DJFlow — Privacy Policy

Last updated: August 24, 2026

This policy explains how DJFlow: AI Music Mixer handles information. DJFlow is published by Soft Flourish, an independent software studio and publishing house based in California, USA. It supplements the general Soft Flourish Privacy Policy and controls where the two differ for this app.

DJFlow collects only the identity, provider authorization, mix state and product signals needed to run and improve a session. Provider credentials are encrypted server-side and protected audio never enters DJFlow storage.

What the app holds, and why

WhatWhy
DJFlow account identityTo save preferences and resume eligible sessions across devices. Guest/local listening is available without an account.
Music-service authorizationTo read eligible playlists and ask that service to play the music you choose. Tokens are encrypted and never placed in client logs.
Playlist and track metadataTo plan sequence and compatibility. DJFlow stores stable identifiers and derived plans, not protected audio.
Session and interaction eventsTo recover playback and learn from skips, likes, ratings and completion. Fine history is minimized and expires unless you save it.
Purchase entitlementTo unlock DJFlow Pro on devices signed into the same account. Pricing remains controlled by the store.

What it never collects

  • Protected music or video files from Spotify, Apple Music, YouTube, TIDAL or SoundCloud
  • OAuth tokens in analytics, crash reports or client-visible records
  • Location, contacts, photos, microphone or health data unless a future feature clearly asks first
  • Sale of listening history or personal data
  • Hidden YouTube background audio or separated YouTube audio

Provider playback

Apple Music uses MusicKit. Spotify performs and accounts for its own streams. YouTube remains inside its official visible player. Provider terms and privacy policies also apply.

Owned music

Files you select remain platform file resources. DJFlow can process those files locally for transitions; it does not upload or share the audio.

Retention

OAuth state expires after ten minutes. Detailed session history is aggregated or removed after 30 days unless you save the session. Disconnecting a service removes its stored token reference.

Deleting your account

Use Account → Delete account and data in the app, or follow the public deletion steps. DJFlow removes provider connections, sessions, preferences, feedback and entitlement records before the authentication account is removed.

Changes to this policy

If this policy changes materially we will update the date at the top and describe the change here. Continuing to use DJFlow after a change means you accept it.

Contact

Questions about this policy, or a request about your data: [email protected], or the contact form.