Privacy Policy
Last updated: August 27, 2026
1. Who controls your data?
PianoViz, an individual business registered in Paris, France, is the controller of personal data processed through https://www.pianoviz.app. For privacy questions or to exercise your rights, contact contact@pianoviz.app.
2. Data we process
- Account data: display name, email address, verification status, profile image URL supplied by Google if you sign in with Google, internal identifier and creation date.
- Authentication data: hashed password, sign-in provider, Google identifier and encrypted OAuth tokens where needed, sessions, IP address and user agent.
- Files and projects: file name, uploaded audio or MIDI, duration, size, format, detected notes, generated MIDI, visualization settings, status, errors and deletion date.
- Video exports: render settings, format, resolution, frame rate, generated video, size, status and execution logs.
- Sharing data: public share token and token used to recognize a project owner.
- Purchases and credits: Stripe customer identifier, billing email, purchased pack, amount, currency, transaction identifiers, credit balance and credit history. PianoViz does not store full card numbers.
- Free-preview and anti-abuse data: signed anonymous identifier, hashed quota identifier, number and dates of previews.
- Technical and analytics data: IP address, browser, device, language, viewed pages, product events, analytics identifier, security logs and diagnostics.
- Support data: your messages and any attachments you choose to send.
3. Why we use data and our legal bases
- To create accounts, authenticate users, process files, provide projects, transcriptions, exports, downloads and sharing: performance of the contract or pre-contractual steps requested by you.
- To process payments, allocate credits and handle refunds: performance of the contract and compliance with accounting and tax obligations.
- To prevent abuse, fraud and security incidents, diagnose failures and protect the service: PianoViz's legitimate interests in security and reliability.
- To send verification, password-reset and service emails: performance of the contract and security.
- To answer support requests: performance of the contract or legitimate interests in customer support.
- To measure product usage through PostHog and Vercel Analytics: consent where required. The current product must still add a complete consent-control mechanism for non-essential trackers.
4. Retention
Account and project data is kept while the account or project remains active. Users can delete projects from their account and may request account deletion at contact@pianoviz.app. Project files are then scheduled for deletion, while limited records may remain where required for security, accounting or legal claims.
Free previews are designed to expire after twenty-four hours and exported videos are assigned a forty-eight-hour expiry window. The current technical system still requires a complete automated purge process; until that work is complete, some expired files or metadata may remain longer than those target periods.
Payment and accounting records may be retained for up to ten years where required by French law. Security logs, support messages and technical metadata are kept only for as long as reasonably necessary for their purpose or a legal claim.
5. AI and automated processing
Audio files are analyzed automatically to detect musical information such as notes, timing and velocity. MIDI files are interpreted directly for visualization.
This processing produces a musical and technical result. It does not make a decision that has legal or similarly significant effects on a person. Transcriptions may be inaccurate, especially with noise, voices or multiple instruments.
6. Service providers and recipients
PianoViz may also disclose data where legally required, to protect its rights or the rights of others, or as part of a transaction subject to appropriate safeguards. PianoViz does not sell personal data.
- Vercel: application hosting, delivery, logs and analytics.
- Neon: PostgreSQL database for accounts, projects, purchases, credits and processing status.
- Cloudflare R2: storage of uploaded and generated files.
- Modal Labs: compute infrastructure for transcription and video rendering.
- Stripe: payments, billing, fraud prevention and refunds.
- Google: OAuth sign-in when you choose to continue with Google.
- Resend: account-verification, security and service emails.
- PostHog: product analytics.
- Better Auth: authentication software integrated into PianoViz; it is not necessarily an independent recipient of personal data.
7. International transfers
Some providers are established in the United States or may process data outside the European Economic Area. Depending on the provider and configured region, transfers rely on an applicable adequacy decision, including the EU–US Data Privacy Framework for certified organizations, the European Commission's Standard Contractual Clauses, or another safeguard permitted by the GDPR.
You may request information about the safeguards relevant to your data at contact@pianoviz.app.
8. Public share links
Anyone with a project share link may access the content made available through that page. Do not publish a link if its content is confidential. Deleting a project normally disables its share link and starts deletion of its files.
9. Cookies and browser storage
Deleting cookies or local storage may sign you out, reset preferences or remove owner access to an older project that is not attached to an account.
- Essential authentication and security cookies.
- NEXT_LOCALE, used to remember language preference for one year.
- pianoviz_v2_anon, a signed anonymous identifier used to apply the free-preview quota for one year.
- Project-owner cookies and local or session storage used for project access, settings and temporary drafts.
- PostHog and Vercel Analytics identifiers and events used for product analytics. PianoViz is preparing controls so that non-essential trackers can be accepted or refused where consent is required.
10. Security
PianoViz uses measures designed to protect data, including encrypted communications, hashing of passwords and sensitive tokens, encryption of OAuth tokens, time-limited signed links and account access controls. No system can guarantee absolute security.
11. Your rights
Depending on the processing and its legal basis, you may request access, correction, deletion, restriction, portability, or object to processing based on legitimate interests. You may withdraw consent at any time without affecting prior lawful processing.
Send requests to contact@pianoviz.app. PianoViz may request information reasonably needed to verify your identity and will answer within the periods required by the GDPR.
You may also lodge a complaint with the French data protection authority, the CNIL, at https://www.cnil.fr.
12. YouTube API Services
PianoViz's private social publishing client uses YouTube API Services. Its use is subject to the YouTube Terms of Service at https://www.youtube.com/t/terms, the YouTube API Services Developer Policies and the Google Privacy Policy at https://policies.google.com/privacy.
The client accesses only the data needed to identify the authorized PianoViz channel, upload user-reviewed videos and metadata, verify the resulting video identifier, title, channel, duration and visibility, and create source-credit comments. It stores locally an OAuth refresh token, channel identifier and title, video identifiers and URLs, requested and actual visibility, titles, comment identifiers and statuses, and upload or error timestamps. It does not collect viewer data, download YouTube content, sell API Data, or disclose Authorized Data to third parties other than Google and YouTube to perform the authorized actions.
The OAuth token and YouTube API state are stored only on the authorizing owner's device in owner-restricted files. The client requires a reviewable dry run and an explicit execution command, displays the target channel and visibility, disables subscriber notifications by default, and prevents automatic retries after an uncertain upload.
Access can be revoked through the uploader's revocation command or through Google security settings at https://security.google.com/settings/security/permissions. The revocation command immediately revokes the Google token and deletes the locally stored token and Authorized API Data. If access is revoked through Google settings, the owner must run the local cleanup command or contact contact@pianoviz.app; related Authorized Data will be deleted as soon as possible and no later than seven calendar days. Deleting locally stored data does not delete content stored by YouTube; YouTube content must be deleted through YouTube or another authorized client.
The client validates authorization whenever it is used. If the authorization token cannot be refreshed because access was revoked or expired, the client stops accessing YouTube and deletes its locally stored token and YouTube API Data. For questions or deletion requests, contact contact@pianoviz.app.
13. Changes and contact
This policy may change with the service or the law. Material changes will be communicated appropriately where required. The latest update date appears at the top of the page.
For any privacy question, contact contact@pianoviz.app.