privacy policy

Privacy Policy

Last Updated: February 27, 2025

Song4You Studio (“we”, “us”, or “our”) is committed to protecting your privacy. This Privacy Policy explains how we collect, use, share, and safeguard your personal information when you use our website (song4youstudio.com) and services. It also outlines your rights regarding your personal data. By using our services, you agree to the collection and use of information as described in this policy. If you do not agree, please refrain from using our website or services.

Data Collection

We collect personal information when you place an order, contact us, or interact with our site. The types of data we collect include:

  • Identity Information: Name (so we know who to contact and address in the song, if applicable).
  • Contact Information: Email address (for order confirmation, delivery of lyrics/song, and communication). We may also collect your social media handle or username if you choose to provide it (for example, if you mention how you heard about us on YouTube, Instagram, etc.).
  • Order Details: Information you provide about the song request – for example, the occasion (birthday, wedding, etc.), names of the recipient and other individuals involved (“From” and “To”), your relationship to the recipient, and the personal story or details you share to be included in the song. This may include personal anecdotes or memories. We only use these details to create your custom song.
  • Payment Information: When you make a purchase, you will provide payment details (such as credit card number, expiration date, and billing info). For your security, payments are processed by our trusted payment processors (Yaad Payments and Max). We do NOT store your full credit card numbers on our servers. We may retain basic transaction details (e.g. amount, date, last four digits of card) for record-keeping.
  • Technical Data: When you visit our site, we may automatically collect technical data such as your IP address, browser type, device information, and browsing actions on our site. This information is collected through cookies and similar tracking technologies (described below) and server logs. This data helps us secure the site and improve user experience, and generally does not directly identify you.

We do not intentionally collect sensitive personal data (such as government ID numbers, health information, etc.) through our site. Please only provide information that is required for your song or order. If you submit personal information about others (for example, the name of a person the song is for), you should ensure you have permission to share that information with us.

Data Usage

We use the collected information for the following purposes:

  • Providing and Personalizing Our Service: We use your information to create and deliver your custom song. For example, the details you provide about your story are used by our songwriters and musicians to craft lyrics and music unique to you. We also use your name and email to communicate with you about drafts, revisions, and delivery of the final song.
  • Order Processing and Fulfillment: Your contact and payment information is used to process your order, collect payment, and send you order confirmations and receipts.
  • Communication: We may send you administrative emails regarding your order (e.g. confirmation, updates on the song’s progress, delivery of the final product). We may also respond to any inquiries or support requests you send us via the contact form or email.
  • Marketing and Updates: With your consent, we may use your email to send you newsletters, special offers, or updates about new services if you have joined our email list or agreed to receive marketing. You can opt-out of these communications at any time (see Your Rights below). We will not spam you – generally, you’ll only hear from us regarding marketing if you subscribed or if it’s related to an existing order or a follow-up.
  • Analytics and Service Improvement: We may use data (like site traffic logs or responses to “How did you hear about us”) to understand how users find and use our site. This helps us improve our website layout, services, and marketing efforts. For example, knowing whether many users came from Instagram or YouTube can guide our outreach efforts. Any analytics are typically on an aggregate level and do not focus on individual users.
  • Security and Fraud Prevention: Information (including IP addresses and browsing behavior) may be used to protect our website, you, and other users. We monitor for suspicious activity to prevent unauthorized access, attacks (using tools like firewalls and security plugins), and fraud in orders or payments.
  • Legal Compliance: In certain cases, we may need to use or retain your information to comply with legal obligations – for example, maintaining transaction records for tax and accounting purposes, or handling any required legal disputes/resolutions. We only retain the minimum data necessary for such compliance.

We will not use your personal data for purposes that are incompatible with the above, unless we obtain your consent or are required/permitted by law. If we plan to use your data for a new purpose, we will update this Privacy Policy or seek your permission as appropriate.

