Privacy Policy

Last updated: July 21, 2026

1. Introduction

PlaylistLookup ("we", "our", or "us") respects your privacy and is committed to protecting your personal data. This privacy policy explains how we collect, use, and safeguard your information when you use our service.

2. Information We Collect

2.1 Information You Provide

  • Account Information: Name, email address, password
  • Payment Information: Billing details processed securely through Stripe
  • Profile Information: Any additional information you choose to provide

2.2 Information We Collect Automatically

  • Usage Data: Search queries, playlists viewed, features used
  • Device Information: Browser type, IP address, operating system
  • Cookies: We use cookies to improve your experience

2.3 Third-Party Data

All playlist and curator contact information is sourced from publicly available Spotify playlist descriptions. We do not access private or non-public data.

2.4 Google Account Integrations

We offer two optional, independent Google integrations. You are never required to use either one, and using one does not enable the other.

  • Sign in with Google: If you choose to sign in with Google, we receive your name, email address, profile picture, and Google account ID (via the openid, email and profile scopes) in order to create and authenticate your account.
  • Send email via Gmail: If you connect your Gmail account, we request only the https://www.googleapis.com/auth/gmail.send scope, solely to send emails that you compose and send to curators from your own account. We do not read, view, download, or store the contents of your inbox or any of your emails. To send on your behalf, we store your Google authorization tokens in encrypted form; when you disconnect Gmail, these tokens are permanently deleted.

PlaylistLookup's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

3. How We Use Your Information

We use your information to:

  • Provide and maintain our service
  • Process your subscription and payments
  • Send you service-related emails and updates
  • Improve our platform and user experience
  • Prevent fraud and ensure security
  • Comply with legal obligations

4. Google User Data

This section describes specifically how we handle data obtained through Google APIs when you use the optional "Send email via Gmail" feature. Our use of this data complies with the Google API Services User Data Policy, including the Limited Use requirements.

4.1 Data Access

When you connect Gmail, we request a single, narrow permission: the https://www.googleapis.com/auth/gmail.send scope. This scope only allows sending an email from your account after you have explicitly composed and sent it. We do not request or receive access to read, search, or download your inbox, your contacts, your labels, your drafts, or any other Gmail content. Sending the messages you write is the only action this permission enables.

4.2 Data Use

The sole use of this access is to deliver the individual emails you write yourself, for the single purpose of reaching out to playlist curators from within PlaylistLookup. We never send email automatically, in bulk, or without you personally composing and confirming each message.

4.3 Data Transfer

Google user data (your authorization tokens and the content of the messages you send) is never sold, rented, or shared with third parties. It is never used for advertising, and it is never used to develop, train, or improve any AI or machine-learning models. It is used only to operate the sending feature for you.

4.4 Data Protection

Your Google access and refresh tokens are stored encrypted at rest (using application-level encryption) in a dedicated, access-controlled table that is separate from the rest of your account data. The raw token values are never written to our database in plaintext.

4.5 Data Retention & Deletion

We retain your Google tokens only for as long as your Gmail account remains connected. You can revoke the connection at any time using the "Disconnect" option in your profile settings; doing so permanently deletes the stored tokens from our database; they are removed entirely, not merely deactivated. Tokens are also permanently deleted if you delete your PlaylistLookup account. In addition, you can revoke PlaylistLookup's access at any time from your Google Account security settings.

4.6 Source of Curator Contact Details

The curator contact details shown in PlaylistLookup (such as email addresses and Instagram handles) are not obtained through any Google API. They come exclusively from information that curators themselves chose to publish in their own public Spotify playlist descriptions, the very place where curators routinely and explicitly invite artists to get in touch, using wording such as "submit your music here", "email for playlist consideration", or "DM for submissions". These contact details are therefore published in a context created specifically to receive outreach from artists. We do not collect details from any private or non-public source; where a description does not itself invite contact, we make no assumption about that individual curator's intent.

Accordingly, the Gmail sending feature is used only to send the individual, personally written messages you compose to these publicly listed addresses. It cannot be used to send bulk, automated, scraped-list, or otherwise unsolicited mass email; every message is written and sent by you, one recipient at a time.

5. Information Sharing

We do not sell your personal information. We may share your data with:

  • Service Providers: Stripe for payment processing, email service providers
  • Google: When you use "Sign in with Google" or connect Gmail to send emails, we interact with Google APIs to provide those features. We do not sell or transfer Google user data to third parties.
  • Legal Requirements: When required by law or to protect our rights
  • Business Transfers: In the event of a merger or acquisition

6. Data Security

We implement appropriate technical and organizational measures to protect your personal data. However, no method of transmission over the internet is 100% secure. We use industry-standard encryption and security practices.

7. Your Rights

You have the right to:

  • Access your personal data
  • Correct inaccurate data
  • Request deletion of your data
  • Object to data processing
  • Export your data
  • Withdraw consent at any time

To exercise these rights, contact us at privacy@playlistlookup.com

8. Cookies

We use cookies to enhance your experience, analyze usage, and remember your preferences. You can disable cookies in your browser settings, though this may limit functionality.

9. Data Retention

We retain your personal data for as long as your account is active or as needed to provide our services. If you cancel your subscription, we may retain certain information for legal and accounting purposes. Google authorization tokens for the Gmail sending feature are retained only while your Gmail account is connected and are permanently deleted when you disconnect it or delete your account.

10. Children's Privacy

Our service is not intended for users under 18. We do not knowingly collect information from children. If you believe we have collected data from a minor, please contact us immediately.

11. International Users

Our servers are located in the Netherlands. By using our service, you consent to the transfer of your data to the Netherlands. We comply with GDPR requirements for EU users.

12. Changes to This Policy

We may update this privacy policy from time to time. We will notify you of significant changes by email or through a notice on our website. Continued use of our service constitutes acceptance of the updated policy.

13. Contact Us

If you have questions about this privacy policy or our data practices, contact us at:

PlaylistLookup

Email: privacy@playlistlookup.com

Location: Nijmegen, Netherlands