Privacy Policy

Last updated: February 2026

1. Information We Collect

We collect the following information when you use MeloDNA:

  • Email address — collected during OTP (one-time password) verification to authenticate your account and deliver your generated song.
  • Artist preferences — the artist names you enter are used to build your music taste profile and generate a personalized song.
  • Anonymous analytics — we collect anonymized usage data such as page views, button interactions, and generation completion rates. No personally identifiable information is included in analytics events.
  • Payment information — if you purchase premium features, Polar processes your payment. We receive a transaction confirmation but never see or store your card details.

2. How We Use Your Information

We use the information we collect to:

  • Authenticate your identity via email OTP verification.
  • Generate a personalized song based on your artist preferences and music taste profile.
  • Process payments for premium features.
  • Improve the service through anonymized, aggregated analytics.
  • Communicate with you about your generated songs, service updates, or support requests.

3. Data Storage

Your data is stored securely using industry-standard encryption. Generated audio files and taste profile data are stored in cloud infrastructure with access controls and encryption at rest.

Free-tier generated assets are retained for 90 days after creation. Paid-tier assets are retained indefinitely. You may request deletion of your data at any time by contacting us.

Session data is maintained for 30 days. After this period, you will need to re-authenticate via email OTP.

4. Third-Party Services

MeloDNA integrates with the following third-party services, each with their own privacy policies:

  • Polar — payment processing. Polar handles all payment card data in compliance with PCI DSS standards. See Polar's Privacy Policy.
  • Last.fm — music data retrieval. We query Last.fm's public API to build your taste profile based on the artists you provide. No Last.fm account is required. See Last.fm's Privacy Policy.
  • Supabase — backend infrastructure, authentication, and database. Your account data and generated content metadata are stored in Supabase. See Supabase's Privacy Policy.
  • PostHog — anonymous product analytics. PostHog collects anonymized usage events to help us understand how users interact with MeloDNA. We do not send personally identifiable information to PostHog. See PostHog's Privacy Policy.

5. Your Rights

You have the right to:

  • Access — request a copy of the personal data we hold about you.
  • Correction — request correction of inaccurate personal data.
  • Deletion — request deletion of your personal data and generated content.
  • Portability — receive your data in a structured, machine-readable format.
  • Opt out of analytics — decline cookie consent or enable Do Not Track in your browser to disable anonymous analytics collection.

6. Data Retention

We retain your data according to the following schedule:

  • Account data (email, taste profiles) — retained while your account is active. Deleted upon request.
  • Free-tier generated assets — audio files and video clips are retained for 90 days, then automatically deleted.
  • Paid-tier generated assets — retained indefinitely unless you request deletion.
  • Analytics data — anonymized analytics are retained for up to 12 months.
  • Payment records — transaction records are retained as required by applicable tax and financial regulations.

7. Contact

If you have questions about this Privacy Policy, wish to exercise your data rights, or need to report a concern, please contact us at:

privacy@melodna.com

We aim to respond to all privacy-related inquiries within 30 days.