Third-Party Sharing

We do not sell or rent your personal information to third parties. We only share your data in the following circumstances, and only the minimum necessary for each purpose:

  • Payment Processors: When you place an order, your payment details are handled by our third-party payment processing partners, Yaad & Sarig (Yaad Payments) and Max (a leading payment gateway/acquirer in Israel). These partners securely process your credit card transaction. They receive the necessary billing information to validate and charge your card. All payment transactions are encrypted and processed in compliance with PCI-DSS (Payment Card Industry Data Security Standards).* We do not receive or store your full financial details (such as the full credit card number or security code); those are sent directly to the payment processor.
  • Email Marketing Provider: If you subscribe to our newsletter or mailing list, your email address may be stored with our email distribution service (for example, a platform like MailChimp, SendinBlue, or similar). This allows us to send you the newsletters and manage subscriptions/unsubscribes. The email service provider only uses your email under our instructions and does not share it further.
  • Hosting and Service Providers: Our website may be hosted by a third-party hosting company. This means that any data you provide through our site is stored on their servers. We use reputable hosting with appropriate security measures. Additionally, we use other third-party services or plugins to run our website (for example, form builders, security firewalls, analytics tools). These providers might incidentally process data (like storing form submissions or analyzing site usage) on our behalf as “data processors”. They are contractually bound to protect your information and only use it for our specified purposes.
  • Analytics: We may use third-party analytics tools (such as Google Analytics or similar) to collect information about website usage and performance. These tools might set cookies or use tracking scripts to gather non-personal information about how visitors navigate our site (e.g., pages viewed, time spent, device type). This information helps us improve our service. Analytics providers may process your IP address and usage data, but they generally provide us only aggregated results. (If you wish, you can opt out of Google Analytics by using Google’s opt-out tools, or by adjusting cookie settings, as described below.)
  • Security Services: We utilize security services like Wordfence (a website security firewall and malware scanner) to protect our site. In doing so, when you visit our site, your IP address and browsing behavior may be analyzed by the security system to determine if you are a legitimate visitor or a potential malicious actor (bot, hacker, etc.). Suspicious IP addresses might be shared with a security blacklist or blocked. This process helps keep the website and user data safe. Wordfence (and similar security tools) only use this data for security purposes.
  • Legal Requirements and Protection: If required by law, court order, or governmental regulation, we may disclose personal information to the extent necessary to comply. We may also share information if we believe in good faith that such disclosure is needed to investigate or protect against suspected illegal activities, fraud, threats to personal safety, or violations of our terms of service. This includes sharing information with law enforcement or authorities if appropriate.
  • Business Transfers: In the unlikely event that Song4You Studio undergoes a business transaction such as a merger, acquisition, or sale of assets, user information (which is one of our business assets) may be transferred to the successor or new owner as part of that transaction. If this happens, we will ensure that your data remains protected and subject to this Privacy Policy (unless you are notified otherwise and consent to any new policy).

Importantly, we do not share your personal information with any third parties for their own marketing or advertising purposes.

Any third parties that receive your data as part of providing our service are contractually or legally obligated to keep it secure and to use it only for the purposes we specify.

Cookies and Tracking Technologies

Our website uses cookies and similar tracking technologies to enhance your experience, perform analytics, and secure the site. Cookies are small text files placed on your device when you visit a website. Here is how we use them:

  • Essential Cookies: These are necessary for the website to function properly. For example, when you fill out our multi-step song order form, a cookie might be used to remember your progress or inputs as you navigate through the steps. Essential cookies may also be used by our security systems (for instance, Wordfence may set a cookie to distinguish between human visitors and bots). Without these cookies, certain features (like the order form or security protections) may not work correctly.
  • Analytics and Performance Cookies: If we use analytics tools, those tools may set cookies to collect information about how visitors use our site (e.g., which pages are most visited, if there are any error messages, etc.). This data is used only to improve how our website works. For example, understanding that many users visit a particular page can help us optimize that page. These cookies do not collect information that directly identifies you; they provide aggregated statistics.
  • Preferences Cookies: These cookies (if used) remember your choices and preferences, such as language or region. Currently, our site is primarily in English and does not have multiple language options, but if in the future we add features that remember your preferences, cookies would be used for that purpose.
  • Advertising/Marketing Cookies: We do not currently use advertising cookies or third-party ad trackers on song4youstudio.com. We do not serve third-party ads, so you will not find cookies intended for targeted advertising. If this changes in the future, we will update this policy and (if required by law) ask for your consent.

