Privacy policy
Your listening history is personal, and we take protecting it seriously. We handle your data transparently and in line with data protection principles and the regulations that apply to us. This page says plainly what MuseBud collects, why, who else processes it, and how you stay in control.
Last updated: September 20, 2026
In short. MuseBud reads what you play on Apple Music — with your permission — so MuseBud can answer, recommend, and build playlists. Your messages to MuseBud go to OpenAI to generate the reply; they are not used to train anyone's AI models. During the private beta we read conversations to improve the product. We don't sell your information. You can delete your account and everything tied to it at any time from Settings → Data Controls → Delete Account.
Who we are
MuseBud is made by Onesoftware OÜ, Järvevana tee 9, Tallinn, 11314, Estonia (registry code 17494420). We are the controller of the personal data described here. Questions and requests go to contact@musebud.app.
This policy covers the MuseBud iOS app, the private beta, and this website, including its request and contact forms.
What we collect, and why
Your account
When you sign in with Apple or Google we receive the account identifier that provider gives us, and — depending on what you choose to share — your name, your email address and, with Google, your profile picture. We use these to create your account and keep it yours.
Your Apple Music listening
With your permission, MuseBud reads your recently played tracks, your library and playlists, the play counts your iPhone keeps, and the history you choose to import from an Apple privacy export. Apple's services don't hand over a complete play-by-play record, so we combine several signals to work out what you played. This is what MuseBud's answers, statistics, recommendations and playlists are built from.
Your conversations with MuseBud
Your messages and MuseBud's replies are stored so you can come back to them, and so MuseBud has context. See "MuseBud and OpenAI" below for where they go.
Your location, if you allow it
MuseBud asks for when-in-use location access at roughly hundred-metre accuracy and keeps your most recent coordinates, the city, region and country they resolve to, and your time zone. It uses them for time-of-day and place-aware answers and for concert search. Location is optional; the app works without it, and you can turn it off in iOS Settings.
How you use the app
We record which features you use, app lifecycle events, crashes, and performance signals, and we record replays of app sessions (see "Analytics and session replays"). If you enable notifications we store a push token so we can send them.
What you send us on this website
If you request beta access we keep the answers on the form, your email address, the place you picked, the time, and — for thirty days — your IP address and browser details, to tell real requests from automated ones. If you use the contact form we keep your name, email address and message so we can reply.
The legal basis for each
We process your account, listening, conversation and location data to provide the service you asked for (contract), your usage data and website form data because we have a legitimate interest in running, securing and improving a private beta, and your Apple Music and location access on the permission you give in iOS, which you can withdraw there at any time.
MuseBud and OpenAI
Bud is powered by an OpenAI model. To answer you, MuseBud sends your message and the listening context needed for that answer to OpenAI. OpenAI states that data sent through its API is not used to train its models; under our current configuration OpenAI keeps the conversation state it needs to continue a chat, and its abuse-monitoring logs, for up to thirty days.
MuseBud does not use your listening history or your conversations to train AI models — not ours, not OpenAI's.
During the private beta, we read conversations. That is how we find out where MuseBud is wrong, slow or unhelpful, and it is most of the reason the beta exists. Members of our team read conversations, rate them, and use what they learn to change how MuseBud works. We don't share them outside the team, and they are deleted with your account. The "Help improve MuseBud" switch in the app is on for everyone during the beta and cannot be turned off; the beta terms say the same.
Analytics and session replays
In the app we use PostHog to understand feature use, diagnose crashes and performance problems, and replay app sessions. A replay is a series of screenshots of the app as you used it: it can show the text on screen, including what you typed and what MuseBud replied, and album artwork. It shows MuseBud's own screen only, not other apps. Replays are recorded for a share of sessions set on our side, are kept for thirty days, and only our team can view them.
On this website we count visits and see where the request form loses people, without cookies: nothing is stored in your browser, and PostHog builds an anonymous daily visitor from a hash of your network address, browser and a secret that changes every day, then discards the address. No replays, no profiles. If you would rather not be counted at all, turn analytics off below — that stores one flag on your device, and that flag is all this site ever keeps there.
Checking this browser's analytics setting…
Both forms are protected by Cloudflare Turnstile, which checks that a request comes from a person; Cloudflare receives your IP address and browser details for that check, under its Turnstile privacy addendum.
Who else receives your data
| Who | Why | What they receive |
|---|---|---|
| Apple | Sign in with Apple, Apple Music, TestFlight and the App Store | Under Apple's own terms. Artwork and previews on this website load from Apple's servers, which see your IP address and browser details when they do |
| Sign in with Google | Under Google's own terms, if you sign in that way | |
| OpenAI (United States) | Powers MuseBud | Your messages and the listening context needed to answer them |
| PostHog (European Union) | Analytics and session replays | Usage events, crash reports, and app replays; anonymous visit counts from this website |
| Ticketmaster | Concert search | The city or coordinates MuseBud searches around, and the artists asked about |
| Cloudflare | Bot protection on both forms; database backups | Your IP address and browser details when a form is verified; backup copies of our database |
| Hetzner | Hosts MuseBud's backend and this website | Everything MuseBud stores |
| Migadu | Hosts our mailbox | Anything you email us or send through the forms, and the emails we send you |
We don't sell your personal information, and we don't use it to track you across other companies' apps and websites.
Where your data is kept
Onesoftware OÜ is in Estonia. Our servers are operated by Hetzner in the United States, OpenAI processes conversations in the United States, and PostHog stores analytics in the European Union. Where data leaves the European Economic Area, we rely on the providers' standard contractual clauses under the GDPR.
How long we keep it
| What | How long |
|---|---|
| Your account, listening history, imported history, playlists and conversations | Until you delete a conversation or your account |
| Your most recent location | Replaced each time it updates; deleted with your account |
| Technical sync records used to detect plays | 90 days; the latest state is kept |
| Sign-in sessions | 90 days, or until you log out |
| App session replays | 30 days |
| Beta requests on this website | Until the App Store launch and its notification round are done, and beyond while useful; removable on request from any email we send. IP address and browser details: 30 days |
| Contact-form messages | While we're dealing with them, and as a record of what we said |
| Backups | Rolling copies deleted after 14 days |
When the beta ends, or if MuseBud shuts down, we delete tester data within 30 days unless you've already joined the next version.
Deleting your account
Settings → Data Controls → Delete Account deletes your account, listening history, imported history, conversations and location from our live systems. Copies in backups expire within the backup window above; OpenAI's copies expire under its own thirty-day rule.
Your rights
You can ask us for a copy of your data, to correct it, to delete it, to restrict or object to how we use it, or to receive it in a portable format. Email contact@musebud.app; we may ask you to confirm it's your account, and we answer within a month. If you think we've handled your data wrongly, you can complain to the Estonian Data Protection Inspectorate (aki.ee) or your local authority. You can withdraw Apple Music, location and notification permissions at any time in iOS Settings.
Age
MuseBud's private beta is for people aged 16 and over. We don't knowingly collect data from anyone younger; if you think we have, email us and we'll delete it.
Changes to this policy
When this policy changes we update the date at the top and say what changed. If a change affects how we use your personal data, we tell you in the app or by email before it takes effect.
Contact
contact@musebud.app · Onesoftware OÜ, Järvevana tee 9, Tallinn, 11314, Estonia.
Place suggestions on the request form come from the GeoNames database, used under the Creative Commons Attribution 4.0 licence.