Legal

Privacy.

Last updated · 24 July 2026

This policy explains what personal data Tonearm collects, why, how long it is kept, and the rights you have over it. It is written to comply with Brazil's General Data Protection Law (LGPD, Law No. 13.709/2018) and the Brazilian Civil Rights Framework for the Internet (Marco Civil da Internet, Law No. 12.965/2014). By using Tonearm you agree to the processing described here.

Who is responsible (controller)

Tonearm is the controller of the personal data described below. For any privacy request or question, contact gabrielsgs2007@gmail.com. We answer data-subject requests within the timeframes set by the LGPD.

Data we collect

We only collect what the product needs to work:

  • Account data — email address and username you provide at sign-up; an encrypted password (we never see it in plain text).
  • Profile data — anything you choose to add: display name, bio, avatar image, and optionally date of birth and phone number.
  • Activity data — your ratings, reviews, diary entries, lists, watchlist, favorites, likes, follows, and the albums and tracks you engage with.
  • Technical data — session cookies needed to keep you signed in, and standard server logs (such as IP address and request time) kept for security and abuse prevention.
  • Billing data — if you subscribe, payment is handled by Stripe. We store a subscription status and a Stripe customer reference; we never receive or store your full card number.

We do not knowingly collect data from children under the age required by local law. If you believe a minor has created an account, contact us and we will remove it.

Why we process it, and the legal basis

  • To run your account and the service (authentication, storing your diary and social activity) — legal basis: performance of a contract with you (LGPD art. 7, V).
  • To show public profiles, reviews, and lists — legal basis: performance of a contract and your own action of publishing content publicly.
  • To keep the service secure (fraud, abuse, and rate-limit prevention; logs) — legal basis: legitimate interest (LGPD art. 7, IX).
  • To process subscriptions — legal basis: performance of a contract.
  • To comply with legal obligations (for example, retaining records the law requires) — legal basis: compliance with a legal or regulatory obligation (LGPD art. 7, II).

What is public

Tonearm is a social product. Your username, profile, reviews, ratings, diary entries, public lists, favorites, and follower/following relationships are visible to others by design. Your email, password, date of birth, and phone number are never shown publicly. Private lists are visible only to you. You control what you publish and can delete it at any time.

Who we share data with

We do not sell your personal data. We rely on a small set of processors strictly to operate the service:

  • Supabase — database, authentication, and file storage.
  • Vercel — application hosting and delivery.
  • Stripe — payment processing for subscriptions.
  • Sentry — error monitoring; configured to strip personal identifiers such as email and username from error events.
  • Spotify — album and artist metadata is fetched from Spotify to power search and album pages. See Data sources.

International data transfer

Our processors (Supabase, Vercel, Stripe, Sentry) store and process data on infrastructure located in the United States. This means your data is transferred internationally under LGPD art. 33. We only use providers that offer an adequate level of security and contractual safeguards consistent with the LGPD and ANPD guidance on international transfers.

How long we keep it

We keep your account and activity data for as long as your account exists. When you delete your account, your profile and all activity that depends on it (reviews, lists, follows, watchlist, favorites, and logs) are removed from the database, and your avatar is deleted from storage. Some records may persist briefly in encrypted backups or where the law requires retention, after which they are deleted.

Your rights and how to use them

Under the LGPD (arts. 18–20) you may, at any time:

  • Confirm that we process your data and access it.
  • Correct incomplete, inaccurate, or out-of-date data.
  • Anonymize, block, or delete unnecessary or excessive data.
  • Request portability of your data to another provider.
  • Delete personal data processed with your consent.
  • Be informed about with whom your data is shared.
  • Withdraw consent where processing relies on it.

Most of this is self-service: Settings lets you view and edit your profile, email, and other data, and the Danger zonethere lets you delete your account and its content permanently. For anything you can't do in the product — including access, portability, or correction requests — email gabrielsgs2007@gmail.com.

Cookies

Tonearm uses only strictly necessary cookies — the session cookie that keeps you signed in, and, when a private beta is active, a beta-access cookie. We do not use advertising or third-party analytics cookies. See the Cookies page for details.

Security

Access to your data is protected by database row-level security so that you can only read and write your own private records. Passwords are stored hashed, and traffic is served over HTTPS. No system is perfectly secure, but we work to protect your data and to fix issues quickly.

Changes to this policy

We may update this policy as the product evolves. When we make material changes, we will update the date at the top and, where appropriate, notify you in the product.