Privacy Policy
Glissando Studio
Last Updated: April 22, 2026
Effective Date: April 1, 2026
1. Introduction & Scope
This Privacy Policy ("Policy") describes how Glissando Studio ("we," "us," "our," or "Company") collects, uses, discloses, and otherwise processes personal information through our music production management software platform, ProducerOS, and related services (collectively, the "Service").
Company Information: Glissando Studio is a California-based software company located in Los Angeles County, California, United States. We are the controller of personal information processed through our Service.
Scope: This Policy applies to all individuals who use our Service, including team members, clients, collaborators, and visitors to our platform. If you do not agree with this Policy, please do not use the Service.
Updates: We may update this Policy periodically to reflect changes in our practices, technology, legal requirements, or other factors. We will notify you of material changes by updating the "Last Updated" date above and, for significant changes, by posting a prominent notice on our platform or sending you notification via email. Your continued use of the Service after such modifications constitutes your acceptance of the updated Policy.
2. Information We Collect
We collect various categories of information to provide, maintain, and improve the Service. Here's what we gather:
Account Information
When you create a Glissando Studio account, we collect information you directly provide through Clerk (our authentication provider):
- Full name
- Email address
- Password (hashed and securely managed by Clerk)
- Avatar image
- Account creation and modification timestamps
Profile Information
You may optionally provide additional profile details:
- Handle/username
- Avatar color preference
- Pronouns
- Bio or professional description
- Links to external profiles or websites
Contact Information
ProducerOS includes a contacts feature that allows you to create and manage contact records. For contacts you add, we store:
- Contact names
- Email addresses
- Phone numbers
- Company names and roles/job titles
- Physical addresses
- Social media usernames and URLs
- Notes and custom fields you add
Audio & Media Files
When you upload audio files and other media to the Service, we collect and store:
- Audio files (WAV, MP3, AIFF, and other formats)
- Waveform data and visual representations
- File metadata (duration, sample rate, bit depth, format)
- Artwork and cover images
- Associated file references and version histories
Audio files are stored in Cloudflare R2 object storage. We retain audio files as long as your account is active. When you delete files from the Service, they are removed from storage.
Project Data
As you use ProducerOS to manage music projects, we collect and store:
- Song titles and descriptions
- Song versions and version metadata
- Client associations and relationships
- Task lists and task details (status, assignees, deadlines, descriptions)
- Playlists and playlist organization
- Work blocks (time allocation and scheduling)
- Projects and categorization
- Project relationships and dependencies
- Timestamps for all project activities
Communication Data
When you communicate through the Service, we collect:
- Comments on songs, versions, and projects
- Whisper notes (private internal notes)
- Comment timestamps and author information
- Message content and metadata
- Email notifications we send on your behalf
Financial Data
If you have a paid subscription, we collect billing-related information:
- Billing profile information (name, billing address)
- Invoice records and payment history
- Subscription tier and billing cycle information
- Payment processing records (managed by our payment processor)
Note: We do not store complete credit card numbers. Payment processing is handled by third-party payment processors who comply with PCI DSS standards.
Usage Data
We automatically collect information about how you interact with the Service:
- Pages and features you access
- Feature usage patterns and frequency
- Version plays and playback data
- Last seen timestamps and session information
- Search queries and filters applied
- Export requests and downloads
Device & Technical Data
When you access our Service, we automatically collect technical information:
- IP address and approximate geolocation (inferred from IP)
- Browser type, version, and user agent string
- Operating system and version
- Device type (desktop, mobile, tablet)
- Screen resolution and viewport dimensions
- Referring website and navigation path
- Timestamps of requests and responses
Third-Party Account Data: Google Calendar Integration
If you authorize ProducerOS to integrate with Google Calendar, we collect:
- Calendar event titles, descriptions, and dates
- Event attendees and organizers
- Event locations and time zones
- Calendar identifiers and metadata
- OAuth refresh tokens used to access your calendar
Important: We use this data only to sync work blocks and support scheduling features within ProducerOS. We do not use your calendar data for marketing, analytics, or any other secondary purpose. See Section 6 (Google Calendar Integration) for more details.