When you first visit our site, you may see a notice about cookies (if required by your jurisdiction). By continuing to use the site, you consent to our use of cookies as described. You can control or delete cookies through your browser settings. Most browsers allow you to refuse new cookies, delete existing ones, or notify you when new cookies are set. Do note that if you disable or delete certain cookies, parts of our site (like the order form) may not function properly for you.

We may also use related technologies like web beacons or pixels in our email communications. For example, if we send newsletters, a tiny tracking pixel may tell us if you opened an email or clicked a link, which helps us gauge the effectiveness of our communications. You can disable image loading in your email client if you prefer not to allow this.

For more information about cookies and how to manage them, you can visit AllAboutCookies.org which provides helpful guidance.

User Rights and Choices

We respect your rights over your personal data. Depending on your location and applicable law, you may have some or all of the following rights:

  • Access Your Information: You have the right to request a copy of the personal data we hold about you. We will provide this information, commonly known as a Subject Access Request (for EU/UK users under GDPR, or a similar right under CCPA for California residents), usually free of charge.
  • Correct Your Information: If any of your personal details are inaccurate or outdated, you have the right to request that we correct or update them. For example, if you realize you provided a wrong email address or spelled a name incorrectly in your song request, let us know and we will fix our records.
  • Delete Your Information: You can request deletion of the personal data we hold about you. This is sometimes called the “Right to be Forgotten”. For instance, if you no longer want us to retain your contact info or order details, you can ask us to remove them from our systems. We will delete your personal data within a reasonable timeframe (no longer than 30 days) from receiving a verified deletion request, provided we do not have a legal obligation to retain it. (For example, we may need to keep basic transaction records for financial reporting or legal compliance, but we’ll remove everything we are not required to keep.)
  • Withdraw Consent: If we are processing your information based on your consent (for example, you consented to receive marketing emails), you have the right to withdraw that consent at any time. Withdrawing consent will not affect the lawfulness of any processing we did prior to your withdrawal. If you withdraw consent for marketing, we will stop sending you marketing communications.
  • Opt-Out of Marketing: Even if you have not explicitly given consent (for instance, some jurisdictions allow “soft opt-in” for existing customers), you always have the choice to opt out of marketing emails. Every promotional email we send will include an “Unsubscribe” link at the bottom. You can click that to stop future marketing emails. You can also email us at any time at support@song4youstudio.com and request to be removed from marketing lists. We will honor your opt-out request promptly.
  • Data Portability: In certain cases, you may have the right to request your information in a structured, commonly used, machine-readable format, so you can transfer it to another service. (This mainly applies to information you provided to us directly, and if we processed it by automated means based on consent or contract, under GDPR.) If you need such a copy, we can provide, for example, the text of the story details you submitted or other data you provided, in a text file or PDF.
  • Object to Processing: You might have the right to object to certain processing of your data. For example, EU users can object if we were processing their data based on legitimate interests or for direct marketing. In practice, we do not use your data for purposes like profiling or unsolicited marketing, so objections would likely relate to analytics or improvements. If you have an objection, let us know and we’ll consider it and refrain from the disputed processing unless we have a compelling legitimate ground or legal requirement.
  • Non-Discrimination: If you exercise any of your rights (such as requesting deletion or opting out of marketing), we will not discriminate against you. This means we will continue to provide you with our services at the same quality and price. For California residents, you have the right under CCPA not to receive discriminatory treatment for exercising your privacy rights.
  • Authorized Agent (California): If you are a California resident, you may designate an authorized agent to make requests on your behalf to exercise your CCPA rights. We will take steps to verify the identity of the person acting as an agent and may require proof of authorization.

