Privacy Policy
Last updated: March 2026
1. Information We Collect
Account Information
When you sign in with Google, we receive your name, email address, and profile picture. We do not access your Google password or other Google account data.
Usage Data
We collect information about your interactions with the Service: tracks played, downloaded, searched, playlists created, and API requests made. This data is used to enforce plan limits and improve the Service.
Technical Data
We automatically collect IP addresses, browser type, device information, and referring URLs for security, anti-abuse, and analytics purposes.
Payment Data
Payments are processed by PayPal. We do not store credit card numbers or bank details. We receive your PayPal subscription ID and payment status for plan management.
2. How We Use Your Information
- Provide and maintain the Service
- Manage your account and subscription
- Enforce download limits and rate limits
- Detect and prevent abuse, fraud, and unauthorized access
- Improve the Service and develop new features
- Send important account notifications (plan changes, security alerts)
3. Data Sharing
We do not sell your personal information. We share data only with:
- PayPal — for payment processing
- Google — for OAuth authentication
- Law enforcement — when required by law
4. Cookies
We use essential cookies for:
- mm_session — Session authentication (30 days)
- mm_lang — Language preference (1 year)
- mm_theme — Dark/light theme preference (1 year)
- mm_csrf — CSRF protection token (2 hours)
We do not use advertising cookies or third-party tracking.
5. Data Security
All connections use HTTPS/TLS encryption. Passwords are not stored (Google OAuth only). Session tokens are cryptographically random. Download URLs are signed with HMAC-SHA256 and expire after 5 minutes.
6. Data Retention
- Account data: Retained while your account is active
- Download history: Retained for license verification purposes
- API logs: Retained for 90 days
- Session data: Expired sessions are deleted weekly
7. Your Rights
You have the right to:
- Access your personal data (available in Dashboard)
- Request deletion of your account and associated data
- Export your download history
- Change your language and theme preferences
To request data deletion, email privacy@mutemic.com.
8. Children's Privacy
The Service is not intended for users under 16 years of age. We do not knowingly collect data from children.
9. International Users
The Service is operated from the European Union. By using the Service, you consent to the transfer and processing of your data in accordance with this policy.
10. Changes to This Policy
We may update this policy at any time. Material changes will be communicated via email or Dashboard notification.
11. Contact
Privacy questions? Email: privacy@mutemic.com