Push Notification Data
If you enable push notifications, we collect and store:
- Push subscription endpoints
- Public encryption keys for push notifications
- Device identifiers for notification targeting
- Notification preferences and opt-out settings
3. How We Use Your Information
We use the information we collect for the following purposes:
- <strong>Service Provision:</strong> To provide, maintain, operate, and improve the Service; process your requests; and enable core features like project management, file storage, collaboration, and scheduling.
- <strong>Account Management:</strong> To manage your account, authenticate users, process payments, send billing communications, and provide customer support.
- <strong>Communication:</strong> To send service-related announcements, respond to your inquiries, provide support, and send transactional emails (e.g., password resets, billing confirmations).
- <strong>Security & Fraud Prevention:</strong> To detect, investigate, and prevent fraud, security incidents, unauthorized access, and other malicious or illegal activities.
- <strong>Legal Compliance:</strong> To comply with applicable laws, regulations, legal processes, and government requests; enforce our Terms of Service; and protect our legal rights.
- <strong>Analytics & Service Improvement:</strong> To analyze usage patterns, understand user behavior, identify issues, test new features, and optimize the Service.
- <strong>Team Collaboration:</strong> To facilitate collaboration by sharing appropriate project data with team members and authorized users as you configure.
- <strong>Client Portal Visibility:</strong> To display songs, versions, and comments marked as client-visible to clients you have invited to access the portal.
- <strong>Data Aggregation:</strong> To create aggregated, anonymized insights about Service usage and performance (incapable of identifying individuals).
4. Legal Bases for Processing (GDPR & UK GDPR)
For individuals in the European Union, United Kingdom, and other jurisdictions with privacy laws similar to GDPR, we process personal information based on the following legal bases:
Contract Performance
We process your account information, project data, and usage information to perform our contract with you and provide the Service you've requested.
Legitimate Interests
We process information for analytics, security, fraud prevention, service improvement, and legal compliance where our legitimate interests in operating and improving the Service outweigh your privacy interests.
Consent
For certain optional features (like Google Calendar integration and push notifications), we process data based on your explicit consent, which you may withdraw at any time.
Legal Obligation
We may process information when required by law, court order, or government authority.
5. Information Sharing & Disclosure
We do not sell your personal information. We may share information in the following circumstances:
Team Members & Collaborators
Information you mark as shared within your team is visible to team members with appropriate access permissions. This includes project data, comments, and task information that you configure to be team-visible.
Client Portal Access
When you invite clients to the client portal, they can view songs, versions, and comments that you have explicitly marked as client-visible. Clients receive limited visibility into your project data based on your sharing configuration.
Cross-Team Song Sharing
If you enable song sharing between teams, songs marked for sharing are visible to designated teams and their members.
Service Providers
We share necessary information with third-party service providers who perform functions on our behalf and are contractually obligated to maintain the confidentiality and security of your information:
- <strong>Clerk:</strong> Authentication and user management
- <strong>Supabase:</strong> Database hosting and data persistence
- <strong>Cloudflare:</strong> CDN, R2 file storage, and infrastructure services
- <strong>Google:</strong> Calendar API access and integration services
- <strong>Resend:</strong> Email delivery and transactional communications. Resend retains the subject, body, and delivery metadata of emails we send for up to 30 days for deliverability monitoring and bug diagnosis (see Section 9: Data Retention).
- <strong>Anthropic:</strong> Claude API, which powers our in-product AI assistant and our automated comment classifier (see Section 7: AI-Powered Features)
- <strong>Vercel:</strong> Application hosting and deployment
Administrative Access & Your Audio Files
Glissando staff do not access, listen to, or download your audio files, project data, or other content unless specifically required to resolve a support request you have initiated or to comply with a legal obligation. We do not browse, review, or monitor your creative work.
