Privacy Policy
Effective date: March 14, 2026
1. Information We Collect
We collect the following types of information:
- Account data: Email address and name provided when you sign up via Firebase Authentication (our authentication provider, operated by Google).
- Portfolio content: Artist name, bio, genres, photos, links, music tracks, show dates, and any other content you enter in the builder.
- Payment data: Subscription status and billing period. Credit card details are processed directly by Stripe and are never stored on our servers.
- Usage data: Pages visited and general usage patterns, collected via standard server logs.
2. How We Use Your Information
We use your information to:
- Operate and provide the SETCARD service
- Authenticate you and manage your account
- Store and serve your published portfolio pages
- Process subscription payments and manage billing
- Send transactional emails (e.g., subscription confirmations)
- Improve the Service based on usage patterns
3. Data Storage
Your portfolio data is stored in Cloud Firestore (Google's managed document database). Uploaded images are stored in Cloud Storage for Firebase. Account and subscription data is managed by Firebase Authentication (Google) and Stripe respectively.
4. Third-Party Services
We use the following third-party services:
- Google / Firebase: Authentication, database, file storage, and hosting. Firebase Authentication handles sign-up, sign-in, and session management. Cloud Firestore stores portfolio data. Cloud Storage for Firebase stores uploaded images. Firebase App Hosting serves the site. See Google's Privacy Policy.
- Stripe: Payment processing. Handles all credit card data. See Stripe's Privacy Policy.
5. Data Sharing
We do not sell, trade, or rent your personal information to third parties. We share data only with the third-party service providers listed above, and only as necessary to operate the Service.
Your published portfolio page is publicly accessible by anyone with the link. This is the core function of the Service. Do not include information in your portfolio that you do not want to be publicly visible.
6. Cookies and Local Storage
We use browser cookies for authentication session management (via Firebase Authentication). We use localStorage to save your builder draft locally in your browser so you don't lose work between sessions. This data stays on your device and is not transmitted to our servers until you click Publish.
7. Data Retention
Portfolio data is stored indefinitely while your account is active. Account data is retained while your account is active. Upon account deletion, your data is removed within 30 days. You can request deletion at any time by contacting us.
8. Your Rights
Depending on your location, you may have rights under GDPR, CCPA, or similar regulations, including the right to:
- Access the personal data we hold about you
- Request correction of inaccurate data
- Request deletion of your data
- Object to or restrict processing of your data
- Data portability (receive your data in a structured format)
To exercise these rights, contact us at hello@setcard.app.
9. Children's Privacy
SETCARD is not directed at children under 13. We do not knowingly collect personal information from children under 13. If you believe we have inadvertently collected such information, contact us and we will delete it promptly.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by email or via a notice in the Service. Your continued use of SETCARD after changes constitutes acceptance of the updated policy.
11. Contact
Questions or concerns about this Privacy Policy? Contact us at hello@setcard.app.