TunebashTunebashmusic freedom

Legal

Privacy Policy

Tunebash ("Tunebash," "we," "us") operates https://www.tunebash.com, a music discovery and artist intelligence platform. This Privacy Policy explains what information we collect, how we use it, and the choices you have.

Last updated: September 20, 2026

YouTube API Services

Tunebash uses YouTube API Services to help users discover music and match artists and tracks to official YouTube channels and videos. This includes retrieving public YouTube metadata and embedding public YouTube videos for playback where permitted.

Tunebash accesses the YouTube Data API using a server-side API key. We do not require users to sign in with a Google Account to access YouTube API functionality. Sign-in with Google or Facebook on Tunebash is for Tunebash account features only and is separate from YouTube API access.

YouTube data we may retrieve through the YouTube Data API includes public metadata such as:

  • YouTube video IDs and titles
  • Channel IDs, channel titles, and public thumbnails
  • Public playlist and playlist item metadata (where used)
  • Embeddability and other fields needed to show official videos

What we store: To reduce repeated API calls, Tunebash may cache YouTube video IDs and related public metadata (for example video title, channel name, and thumbnail URL) in our database when we match a track to a YouTube video. This cached YouTube metadata is treated as refreshable reference data and is refreshed or deleted within 30 days, consistent with YouTube API Services policies for non-authorized API data.

What we do not store from YouTube: We do not download or permanently host YouTube video or audio files. Playback uses the YouTube embedded player. We do not access private YouTube account data, uploads, subscriptions, or comments through the YouTube API.

Google's Privacy Policy explains how Google handles information in its services: https://policies.google.com/privacy

YouTube API Services terms and developer policies apply to our use of YouTube data: YouTube API Services Terms of Service · Developer Policies

Information we collect

Account information. If you sign in, we receive information from your identity provider (Google or Facebook), such as your name, email address, profile photo, and birthday when available.

Social features. If you use Facebook sign-in, we may receive a list of Facebook friends who also use Tunebash so we can show shared song likes. We do not receive your full Facebook friend list.

Activity on Tunebash. We store song likes, friendships within Tunebash, and preferences you create on the service.

Crowdsourced enrichment. If you use the Tunebash Chrome extension, an anonymous device identifier and resolved stream metadata (for example preview URLs or tokens) may be submitted to help other users play tracks. The extension runs only on pages you visit and does not access unrelated browsing history.

Technical data. Our hosting providers may log IP addresses, browser type, and request metadata for security and reliability.

How we use information

  • Provide search, playback, artist intelligence, and social features
  • Match tracks to official YouTube videos and enrich catalog records
  • Improve reliability through caching and crowdsourced stream resolution
  • Respond to support requests and protect against abuse
  • Comply with legal obligations

We do not sell your personal information or your music library.

Third-party services

Tunebash relies on third parties to operate, including:

  • Supabase (authentication and database)
  • Vercel (hosting)
  • YouTube / Google (video metadata and embedded playback)
  • Other music metadata and preview providers where applicable

Each third party processes data under its own terms and privacy policies. Embedded YouTube content is subject to Google's policies when you interact with the player.

Cookies

Tunebash uses essential cookies for sign-in sessions and preferences (for example chart region selection). We do not use third-party advertising cookies on the core service.

Data retention

Account data is kept while your account is active. YouTube-derived metadata in our cache is refreshed or removed within 30 days. Server logs are retained for a limited period for security and debugging.

Your choices and deletion

You may sign out at any time from your account page. You may permanently delete your Tunebash account and associated profile, likes, and friendships from account settings.

Account settings → Delete account

To request deletion of other personal data, contact privacy@tunebash.com. We will respond within a reasonable time.

If Tunebash later adds features that access YouTube account data through Google OAuth, users will be able to revoke Tunebash's access through Google security settings, and we will delete associated YouTube authorization data when consent is revoked.

Children

Tunebash is not directed at children under 13. We do not knowingly collect personal information from children under 13. Contact us if you believe a child has provided personal information.

Changes

We may update this Privacy Policy from time to time. We will post the revised policy on this page and update the "Last updated" date.

Contact

Questions about this Privacy Policy or our data practices: privacy@tunebash.com