When administrative access is necessary, it is limited to:
- Responding to a support request you have made
- Investigating security incidents or suspected violations of our Terms of Service
- Performing system maintenance and database administration
- Complying with legal obligations and law enforcement requests
Access to your data through the Glissando application is recorded in our security audit log. Access to underlying infrastructure (database and file storage) is governed by our infrastructure providers' own access logs and is restricted to the minimum personnel necessary to operate the Service.
Activity log visibility. Our administrative console contains an activity log showing metadata about actions taken inside your workspace (e.g. "song created", "comment added"). Before any administrator can view this log, the system requires them to (1) declare a written reason for access (such as a support ticket or incident identifier) and (2) scope the view to a specific team, unless a cross-team review is expressly required for an incident. By default, the free-text descriptions attached to each entry (which can include song, client, or task names) are redacted; revealing them requires an explicit opt-in that is recorded in the audit log as a separate event. Each view of the activity log — including the declared reason, the scope, and whether descriptions were revealed — is written to our security audit log and retained for 90 days.
Legal Requirements & Business Transfers
We may disclose information when required by:
- Law enforcement requests, subpoenas, or court orders
- Applicable laws and regulations
- Protection of our legal rights, privacy, safety, or property
- Business transfers (merger, acquisition, asset sale). You will be notified and given the opportunity to opt-out if applicable.
No Sale of Personal Information
We do not sell your personal information to third parties for monetary consideration. We also do not "share" personal information for cross-context behavioral advertising as defined under CCPA/CPRA.
6. Google Calendar Integration
ProducerOS offers optional integration with Google Calendar to sync events and support work block scheduling. This section provides required disclosures under the Google API Services User Data Policy.
What Data We Access
When you authorize ProducerOS to access your Google Calendar, we can read and create calendar events. We access:
- Calendar event titles and descriptions
- Event dates, times, and durations
- Event locations and attendee information
- Recurring event patterns
- Calendar metadata and identifiers
How We Use Calendar Data
We use Google Calendar data exclusively for:
- Syncing work blocks with your calendar events
- Enabling scheduling features within ProducerOS
- Preventing double-booking and scheduling conflicts
- Displaying your calendar availability in the Service
Data Storage & OAuth Tokens
Important Disclosure: OAuth refresh tokens used to access your Google Calendar are stored in our Supabase database. These tokens allow us to access your calendar on your behalf.
Token Scope: Our integration uses Google's calendar.events scope, which allows read and write access to calendar events.
Google API Services User Data Policy Compliance
ProducerOS complies with the Google API Services User Data Policy, including the Limited Use requirements. We:
- Use Google Calendar data only for the stated purpose of calendar synchronization and work block scheduling
- Do not transfer Google Calendar data to third parties (except our service providers who assist with calendar functionality)
- Do not use Google Calendar data for advertising or other secondary purposes
- Maintain appropriate security safeguards for OAuth tokens and calendar data
Revoking Access
You can disconnect your Google Calendar from ProducerOS at any time through your account settings. When you disconnect:
- We revoke our access to your Google Calendar
- We delete stored OAuth tokens
- New calendar syncs will not occur
- Existing work blocks are retained but will not sync further changes
You can also revoke ProducerOS access through your Google Account settings at https://myaccount.google.com/permissions.
7. AI-Powered Features
ProducerOS uses Anthropic's Claude API to power two features: the in-product AI assistant (accessed through the chat drawer) and an automated comment classifier that flags which portal comments represent actionable feedback requiring a revision. This section discloses what data is shared with Anthropic, how it is processed, and how you can limit or avoid that processing.
What Data We Send to Anthropic
When you interact with the AI assistant, or when a portal comment is classified, we send the following to Anthropic's Claude API:
- Your chat messages to the assistant, and the assistant's replies
- Relevant excerpts of your project data (song titles, task details, contact names, workflow notes, stored user memory) when the assistant needs them to answer a request
- The text of portal comments submitted by clients or team members, for the purposes of classification and prioritization
- The system prompts and tool schemas that define the assistant's behavior
We do not send audio files, waveform data, payment information, authentication credentials, or the contents of your Google Calendar events to Anthropic.
