Legal

Privacy Policy

Last updated: May 2026

๐Ÿ”’

Short version:We only see what's currently playing on your Spotify. We can't control your account, we don't store your listening data, and you can disconnect us at any time.

1. What we collect

When you sign in, we store your display name and a Spotify access token so we can fetch your currently playing track. We do not store your email address, listening history, playlists, or any other personal data from Spotify.

2. How we use your data

Your Spotify token is used solely to call the "currently playing" endpoint in real-time when your stream widget is active. We never read your history, playlists, or saved tracks. We never sell, share, or transfer your data to third parties.

3. Spotify permissions

We request the minimum required OAuth scope: user-read-currently-playing. This grants read-only access to the track currently playing on your account. We have no ability to play, pause, skip, modify playlists, or take any action on your account.

4. Revoking access

You can disconnect MalazBeats from your Spotify account at any time by visiting spotify.com โ†’ Account โ†’ Apps, and removing MalazBeats. Your widget will stop updating immediately. Your MalazBeats account and widget settings are not affected.

5. Data retention

We retain your account data (name, widget settings) for as long as your account exists. When you delete your account, all associated data is permanently removed. We do not retain Spotify playback data โ€” it is fetched on demand and never stored.

6. Cookies

We use a single session cookie to keep you signed in. No tracking cookies, no analytics SDKs, no third-party advertising cookies are used.

7. Contact

For any privacy-related questions, contact us at support@malaznox.com. We aim to respond within 48 hours.