Fanaura, Inc. ("we," "us," "our") is a Delaware corporation providing a fan engagement and analytics platform designed to help artists, managers, and labels connect more effectively with their audience. This Privacy Policy explains how we collect, use, and share information through our services, websites, and applications (collectively, the "Service").
1. Information We Collect
A. Personal Information
We collect information you provide when registering, such as your name, email address, phone number, payment details, and company affiliation.
B. Usage Data
We automatically collect data including IP addresses, device/browser types, log data, and interactions for performance and security improvements.
C. Fan Data
Our platform enables users to collect and analyze data about their audiences, including:
- Names, email addresses, and phone numbers (when fans opt-in)
- Location data (city, state, country)
- Engagement metrics (pre-saves, RSVPs, purchases)
- Communication preferences
D. Third-Party Platform Data
When users connect third-party accounts (such as Instagram, Spotify, or Shopify), we may receive data from those platforms in accordance with their terms and our users' permissions. This includes:
- Instagram: Username, profile information, and direct message content for automation purposes
- Spotify: Artist and track information for pre-save campaigns
- Shopify: Order and customer data for merchandise tracking
2. How We Use Your Information
- To provide, maintain, and improve our services
- To process payments and manage subscriptions
- To personalize features and offer recommendations
- To communicate with users about updates and support
- To send SMS and email notifications (with explicit consent)
- To enable marketing automation features
- To comply with legal obligations
3. Sharing Your Information
We may share data with:
Service Providers under strict contractual obligations:
- Supabase Inc. (database hosting)
- Vercel Inc. (application hosting)
- Stripe, Inc. (payment processing)
- OpenAI, L.L.C. (AI features)
- Telnyx/Twilio (SMS services)
- Resend (email services)
Legal Authorities, when required by law or to protect rights
In Business Transfers, if Fanaura, Inc. is acquired or merges, data may be transferred
We do not sell your personal data.
4. Your Rights
Depending on your jurisdiction (e.g., EU, California):
- Access or update your personal information
- Request deletion of your data (see Section 11)
- Opt-out of promotional messages
- Exercise GDPR/CPRA rights including data portability, access, and correction
- Withdraw consent for data processing at any time
5. Data Security
We implement industry-standard safeguards including:
- TLS/SSL encryption for data in transit
- AES-256 encryption for data at rest
- Role-based access controls
- Regular security audits and penetration testing
- SOC 2 compliant infrastructure providers
However, no system is 100% secure.
6. Data Retention
We retain data only as long as necessary to deliver services or comply with legal obligations:
- Active account data: Retained while account is active
- Deleted account data: Purged within 30 days (except as required for legal compliance)
- Communication logs: Retained for 2 years for compliance purposes
- Financial records: Retained for 7 years per tax requirements
7. Children's Privacy
We do not knowingly collect data from children under 13 (or 16 in the EU). If we discover such data, it will be deleted promptly. If you believe a child has provided us with personal information, please contact us at privacy@fanaura.com.
8. SMS/Text Message Terms
By providing your phone number and opting in to SMS notifications:
- You consent to receive SMS messages including verification codes, music release alerts, event reminders, and promotional content
- Message frequency varies based on your notification preferences
- Message and data rates may apply
- You may opt out at any time by replying STOP to any message
- For help, reply HELP or email support@fanaura.com
- Consent is not a condition of purchase
9. Compliance Frameworks
- GDPR: We comply with EU data handling standards and offer rights to EU residents including the right to access, rectify, erase, restrict processing, data portability, and object to processing
- CCPA/CPRA: We provide opt-out and access rights to California users. California residents may request disclosure of data collected and shared
- TCPA: SMS marketing requires explicit opt-in from users and includes clear opt-out options
- CAN-SPAM: All marketing emails include unsubscribe links and honor opt-out requests within 10 business days
10. International Data Transfers
If you are located outside the United States, your data may be transferred to and processed in the United States. We use Standard Contractual Clauses and other appropriate safeguards for international transfers.
11. Data Deletion
You may request deletion of your personal data at any time by:
- Visiting https://fanaura.com/data-deletion
- Emailing privacy@fanaura.com
- Using the "Delete Account" option in your account settings
We will process deletion requests within 30 days. Some data may be retained as required by law or for legitimate business purposes (fraud prevention, legal compliance).
12. Updates to This Policy
We may update this Privacy Policy. Material changes will be communicated via email or prominent notice on our website. Continued use of our services after changes indicates acceptance.