How Anthropic Processes This Data
Under Anthropic's Commercial Terms of Service, data sent through the Claude API is:
- <strong>Not used to train Anthropic's models.</strong> Inputs and outputs submitted via the API are not used for model training by default.
- <strong>Retained for up to 30 days</strong> by Anthropic for trust-and-safety and abuse-monitoring purposes, after which they are automatically deleted (shorter retention may apply to zero-data-retention tiers).
- <strong>Processed in the United States</strong> under Anthropic's security and data-processing commitments.
Anthropic acts as a subprocessor for this limited purpose. Their current commercial terms and privacy policy are available at https://www.anthropic.com/legal/commercial-terms and https://www.anthropic.com/legal/privacy.
AI-Initiated Writes
When you ask the assistant to modify your workspace (for example, "reschedule this song to next Friday" or "add a task to follow up with this client"), the assistant will summarize the proposed change and wait for your explicit confirmation before executing any write. Every AI-initiated write is recorded in your team's AI actions log, which team administrators can review and, where supported, reverse.
Opting Out
The AI assistant is opt-in: it is not invoked unless you open the chat drawer and send a message. The comment classifier runs automatically on comments submitted through the client portal for automated triage purposes; if you do not wish your portal comments to be classified, please contact us at legal@glissando.studio and we will disable classification for your team.
8. Data Storage & Security
We implement reasonable security measures to protect your information from unauthorized access, disclosure, alteration, and destruction.
Where Your Data Is Stored
Database: Structured data (accounts, projects, contacts, metadata) is stored in Supabase, a cloud-hosted PostgreSQL database.
File Storage: Audio files and media are stored in Cloudflare R2, object storage with geographic redundancy.
Geographic Location: Data is stored in the United States. If you are located outside the US, your data will be transferred to and processed in the US (see Section 13: International Data Transfers).
Security Measures We Implement
We employ the following security practices:
- <strong>HTTPS Encryption:</strong> All data in transit is encrypted using TLS/SSL
- <strong>Authentication:</strong> User accounts are secured through Clerk with email/password and SSO options
- <strong>Team-Scoped Access Controls:</strong> Project data and resources are restricted to authorized team members based on role and permissions
- <strong>Presigned URLs:</strong> File downloads are provided through time-limited, presigned URLs rather than direct file access
- <strong>Access Logging:</strong> Administrative access is logged for audit purposes
- <strong>Regular Updates:</strong> We maintain up-to-date server software and security patches
Security Limitations
Transparency: While we implement standard security practices, we do not currently offer the following advanced features:
- Per-team encryption keys (data is not encrypted separately for each team)
- End-to-end encryption (data is encrypted in transit and at rest, but we hold encryption keys)
- AES-256-GCM encryption at the application layer
No perfect security: No security system is completely impenetrable. We are continuously working to improve our security practices and consider additional protections as the Service grows.
9. Data Retention
We retain your information for as long as necessary to provide the Service and fulfill the purposes outlined in this Policy.
Account Data
Account information (name, email, avatar) is retained while your account is active and for a reasonable period afterward to support account recovery and legal obligations. You may request deletion of your account and associated data (see Section 10: Your Rights).
Project & Media Data
Project data, contacts, comments, and audio files are retained as long as your account is active. When you delete files or projects, they are immediately removed from the Service. Soft-deleted data (marked for deletion but not permanently removed) may be retained for up to 30 days to allow for recovery.
Activity Logs & Usage Data
Technical logs, usage data, and activity records are retained for 90 days for security, troubleshooting, and service improvement purposes. After 90 days, log data is aggregated and anonymized.