How to Exercise Your Rights: To exercise any of your rights, please contact us at support@song4youstudio.com. Include your name and a clear description of your request (for example, “I’d like to access my data” or “Please delete my account and data”). For your security, we may need to verify your identity before fulfilling certain requests (to ensure we don’t modify or disclose data to the wrong person). Verification may involve confirming control of your email address or answering a few questions about your interactions with us.

We will respond to your request as soon as possible, typically within 30 days. If we need more time (for example, if the request is complex or we need further information from you), we will inform you of the extension and the reason.

Please note, some rights may not apply universally. For instance, if you are not an EU resident, GDPR rights might not formally apply – however, we generally strive to honor these rights for all users where feasible as part of our commitment to privacy. Similarly, the California-specific provisions apply to California residents, but even if you’re outside CA, we will not treat you unfairly for requesting access or deletion of your data.

Security Measures

We take the security of your personal information very seriously and implement industry-standard measures to protect it. These include:

  • SSL/TLS Encryption: Our website is secured with SSL/TLS encryption (you’ll notice the “https://” and padlock in your browser’s address bar when visiting our site). This means that any data you submit through the website (such as filling in forms or making payments) is encrypted in transit and cannot be easily intercepted by third parties.
  • Firewall and Malware Protection: We use a reputable security plugin and firewall service, Wordfence, to protect our site from hackers, malware, and other online threats. Wordfence constantly monitors our website traffic and blocks suspicious activities or repeated unauthorized login attempts. It helps prevent data breaches by stopping attackers before they can gain access.
  • Secure Payment Processing: All payment transactions are handled by Yaad Payments and Max on secure, PCI-DSS compliant platforms. These payment processors use strong encryption and security protocols to process your credit card information. We do not store your sensitive payment details on our servers, and our payment partners only share with us the information needed to confirm payment (such as an approval code or transaction ID). This significantly reduces the risk of your financial information being exposed through our site.
  • Access Controls: Internally, we limit access to personal information to only those team members and partners who need it to perform their work (for example, the songwriter working on your song will see the story details you provided, but not your payment information; our support staff may have access to your order contact info to communicate with you, but not to your credit card data). All personnel who handle personal data are bound by confidentiality obligations.
  • Data Storage Security: The databases and systems where we store personal data are protected by strong passwords and, where possible, multi-factor authentication. We keep our website software, plugins, and servers up-to-date with security patches to minimize vulnerabilities. Regular backups are performed to ensure data integrity, but those backups are also stored securely.
  • Monitoring and Testing: We periodically review our security measures and may perform tests or audits of our systems. If we detect any security issue or breach, we have procedures to address and mitigate it promptly. In the unfortunate event of a data breach that affects your personal information, we will notify you and the appropriate authorities as required by law.

While we strive to protect your information with these measures, it’s important to note that no website or internet transmission is completely 100% secure. However, we continuously update and fine-tune our security practices to combat new threats and to protect your data to the best of our abilities.

Children’s Privacy

Our services are not directed to children under the age of 13. We do not knowingly collect personal information from anyone under 13 years old. For example, we do not market to children, and the process of ordering a custom song involves making a payment, which typically requires an adult.

If you are under 13, please do not provide any personal information on our website or use our services. If we discover that we have unintentionally collected personal data from a child under 13, we will take immediate steps to delete that information from our records.

For teens between 13 and 18 (or the age of majority in your jurisdiction), if you use our site or provide personal information, please do so only with parental or guardian consent. Our custom songs are often purchased by adults (e.g., parents, partners, friends) as gifts or for events. If a child is the subject of a song (for instance, a song for a child’s birthday), the personal information about that child is typically provided by an adult (e.g., a parent). In such cases, we assume the adult has the right to share those details and will use them solely to create the song.

If you are a parent or guardian and you believe we might have collected personal information from your child without consent, please contact us at support@song4youstudio.com. We will promptly investigate and remove the information in accordance with applicable laws.

