← Back to the site

Legal

Privacy policy

How we handle personal data when you visit this website and when you use SoundMe — in line with the EU General Data Protection Regulation (GDPR).

1. Who is responsible

Controller within the meaning of Art. 4(7) GDPR: [Company name], [Street and number], [Postcode City], [Country]. Contact for data protection: privacy@soundme.io.

2. Visiting this website

When you open the site, the server processes technical data (IP address, date and time, page, browser and operating system) to deliver the pages and keep them secure. Legal basis: Art. 6(1)(f) GDPR (our legitimate interest in a working, secure website). Server logs are deleted after 14 days at the latest.

Fonts are loaded from Google Fonts; your IP address is transmitted to Google for that purpose (Art. 6(1)(f) GDPR). The music demo streams short previews from our own servers.

3. Cookies and marketing

We only set cookies that are strictly necessary without asking. Marketing measurement (Meta Pixel) and remembering which advertisement brought you here happen only after you agree in the cookie banner (Art. 6(1)(a) GDPR, § 25 TDDDG). You can change your choice any time under Cookie settings. Details: Cookie policy.

4. Your SoundMe account

For the account we process your name, email address, password (stored only as a secure hash), your venue details, the locations and team members you add, your music settings and listening statistics, and support conversations. Purpose: providing the service under the contract (Art. 6(1)(b) GDPR). Security logs (sign-ins, new devices) are kept to protect your account (Art. 6(1)(f) GDPR).

5. Payments

Subscriptions are paid through our payment provider Stripe (Stripe Payments Europe Ltd., Ireland). Card data goes directly to Stripe; we never see or store full card numbers. We keep invoices as required by tax law (Art. 6(1)(c) GDPR).

6. Emails

We send service emails that belong to the contract (verification, security notices, invoices, support replies). Product news, offers and tips are sent only if you asked for them and confirmed your address (double opt-in, Art. 6(1)(a) GDPR). Every such email has a one-click unsubscribe link; you can also manage topics in your account.

7. Who else processes data

We use carefully chosen processors bound by Art. 28 GDPR agreements: hosting and storage in the EU, an email delivery service, Stripe for payments, and — only with consent — Meta for ad measurement. Where data leaves the EU/EEA (e.g. to the USA), it is protected by the EU–US Data Privacy Framework or the EU Standard Contractual Clauses.

8. How long we keep data

Account data is kept while your account exists and deleted after closing it, unless tax or commercial law requires longer storage (up to 10 years for invoices). Support conversations are deleted 3 years after the last message.

9. Your rights

You have the right to access (Art. 15), rectification (Art. 16), erasure (Art. 17), restriction (Art. 18), data portability (Art. 20) and to object to processing based on legitimate interests (Art. 21). You can withdraw consent at any time with effect for the future. Write to privacy@soundme.io.

You may also lodge a complaint with a supervisory authority, in particular in your country of residence or ours: [Data protection authority of the country of establishment].

10. Changes

We update this policy when our service or the law changes. Last updated: 25 September 2026.