Email Communications (Resend)
Transactional emails we send on your behalf (notifications, invitations, password resets, client-portal alerts) are delivered through our email subprocessor, Resend. Resend retains the subject, body, and delivery metadata of those emails for up to 30 days to support deliverability troubleshooting and bug diagnosis, after which the content is purged from their logs. Basic delivery events (e.g. sent, delivered, bounced, complained) may be retained for a longer period in aggregate form for reporting and fraud-prevention purposes. Access to this data within Glissando Studio is limited to personnel investigating delivery issues or security incidents.
AI Assistant & Classifier Data (Anthropic)
Data sent to Anthropic's Claude API — as described in Section 7 — is retained by Anthropic for up to 30 days for trust-and-safety and abuse-monitoring purposes, after which it is automatically deleted. Assistant conversation history that we store on our side (within Supabase, to let you resume past conversations) is retained while your account is active and deleted when you delete a conversation or your account.
Google Calendar Data & OAuth Tokens
OAuth tokens are retained as long as your Google Calendar integration is active. When you disconnect Google Calendar, tokens are deleted within 24 hours. Cached calendar event data is retained for up to 7 days to support offline functionality and is deleted when you disconnect the integration.
Backups
We maintain backups of our systems for disaster recovery and business continuity. Deleted data may persist in backups for up to 90 days before being purged.
10. Your Rights
Depending on your location and applicable laws, you may have certain rights regarding your personal information.
CCPA/CPRA Rights (California Residents)
If you are a California resident, you have the following rights under the CCPA and CPRA:
- <strong>Right to Know:</strong> You can request what personal information we collect, use, share, and sell about you.
- <strong>Right to Delete:</strong> You can request deletion of personal information we have collected from you.
- <strong>Right to Correct:</strong> You can request correction of inaccurate personal information.
- <strong>Right to Opt-Out:</strong> You can opt out of the "sale" or "sharing" of your personal information (we do not currently sell or share in this manner).
- <strong>Right to Limit Use:</strong> You can request that we limit our use and disclosure of your personal information.
- <strong>Right to Portability:</strong> You can request a copy of your personal information in a portable format.
- <strong>Right to Non-Discrimination:</strong> You have the right not to be discriminated against for exercising your privacy rights.
GDPR & UK GDPR Rights (EU/UK Residents)
If you are located in the European Union or United Kingdom, you have the following rights under GDPR and UK GDPR:
- <strong>Right of Access:</strong> You can request access to your personal data.
- <strong>Right to Rectification:</strong> You can request correction of inaccurate data.
- <strong>Right to Erasure ("Right to Be Forgotten"):</strong> You can request deletion of your personal data under certain circumstances.
- <strong>Right to Restrict Processing:</strong> You can request that we limit how we use your data.
- <strong>Right to Data Portability:</strong> You can request your data in a structured, commonly used format.
- <strong>Right to Object:</strong> You can object to certain types of processing.
- <strong>Rights Related to Automated Decision-Making:</strong> You have rights regarding automated profiling (we do not currently use automated decision-making).
How to Exercise Your Rights
To exercise any of these rights, please submit a request to:
Email: legal@glissando.studio
Subject Line: "[Your Jurisdiction] Privacy Right Request"
Please provide sufficient information to identify you and describe your request in detail.
Verification & Response Timeframes
Verification: We may request additional information to verify your identity before responding to your request. This helps us ensure we do not disclose personal information to unauthorized individuals.
Response Timeframes:
- <strong>CCPA/CPRA:</strong> We will respond within 45 days. We may extend this period by 45 days if necessary.
- <strong>GDPR/UK GDPR:</strong> We will respond within 30 days. We may extend this period by up to 60 additional days if necessary.
11. Do Not Sell or Share My Personal Information
We do not sell your personal information to third parties for monetary consideration.
Definition of "Sell": Under CCPA/CPRA, "sale" means selling, renting, releasing, disclosing, disseminating, making available, transferring, or otherwise communicating personal information to another business or third party for monetary or other valuable consideration.
Definition of "Share": Under CCPA, "share" means sharing personal information for cross-context behavioral advertising. We do not engage in cross-context behavioral advertising.
