Privacy Policy

Last updated: December 6, 2025

1. Introduction

SongPostcard.com ("we", "us", or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website and use our services.

By using our service, you agree to the collection and use of information in accordance with this policy. This service is intended for users aged 18 and over only.

2. Information We Collect

2.1 Personal Information

When you use our service, we may collect the following personal information:

  • Contact Information: Names, email addresses, phone numbers
  • Postal Information: Postal addresses for both senders and recipients (for physical postcard delivery)
  • User Content: Song prompts, generated lyrics, audio files, and personalization details
  • Communication Preferences: Email marketing opt-in status and notification preferences

2.2 Technical Information

We automatically collect certain technical information when you use our service:

  • Session Data: UUID4 session identifiers to maintain service continuity
  • Analytics Data: Usage statistics, page views, and interactions through Google Analytics
  • Device Information: Browser type, operating system, IP address, and device identifiers

2.3 Cookies and Similar Technologies

We use the following types of cookies:

  • Essential Cookies: Necessary for the website to function properly, including session management
  • Analytics Cookies: Google Analytics cookies to understand how visitors interact with our website
  • Service Cookies: UUID4 session cookies to link your song creation session to your user account

3. How We Use Your Information

We use the collected information for the following purposes:

  • Service Delivery: Creating personalized songs, generating lyrics and audio, and delivering digital and physical postcards
  • Communication: Sending transactional emails (order confirmations, song ready notifications), service updates, and optional marketing communications
  • User Experience: Maintaining access to your digital postcards and improving our service
  • Analytics: Understanding usage patterns to improve our website and services
  • Legal Compliance: Meeting our legal obligations and protecting our rights

4. Information Sharing and Disclosure

4.1 Third-Party Service Providers

We share your information with trusted third-party service providers who assist us in operating our business:

  • Stripe: Payment processing (we do not store payment card information directly)
  • Mailgun: Transactional and marketing email delivery
  • Suno AI: Audio generation services
  • OpenAI (ChatGPT API): Lyric generation services
  • Google Analytics: Website analytics and usage tracking

These service providers are contractually bound to protect your information and use it only for the specified purposes.

4.2 Legal Requirements

We may disclose your information if required by law, court order, or government regulation, or to protect our rights, property, or safety.

4.3 Business Transfers

In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction.

5. Data Retention

We retain your information according to the following schedule:

  • Non-Essential Personal Data: 12 months from last interaction
  • Essential Service Data: Indefinitely, including sender names, recipient names, generated songs, lyrics, and audio files to ensure continuous access to digital postcards
  • Marketing Data: Until you unsubscribe or request deletion
  • Technical Data: 12 months for analytics purposes

6. Your Rights and Choices

6.1 Access and Control

You have the following rights regarding your personal information:

  • Access: Request a copy of the personal information we hold about you
  • Correction: Request correction of inaccurate or incomplete information
  • Deletion: Request deletion of your personal information (subject to our legitimate business interests in maintaining service continuity)
  • Portability: Request transfer of your data to another service provider
  • Objection: Object to processing of your personal information for marketing purposes

6.2 Email Communications

You can:

  • Opt out of marketing emails at any time using unsubscribe links
  • Continue to receive essential transactional emails related to your service usage
  • Update your communication preferences by contacting us

6.3 Cookies

You can control cookies through your browser settings, though disabling essential cookies may affect service functionality.

7. Data Security

We implement appropriate technical and organizational security measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction. However, no method of transmission over the internet is 100% secure.

8. International Data Transfers

While our service is provided in English and available internationally, we ensure that any international data transfers are conducted with appropriate safeguards in place to protect your personal information.

9. Children's Privacy

Our service is intended for users aged 18 and over only. We do not knowingly collect personal information from individuals under 18 years of age. If you believe we have inadvertently collected such information, please contact us immediately.

10. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last updated" date. You are advised to review this Privacy Policy periodically for any changes.

11. Contact Us

If you have any questions about this Privacy Policy or wish to exercise your rights regarding your personal information, please contact us at:

Email: support@songpostcard.com

12. Legal Basis for Processing (GDPR)

For users in the European Economic Area, our legal basis for processing your personal information includes:

  • Contract Performance: Processing necessary to provide our services to you
  • Legitimate Interest: Improving our services, analytics, and maintaining service continuity
  • Consent: Marketing communications and optional features (you may withdraw consent at any time)
  • Legal Obligation: Compliance with applicable laws and regulations