Skip to main content

Privacy Policy

Effective: March 22, 2026 · Last updated: September 6, 2026

We believe your data is yours. Sweet Suite Music is built with privacy as a core value — not an afterthought. This policy explains exactly what we collect, why, and what we don't.

1. Who We Are

SweetSuiteMusic, LLC ("we," "us," "our") operates the Sweet Suite Music desktop application, the Sweet Suite Camera companion apps for iOS and Android, and the website at sweetsuitemusic.com (collectively, the "Service").

Contact: hello@sweetsuitemusic.com

2. What We Collect

Account Information

When you create an account, we collect:

  • Email address — for login, billing, and essential communications
  • Name (optional) — for personalizing your experience
  • Profile details (optional) — band name, instrument, bio, and avatar photo, if you choose to add them
  • Password — stored as a salted hash, never in plain text
  • Bandmate invites (Band and Producer plans) — the email addresses an account owner invites are stored with that account until the invite is accepted, expires after 7 days, or is removed, so we can enforce the plan's account limit.
  • Free-plan take records — on the Free plan, each time you record a take (and when the app checks how many free takes you have left) the desktop app sends us a one-way hash of your Mac's hardware ID, an opaque identifier for the take, and the app version, so we can enforce the Free plan's lifetime take limit per device and per account. The raw hardware ID never leaves your Mac, the hash can't be turned back into it, and nothing about the recording itself is sent. Paid plans send none of this.

Waitlist

If you join our waitlist, we collect your email address and optionally your name and band name. This is used solely to notify you when the product launches.

Payment Information

Payments are processed by Stripe. We never see, store, or handle your credit card number. Stripe provides us with a customer ID and subscription details (plan, status, renewal date, and a payment-method reference) — never your card details.

3. What We Don't Collect

This is the important part:

  • No analytics or tracking. No Google Analytics, no Mixpanel, no pixel trackers. Zero.
  • No telemetry from the app. The macOS app doesn't send usage data, crash reports, or analytics back to us. Its contact with our servers is limited to a brief once-daily check to confirm your subscription is active and, on the Free plan, the take records described in section 2 (a hashed device ID, an opaque take identifier and the app version — never the recording itself).
  • No access to your content. Your recordings, videos, edits, and exports stay on your Mac. Footage from the SweetSuite Camera phone apps travels only across your own Wi-Fi network, directly from your phone to your Mac — it never touches our servers. We never upload, view, or process your creative work.
  • No third-party ad networks. We don't sell or share your data with advertisers. Ever.
  • No behavioral profiling. We don't build profiles of your usage patterns.

4. How We Use Your Information

  • To provide and maintain your account
  • To process subscription payments via Stripe
  • To send essential communications (billing receipts, security notices, service updates)
  • To respond to support requests
  • To notify waitlist subscribers about product availability
  • To measure which of our own ads and links bring people to the site (see Cookies, below)

That's the complete list. We don't use your information for anything else.

5. Where Your Data Lives

Website & Accounts

Account data is stored in a self-hosted database on infrastructure we control. We run and administer the database ourselves rather than relying on managed third-party data platforms.

Desktop App

All app data (recordings, projects, settings) is stored locally in ~/Library/Application Support/SweetSuiteMusic/ on your Mac. Your recordings, projects, and exports never leave your machine; the app's only network activity to our servers is a once-daily subscription check and, on the Free plan, the take records described in section 2.

SweetSuite Camera Companion Apps (iOS & Android)

The SweetSuite Camera apps turn your phone into a wireless camera for the desktop app. When you record, the app captures video and audio on your phone and transfers it over your own local Wi-Fi network directly to the Mac you paired with — encrypted in transit (TLS with certificate pinning). Nothing is ever sent to our servers: we cannot see, receive, or access your footage.

  • The phone keeps its local copy only until your Mac confirms the footage arrived intact, then deletes it automatically.
  • Pairing happens by scanning a QR code shown by your Mac; the pairing credential lives only on your devices and can be reset at any time from the Mac app.
  • The camera apps contain no analytics, no advertising, no tracking, and no third-party SDKs of any kind.

Connected Social Accounts (Instagram, Facebook, TikTok, YouTube, X)

The desktop app can publish your finished clips to social accounts you choose to connect. Connecting an account happens through the platform's own login screen in your browser; you approve exactly what the app may do and can revoke it at any time.

  • What we receive. Only what is needed to show which account is connected and to post on your behalf: an account identifier and display name (for example your Instagram username, or your Facebook Page's name and ID) and an access token. For Instagram and Facebook this is the data Meta makes available through the instagram_business_basic, instagram_business_content_publish, pages_show_list, pages_read_engagement and pages_manage_posts permissions. We never read your messages, comments, followers, insights, or other content.
  • How it is used. To display the connected account in the app, and — only when you click Publish — to upload the video and caption you chose to that account and show you the resulting post. Nothing is ever posted automatically.
  • Where it lives. On your Mac: tokens are stored in the macOS Keychain (Apple's encrypted credential store) and the account name in the app's local settings. To complete a connection, the token passes once through our sign-in service at sweetsuitemusic.com, which holds it in memory for at most 10 minutes until your app collects it; it is never written to our database, logs, or backups. We do not store your social-account data on our servers.
  • Removing it. In the app, open the account's menu and choose Disconnect; this deletes the token and account details from your Mac. You can also revoke Sweet Suite Music from the platform's own settings (for Meta: Settings → Business integrations); Meta then sends us a deauthorization notice, which we acknowledge — there is nothing stored on our side to remove. See data deletion for details.