What We Do: We share information with service providers who assist us in providing the Service. These service providers are contractually prohibited from using your information for purposes other than providing services to us.
If you have concerns about data practices or wish to opt-out of any potential future sales or sharing, please contact us at legal@glissando.studio.
12. Children's Privacy
The Service is not directed to individuals under the age of 13 (and in some jurisdictions, under the age of 16). We do not knowingly collect personal information from children under 13.
COPPA Compliance: Glissando Studio complies with the Children's Online Privacy Protection Act (COPPA). If we become aware that we have inadvertently collected personal information from a child under 13, we will delete such information immediately and take steps to ensure it does not happen again.
If you believe we have collected information from a child under 13, please contact us immediately at legal@glissando.studio.
13. International Data Transfers
ProducerOS is operated from the United States, and your personal information is processed, stored, and may be accessed from the United States.
Data Location
By using the Service, you consent to the transfer of your information to the United States, which may have different data protection laws than your country of residence.
GDPR & UK GDPR Transfers
For individuals in the European Union and United Kingdom, we rely on the following mechanisms to ensure adequate safeguards for international transfers:
- <strong>Standard Contractual Clauses (SCCs):</strong> We use SCCs for transfers to service providers in the United States.
- <strong>Adequacy Decisions:</strong> Where applicable, we rely on EU adequacy decisions (though limited given the US data landscape).
- <strong>Legitimate Interests:</strong> We transfer data based on legitimate interests balancing test, ensuring appropriate safeguards are in place.
Your Rights Regarding Transfers
You have the right to object to international transfers or to request more information about the safeguards in place. Please contact us at legal@glissando.studio to discuss your concerns.
15. DMCA & Copyright Policy
Glissando Studio respects intellectual property rights and complies with the Digital Millennium Copyright Act (DMCA).
Copyright Infringement Claims
If you believe that content on ProducerOS infringes your copyright, you may submit a DMCA takedown notice to our designated copyright agent. Please include:
- A description of the copyrighted work you believe has been infringed
- The location of the infringing content on the Service
- Your contact information (name, address, email, phone)
- A statement that you have a good faith belief the use is not authorized
- Your physical or electronic signature
- A statement that the information in your notice is accurate
Designated Copyright Agent
Please send DMCA takedown notices to:
Copyright Agent
Glissando Studio
Los Angeles County, California, United States
Email: legal@glissando.studio
Subject: "DMCA Takedown Notice"
We will respond to complete and valid DMCA notices within 10 business days. Upon receipt of a valid notice, we will remove or disable access to the infringing content and notify the user who uploaded the content.
Counter-Notification
If content you uploaded has been disabled due to a DMCA takedown notice, and you believe the content does not infringe copyright, you may submit a counter-notification providing your contact information, the location of the removed content, and a statement under penalty of perjury that you have a good faith belief the material was removed in error.
User-Generated Content
Users are responsible for ensuring that any content they upload to ProducerOS does not infringe third-party intellectual property rights. By uploading content, you represent and warrant that you own or have the right to license the content.
16. Changes to This Policy
We may update this Privacy Policy periodically to reflect changes in our practices, technology, legal requirements, or other factors. Material changes will be communicated to you via:
- Email notification to the address associated with your account
- Prominent notice on the Service
- Requirement to accept the updated Policy upon next login
Minor changes (clarifications, formatting) may be updated without notification. Your continued use of the Service after changes become effective constitutes your acceptance of the updated Policy.
17. Contact Information
If you have questions, concerns, or requests regarding this Privacy Policy or our privacy practices, please contact us:
Glissando Studio
Email: legal@glissando.studio
Location: Los Angeles County, California, United States
For CCPA/CPRA rights requests: legal@glissando.studio
For GDPR/UK GDPR rights requests: legal@glissando.studio
For DMCA notices: legal@glissando.studio
We aim to respond to all inquiries and requests within 10 business days.
This Privacy Policy is effective as of April 1, 2026 and was last updated in April 2026.
Thank you for trusting Glissando Studio with your music production workflow.