're here to help.
Email Privacy Team