Privacy Policy
Last updated: August 29, 2026
1. Introduction
Welcome to Raygum. We respect your privacy and are committed to protecting your personal data. This privacy policy explains how we collect, use, and safeguard your information when you use our music discovery platform.
2. Information We Collect
2.1 Information You Provide
- Account Information: Username, email address, display name, and profile picture
- User Content: Ratings, notes, playlists, and other content you create
- Safety Information: Reports you submit, users you block, and a snapshot of reported public content used for moderation
- Communications: Feedback and support requests you send to us
2.2 Information Collected Automatically
- Usage Data: Pages visited, features used, and interactions with the platform
- Device Information: Browser type, operating system, IP address
- Cookies: See our Cookie Policy for details
- Android push identifier (optional): If you opt in to Android notifications, Firebase Cloud Messaging provides a Firebase Installation ID that Raygum associates with your account only to deliver opted-in app notifications. You can disable notifications in Raygum Settings or Android Settings at any time; we do not use Firebase Analytics, advertising, or push history.
2.3 Information From Third Parties
- Music Services: If you connect Spotify, Apple Music, Tidal, or YouTube Music, we may receive information about your listening history and preferences
- MusicBrainz: We use data from MusicBrainz for artist, release, and track information
2.4 Optional Listening History and Presence
Raygum records listening activity only after you separately enable Listening for a connected source. Connecting a music service for another feature does not enable recording. Spotify may provide exact recent-play timestamps and temporary current-playback state. Apple Music provides an ordered list of recently played tracks without trustworthy play timestamps, so Raygum stores those tracks only as ordered observations.
Your listening history is private to you. If you opt into mutual sharing, reciprocal followers may see an unexpired Spotify “Listening now” card; they cannot see your history. Ghost mode temporarily hides that card while recording continues. We keep provider track identifiers and the minimum track metadata needed to show unmatched items, and restrict provider credentials to server-only systems.
Listening settings let you export or delete individual events or all history, disable recording, and disconnect a source. Disconnecting a source deletes its credentials, presence, listening events, and personal track corrections. If you opt into a weekly private recap, it is sent to your Raygum account email address and only when you have new non-imported activity.
2.5 YouTube Music Integration
When you connect your YouTube Music account to Raygum, you grant us access to manage certain aspects of your account. This integration uses the YouTube Data API Services. By using this feature, you also agree to be bound by the YouTube Terms of Service and Google Privacy Policy.
What we access:
- Your YouTube Music playlists: We can view your existing playlists to help you manage and export your Raygum playlists
- Playlist management: We can create new playlists and add tracks to playlists on your behalf when you choose to export playlists from Raygum
- Basic account information: Your YouTube channel name and profile information for display purposes
How we use this access:
- To export your Raygum playlists to YouTube Music when you request it
- To display your connected YouTube Music account status in your settings
- We do not access or store your YouTube viewing history
- We do not post or share content without your explicit action
You can revoke Raygum's access to your YouTube Music account at any time through your Google Account permissions page, or by disconnecting the service in your Raygum settings.
2.6 AI Assistants and the Raygum MCP Server
Raygum provides a documented Model Context Protocol (MCP) server that lets compatible AI assistants search the public music catalogue. Public catalogue searches and lookups do not require a Raygum account.
If you connect an AI assistant to your Raygum account, the assistant receives a revocable OAuth access token, not your Raygum password. Raygum's authorization provider may return your verified email address to the connected client for identity and workspace domain protections. The MCP server can return your Listen List, ratings, notes (including private drafts), and playlists only after authentication and when the connected client requests the relevant tool or resource.
At your request, a connected assistant can add or remove Listen List entries, create or replace ratings and notes, and create, update, or delete playlists. Ratings are public. New notes and playlists are public by default unless you or the connected client explicitly choose a private setting. Tool results are sent to the AI service you selected, whose handling of prompts and results is governed by its own privacy policy and settings.
You can review or revoke connected OAuth clients from Settings under AI & API Access. Revocation prevents future MCP access but does not remove information already processed by the third-party AI service. See the Raygum MCP documentation for supported tools and authentication details.
3. How We Use Your Information
- Provide and improve our music discovery services
- Personalize your experience and recommendations
- Authenticate connected AI clients and fulfil MCP tool requests
- Enable social features like following other users
- Communicate with you about updates and features
- Respond to support requests and feedback
- Analyze usage patterns to improve the platform
- Detect and prevent fraud or abuse
- Review reports and enforce our community rules
4. Information Sharing
We do not sell your personal information. We may share data:
- Publicly: Your username, profile picture, ratings, playlists, and other content you choose to make public
- With Service Providers: Trusted third parties who help us operate the platform (hosting, analytics, authentication)
- With Connected AI Services: The catalogue or account data needed to fulfil MCP requests you authorize through an AI assistant you choose
- Firebase Cloud Messaging: For Android users who opt in, Google processes the Firebase Installation ID and push delivery metadata to deliver Raygum notifications. Android channel settings control category, sound, vibration, and lock-screen visibility.
- For Legal Reasons: When required by law or to protect our rights
- With Your Consent: When you explicitly authorize us to share information
5. Data Security
We implement appropriate technical and organizational measures to protect your data, including encryption, access controls, and secure hosting. However, no internet transmission is completely secure, and we cannot guarantee absolute security.
Artist Claims and Managed Pages
If you apply to manage an artist page, we collect your Raygum account identifier, your stated relationship to the artist, evidence links, and the explanation you provide. We use this information to assess the claim, prevent impersonation, contact you about the review, and resolve ownership disputes. Verification evidence and private reviewer notes are not made public.
Verified artists may publish a short statement and official destinations. Raygum records aggregate daily clicks on those destinations and shows totals to authorised artist representatives. These counters do not contain fan names, email addresses, account identifiers, IP addresses, or raw user-agent strings. Raygum does not give an artist fan contact information without separate, explicit consent.
Artist destinations lead to independent third-party services with their own privacy practices. Raygum does not control what those services collect after you leave Raygum.
6. Your Rights
Depending on your location, you may have rights to:
- Access your personal data
- Correct inaccurate data
- Request deletion of your data
- Object to or restrict certain processing
- Data portability
- Withdraw consent
To exercise these rights, please contact us through our feedback form or email.
You can permanently delete your Raygum account from Settings in the iPhone or Android app. Deletion removes your profile and account-owned ratings, notes, playlists, follows, listen list, and uploaded files. Moderation audit records may be anonymized where retention is necessary to protect the service.
7. Data Retention
We retain your data for as long as your account is active or as needed to provide services. If you delete your account, we will remove or anonymize your personal data, though some information may be retained for legal or legitimate business purposes.
8. Children's Privacy
Raygum is not intended for children under 13. We do not knowingly collect information from children under 13. If we learn we have collected such information, we will delete it promptly.
9. International Data Transfers
Your information may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place for such transfers.
10. Changes to This Policy
We may update this privacy policy from time to time. We will notify you of significant changes by posting a notice on the platform or sending you an email.
11. Contact Us
If you have questions about this privacy policy or our data practices, please contact us through our feedback form.