1. Scope and controller
This Privacy Notice explains how the Point Lofi mobile application and service collect, use, disclose, retain, and protect personal data. Point Lofi is operated by the independent developer identified in the applicable app-store listing, who is the controller of data handled for the service.
This notice covers listener accounts. Listener accounts do not upload music; the catalogue contains recordings and artwork supplied only by the Point Lofi owner.
2. Data we process
- Identity data: the identity-provider subject, provider name, verified email when supplied, and the date the identity was linked. Point Lofi does not receive your Google or Apple password.
- Account and profile data: internal account identifier, display name, public handle, optional avatar reference, profile visibility, settings, consent choices, and accepted legal-document versions.
- Device and session data: app-generated device identifier, platform, app and build version, locale, timezone, optional device name, session dates, and revocation status.
- Listening and library data: favourites, recents, playback progress and qualified listening events, playlists, saved ambient presets, and related synchronization changes.
- Focus data: timer preferences and completed or abandoned focus-session measurements, including duration, dates, and timezone used for statistics.
- Notification data: push token, permission status, notification preferences, quiet hours, delivery status, and receipt information.
- Support data: category, subject, messages, status, and timestamps for requests you choose to submit.
- Operational and security data: request identifiers, rate-limit records, error and delivery events, and network metadata such as IP address processed by our hosting and platform providers for delivery, security, and abuse prevention.
3. How we use data
- Authenticate accounts, maintain sessions, and keep account data separated between listeners.
- Provide playback, synchronization, library, playlist, ambient, focus, notification, profile, and support functionality.
- Remember settings and synchronize changes across signed-in devices.
- Generate listening insights only when the applicable personalization choice is enabled.
- Secure the service, enforce rate limits, prevent abuse, diagnose failures, and maintain auditability.
- Comply with legal obligations, enforce the Terms, and respond to rights or support requests.
4. Legal grounds
Where applicable law requires a legal basis, we process data to perform the service contract, pursue legitimate interests in security and reliable operation, comply with legal obligations, and act on consent for optional purposes such as personalization, marketing, or notifications where consent is required. You may change optional choices in the app.
5. Service providers and disclosures
We use providers only as needed to operate the service. These may include Apple and Google for sign-in and device delivery, Expo for push delivery tooling, and Railway for application hosting, PostgreSQL, and private object storage. Providers process data under their own terms and privacy notices when they act independently.
We may disclose information when required by law, to protect users or the service, in connection with a business reorganization subject to appropriate safeguards, or when you direct us to. We do not sell personal data, share it for cross-context behavioural advertising, or run third-party advertising in the current service.
6. Personalization and listening history
When personalization is enabled, qualified listening events may be used to calculate features such as Top Vibe and listening-time patterns. Turning personalization off stops new events from being recorded for that purpose. Existing account history remains until account deletion or a specific deletion request so library and history features can continue to work.
7. Retention
- Account, settings, library, focus, and listening records are generally kept while the account is active and are removed or de-identified after a verified deletion request, subject to the exceptions below.
- Expired sessions and short-lived operational records are removed according to operational schedules. Security, audit, legal-acceptance, and fraud-prevention records may be retained for up to 24 months or longer when law or an active dispute requires it.
- Support records may be retained for up to 24 months after resolution to maintain request history and prevent repeated issues.
- When backups are enabled, deleted data may remain in protected backups until those backups expire, for no longer than 90 days unless law requires otherwise. Backup data is not restored for ordinary product use.
8. Account deletion and privacy requests
To request account and associated-data deletion, open Profile, Help, Contact Support, select the account category, and state that you want the account deleted. We may verify control of the signed-in account before processing the request. If you cannot access the app, use the developer contact shown in the applicable app-store listing.
A verified request is processed within 30 days unless a shorter period is legally required. We may retain narrowly limited legal, security, anti-fraud, transaction, or dispute records when required or permitted by law. The public Account Deletion page summarizes this process.
9. Your choices and rights
- Change profile visibility, playback, focus, notification, and personalization settings in the app.
- Revoke individual signed-in sessions from account settings and revoke provider access through Apple or Google.
- Request access, correction, deletion, restriction, portability, or objection where applicable law provides those rights.
- Withdraw consent for optional processing without affecting processing already lawfully completed.
- Complain to an applicable data-protection authority if you believe your rights were not respected.
10. Security and international processing
We use encrypted network transport, private media storage, short-lived access tokens, rotating refresh sessions, access controls, and other technical and organizational safeguards. No system can be guaranteed completely secure.
Service providers may process data in countries other than your own. Where required, we rely on lawful transfer mechanisms and provider safeguards for international processing.
11. Children
Point Lofi is not directed to children under 13, and we do not knowingly collect personal data from children under the minimum age required in their location. Contact us through the available Support mechanism if you believe a child provided personal data improperly.
12. Changes and contact
Material changes receive a new version and effective date. When required, the app will present the updated notice before continuing.
Privacy questions and requests can be submitted through Profile, Help, and Contact Support in Point Lofi. If you cannot access the app, use the developer contact displayed in the applicable app-store listing.