YouTube (Google API Services)

Sweet Suite Music uses YouTube API Services to let you publish your clips to your own YouTube channel. By connecting YouTube you also agree to the YouTube Terms of Service; Google's handling of your data is described in the Google Privacy Policy.

  • What we access. Two Google permissions: youtube.readonly, used once when you connect to read your channel's name and handle so the app can show which channel is connected; and youtube.upload, used only when you click Publish to upload the video you chose, with the title, description, and privacy setting you chose, to that channel. We read nothing else — no subscriptions, comments, watch history, or analytics.
  • What we store, and where. The access and refresh tokens (in the macOS Keychain on your Mac) and your channel name and handle (in the app's local settings). They are kept only while the channel is connected and are refreshed when the connection is renewed. Nothing is stored on our servers: our sign-in service at sweetsuitemusic.com holds the token in memory for at most 10 minutes while the connection completes. We do not share this data with anyone.
  • Removing it. Choose Disconnect on the YouTube row in the app (deletes the tokens and channel details from your Mac), and/or revoke Sweet Suite Music's access at Google security settings. To ask us to delete any data we may hold about you, email the address in the Contact section; we complete such requests within 7 days.
  • Limited Use. Sweet Suite Music's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

6. Third-Party Services

We use a small number of third-party services:

  • Stripe — payment processing. Stripe handles all credit card data under their own privacy policy.
  • Resend — transactional email delivery (receipts, waitlist confirmations). We share your email address with Resend solely for email delivery.

We also rely on a hosting provider and a DNS/CDN service to run the website; they process data only as needed to deliver the Service. Beyond that, we never sell your data and don't share it with any other third parties.

7. Cookies

We use a session cookie to keep you logged in when you sign into your account.

If you arrive from one of our own ads or links, we also set a first-party attribution cookie (ssm_attr) for up to 90 days. It records only the campaign tags that were in the link you clicked, the page you landed on, the domain that referred you, and when you arrived — so we can tell which of our ads are working. It contains no identifiers from advertising networks and is never shared with anyone. No advertising cookies, no third-party tracking cookies.

8. Your Rights

You can:

  • Access your data — view your account information in your dashboard
  • Update your data — change your name, email, or password anytime
  • Delete your account — contact us and we'll permanently delete your account and all associated data within 30 days (except the Free-plan take counter described in section 13)
  • Export your data — request a copy of your account data by emailing us
  • Withdraw consent — unsubscribe from waitlist or marketing emails at any time

To exercise any of these rights, email hello@sweetsuitemusic.com.

9. California Residents (CCPA)

If you're a California resident, you have the right to know what personal information we collect, request deletion of your data, and opt out of the sale of your data. We don't sell your personal information — never have, never will.

10. European Residents (GDPR)

If you're in the EU/EEA, our legal basis for processing your data is:

  • Contract performance — to provide the Service you signed up for
  • Legitimate interest — to communicate essential service information
  • Consent — for waitlist and optional marketing communications

You have rights under GDPR to access, rectify, erase, restrict, port, and object to processing of your personal data. Contact us to exercise these rights.

11. Children's Privacy

The Service is not intended for children under 13. We don't knowingly collect personal information from children under 13. If you believe a child under 13 has provided us with personal information, please contact us and we'll delete it.

12. Data Security

We use industry-standard measures to protect your data, including encrypted connections (TLS/HTTPS), salted password hashing, and secure credential storage via macOS Keychain. However, no system is 100% secure, and we can't guarantee absolute security.

13. Data Retention

We retain your account data for as long as your account is active. If you delete your account, we permanently erase your personal data within 30 days. Waitlist entries are retained until the product launches, after which they're deleted unless you create an account.

One exception: the Free plan's take counter is kept after account deletion so the Free plan's lifetime limit can't be reset by creating a new account. When your account is deleted we remove the account reference from those records, leaving only a hashed device identifier, opaque take identifiers and timestamps — nothing that identifies you.

14. Changes to This Policy

We may update this Privacy Policy from time to time. We'll notify you of material changes via email at least 14 days before they take effect. The "Last updated" date at the top of this page reflects the most recent revision.

Deleting Your Data — SweetSuite Camera

This section describes how to delete data associated with the SweetSuite Camera apps by Sweet Suite Music (the companion camera apps for iOS and Android).

How to delete your recordings

  • On your Mac: delete any take in the SweetSuiteMusic desktop app (Takes tab). This removes the footage from your Mac and tells any paired phone still holding a copy to discard it.
  • On your phone: local copies are deleted automatically once your Mac confirms the footage transferred intact. To remove everything immediately — including any pending recordings and the pairing credential — uninstall the SweetSuite Camera app.
  • Pairing reset: reset the pairing token from the Mac app's phone panel at any time; previously paired phones are disconnected and must re-scan.

What is deleted, what is kept

  • Recordings (video and audio): exist only on your phone (temporarily, until verified transfer) and on your own Mac. We never receive them, so there is nothing on our side to delete or retain — deleting them on your devices removes every copy in existence.
  • Pairing credential: stored only on your devices; removed by uninstalling the phone app or resetting the pairing on the Mac.
  • Website account data (email, subscription status — separate from the camera apps): deleted within 30 days of an account-deletion request, as described in "Your Rights" above.

Questions or help with any deletion request: hello@sweetsuitemusic.com — we respond within 30 days.

15. Contact

Questions or concerns about your privacy? We'd love to hear from you.

SweetSuiteMusic, LLC
hello@sweetsuitemusic.com