Privacy Policy
Version 1.0 | Last Updated: January 1, 2026
1. Introduction
Marshal Rosenberger d/b/a Mastered By Marshal (“Company,” “we,” “us,” or “our”) respects your privacy and is committed to protecting your personal data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our audio mastering services at masteredbymarshal.com (the “Service”).
By using our Service, you consent to the data practices described in this policy. If you do not agree with the terms of this Privacy Policy, please do not access or use our Service.
2. Data Controller
The data controller responsible for your personal data is:
Marshal Rosenberger d/b/a Mastered By Marshal
Email: Masteredbymarshal@gmail.com
3. Information We Collect
3.1 Information You Provide
- Account Information: Email address, full name, and password when you create an account
- Audio Content: Music files you upload for mastering services (mixes, stems)
- Project Information: Project names, release types, and feedback/revision requests
- Payment Information: Processed securely by Stripe; we do not store credit card numbers
- Communications: Messages you send us regarding your projects or support requests
- Marketing Preferences: Your opt-in choice for marketing communications
3.2 Information Collected Automatically
- Device Information: Browser type, operating system, and device identifiers
- Usage Data: Pages visited, features used, and interaction patterns
- IP Address: For security logging, rate limiting, and fraud prevention
- Cookies: Session management and analytics (see Section 9)
4. How We Use Your Information
We use collected information for:
- Service Delivery: Processing and delivering your mastered audio files
- Account Management: Creating, maintaining, and authenticating your account
- Payment Processing: Processing payments and sending receipts
- Communication: Sending project updates, service notifications, and responding to inquiries
- Service Improvement: Analyzing usage patterns to improve our Service
- Security: Detecting and preventing fraud, abuse, and security incidents
- Legal Compliance: Complying with applicable laws and regulations
- Marketing: Sending promotional communications (only with your consent)
5. Legal Basis for Processing (GDPR)
If you are located in the European Economic Area (EEA), we process your personal data based on:
- Contract Performance: Processing necessary to provide our mastering services
- Consent: For marketing communications and optional features
- Legitimate Interests: For security, fraud prevention, and service improvement
- Legal Obligation: When required by applicable law
6. Third-Party Services
We share data with the following service providers:
| Service | Purpose | Privacy Policy |
|---|---|---|
| Supabase | Database, Authentication, File Storage | supabase.com/privacy |
| Stripe | Payment Processing | stripe.com/privacy |
| Resend | Transactional Email | resend.com/legal/privacy-policy |
| Upstash | Rate Limiting | upstash.com/privacy |
| Sentry | Error Tracking | sentry.io/privacy |
| Vercel | Hosting & Analytics | vercel.com/legal/privacy-policy |
| Calendly | Session Booking | calendly.com/privacy |
7. International Data Transfers
Your information may be transferred to and processed in the United States or other countries where our service providers operate. These countries may have different data protection laws than your country of residence. By using our Service, you consent to the transfer of your information to these countries.
For EEA users, we ensure appropriate safeguards are in place, including Standard Contractual Clauses approved by the European Commission.
8. Data Retention
We retain your data for the following periods:
- Account Data: Until you request deletion or 3 years of inactivity
- Audio Files: 90 days after project completion, then permanently deleted
- Payment Records: 7 years (as required for tax compliance)
- Security Logs: 90 days
- Consent Records: Indefinitely (for legal defense)
9. Cookies & Tracking Technologies
We use the following cookies:
Essential Cookies
Required for the Service to function (authentication, security). Cannot be disabled.
Analytics Cookies
Help us understand how visitors use our Service. You can opt out via the cookie consent banner.
Session cookies expire when you close your browser. Persistent cookies expire based on their settings (typically 7-30 days for our Service).
10. Your Rights
10.1 All Users
- Access: Request a copy of your personal data
- Correction: Request correction of inaccurate data
- Deletion: Request deletion of your personal data
- Opt-Out: Unsubscribe from marketing communications
10.2 EEA Residents (GDPR)
- Data Portability: Receive your data in a machine-readable format
- Restrict Processing: Request limitation of data processing
- Object: Object to processing based on legitimate interests
- Withdraw Consent: Withdraw consent at any time
- Lodge Complaint: File a complaint with your local Data Protection Authority
10.3 California Residents (CCPA)
- Right to Know: Request disclosure of data collected about you
- Right to Delete: Request deletion of your personal information
- Right to Opt-Out: We do not sell personal information
- Non-Discrimination: You will not be discriminated against for exercising your rights
To exercise these rights, contact us at Masteredbymarshal@gmail.com. We will respond within 30 days.
11. Do Not Sell My Personal Information
We do not sell, rent, or trade your personal information to third parties for monetary consideration. We only share data with service providers necessary to operate our Service as described in Section 6.
12. Children's Privacy
Our Service is not intended for individuals under 18 years of age. We do not knowingly collect personal information from children under 18. If you believe we have collected information from a child under 18, please contact us immediately so we can delete it.
13. Security
We implement industry-standard security measures including:
- Encryption in transit (TLS/SSL) and at rest
- Secure password hashing
- Rate limiting to prevent abuse
- Regular security audits
- Access controls and authentication
While we strive to protect your data, no method of transmission over the Internet is 100% secure. You are responsible for maintaining the security of your account credentials.
14. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new Privacy Policy on this page with an updated “Last Updated” date. For significant changes, we may also notify you via email. Your continued use of the Service after such modifications constitutes acceptance of the updated Privacy Policy.
15. Contact Us
If you have any questions about this Privacy Policy or our data practices, please contact us:
Marshal Rosenberger d/b/a Mastered By Marshal
Email: Masteredbymarshal@gmail.com