Privacy Policy

Last updated: April 11, 2026

What we collect

When you create an AudioClients account, we collect your email address and a password (hashed, never stored in plain text). During onboarding you provide your name, professional credits, engineering niche, and style notes — all used solely to personalize outreach emails on your behalf.

Gmail integration

AudioClients connects to your Google account using OAuth 2.0 with the gmail.send scope. This allows us to send outreach emails from your own Gmail address. We never read your inbox — we do not request or use the gmail.readonly scope. Your Gmail access token and refresh token are stored encrypted in our database and are used exclusively to send emails you have explicitly reviewed and approved.

Spotify integration

If you connect Spotify, we use the Spotify Web API to search for artists and retrieve public data (name, genre, monthly listeners, top tracks, profile image). We store this data to populate your discovery pipeline. We do not access your personal Spotify listening history, playlists, or saved tracks.

Artist data

AudioClients collects publicly available information about artists you discover: names, genres, listener counts, public contact emails (found via web search), social media handles, and publicly posted social media content. This data is used to generate personalized outreach emails and to build communication profiles that help tailor your messaging.

AI processing

We use Anthropic’s Claude API to generate outreach emails, analyze artist communication styles, and extract writing preferences from your edits. The data sent to Anthropic includes artist names, genres, your feedback observations, and email content. We do not send your personal credentials, passwords, or authentication tokens to any AI provider.

Reply handling

Replies to your outreach are received via a subdomain you configure on your own domain (e.g. mail.yourdomain.com), processed by Resend’s inbound email service, and stored in our database. We store the sender address, a text snippet of the reply, and the timestamp. We do not read or store the full contents of your personal email inbox.

Data storage and security

All data is stored in Supabase (hosted on AWS) with row-level security policies ensuring users can only access their own data. Authentication tokens are stored encrypted. All traffic is served over HTTPS. We do not sell, rent, or share your personal data with third parties except as described above (Anthropic for AI processing, Google for email sending, Resend for reply handling).

Data retention

Your data is retained as long as your account is active. You can request deletion of your account and all associated data by contacting us at the email below. We will process deletion requests within 30 days.

Cookies

We use essential cookies for authentication (session tokens managed by Supabase Auth). We do not use analytics cookies, advertising cookies, or third-party tracking.

Your rights

You have the right to access, correct, or delete your personal data at any time. You can disconnect your Gmail and Spotify integrations from the Settings page. To request a full data export or account deletion, contact us.

Contact

For privacy questions or data requests, email privacy@audioclients.com.