Legal Compliance and International Considerations

We operate from Israel, but we strive to comply with international privacy laws and frameworks, including the European Union’s General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA), among others.

  • GDPR (EU/EEA and UK users): If you are located in the European Economic Area (EEA) or the United Kingdom, you are entitled to the protections of the GDPR. Song4You Studio functions as a “data controller” for the personal information you provide. We ensure that we have a valid legal basis for processing your data. In GDPR terms, the legal bases we rely on are: Contract (we need your data to fulfill our agreement with you to create and deliver a custom song), Consent (for optional uses like marketing emails, which you can withdraw at any time), Legitimate Interests (for uses like improving our services or securing our site – we carefully consider and balance your rights in these cases), and Legal Obligation (for any processing required to comply with law, such as financial record-keeping). If you are an EU/EEA/UK user and have concerns about our data handling, you also have the right to lodge a complaint with your country’s Data Protection Authority. However, we encourage you to contact us first so we can address your concerns directly.
  • CCPA (California, USA users): If you are a California resident, the CCPA grants you specific rights regarding your personal information (many of which we have outlined in User Rights above). In addition to those rights, we affirm that we do not sell personal information to third parties (under CCPA’s definition of “sell”). We also honor the “Do Not Sell” preference — although we don’t sell data, you can still contact us to confirm that your information is not being sold or shared beyond the scope of this policy. California’s “Shine the Light” law also allows residents to ask for a notice of what categories of personal information we share with third parties for direct marketing. We do not share data with third parties for their own marketing, so typically there is nothing to report in that regard.
  • International Data Transfers: When you use our website from outside of Israel, your information will be transferred to and processed on servers located in Israel and/or in the country of our hosting provider or service providers. This means your data may cross international borders. We are mindful of international data protection requirements: for example, the European Commission has recognized Israel as providing an adequate level of data protection, which allows for the free flow of personal data from the EU to Israel under GDPR. For any transfers from the EEA or UK to other countries that may not have an adequacy decision, we would implement appropriate safeguards (such as standard contractual clauses) to protect your data.
  • Applicable Law: Our business is registered and operated in Israel, so our handling of personal data is also subject to Israel’s data protection laws. We align those practices with the stricter of applicable laws (like GDPR) to ensure a high standard of privacy protection. By using our services, you acknowledge that your information may be subject to the laws of jurisdictions outside your own (for example, if you are in the EU, some of your data might be in Israel and thus subject to Israeli law, although it remains protected under this Privacy Policy and, contractually, under GDPR standards as described).
  • Compliance: We regularly review our privacy practices to ensure compliance with evolving laws. If we decide that any aspect of this Privacy Policy does not comply with a certain regulation, we will update it and inform users of significant changes. Our goal is to be transparent and fair in all jurisdictions.

If you have questions about how we handle your data in light of any specific law or if you need to know more about international data transfers, please contact us (see Contact Information below), and we will be happy to provide more detail.

Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technologies, legal requirements, or for other operational reasons. When we make changes, we will revise the “Last Updated” date at the top of this policy. If the changes are material, we may also provide a more prominent notice, such as a banner on our website or an email notification, to inform you of the update.

We encourage you to review this Privacy Policy periodically to stay informed about how we are protecting your information. Your continued use of the Song4You Studio website and services after any changes to this policy constitutes your acceptance of the updated terms.

If you do not agree with any updates or changes, you should stop using our services and notify us if you want to exercise any of your rights (for example, to have your data deleted).

Contact Information

If you have any questions, concerns, or requests regarding this Privacy Policy or your personal data, please contact us at:

Email: support@song4youstudio.com

We will gladly assist with inquiries about our privacy practices or help you exercise your rights. Reaching out to us is the best way to get any issues resolved – we take our users’ privacy inquiries seriously and will respond as promptly and helpfully as we can.

Thank you for trusting Song4You Studio with your special moments and personal information. We are dedicated to safeguarding that trust through our commitment to your privacy.

Scroll to Top