LEGAL · PRIVACY
Playlist Playground Privacy Policy
This policy explains the information needed for account approval, paid access, device linking, and support, and how it is used and retained.
- Effective
- September 23, 2026
1. Information processed
- ChatGPT sign-in subject, display name, and verified email
- Name and phone number you submit
- Membership, approval, tier, access period, entitlement revision, and administrator action records
- Device name, hashed device identifiers, and connection, approval, and session status
- Latpeed payment notification data such as order identifier, SKU, payment status, amount, time, and email
- For trial users who opt in, the first final-video completion signal and server receipt time
- Minimum diagnostics required for security, troubleshooting, and operations
2. Purposes
- Member identification, approval, sign-in, and device linking
- Applying Standard, Pro, or Studio access and paid periods
- Deduplicating and applying purchase, renewal, and cancellation notices
- Improving free-trial onboarding and distinguishing the first production completion
- Support, security incident prevention, troubleshooting, and service improvement
3. Optional website analytics
Optional website analytics is off by default. Only after you choose Allow analytics does the browser create session-scoped random visitor and session UUIDs and send the language, page key, allowlisted button, demo, fit-check, recommendation, signup, and checkout-click events, plus normalized, length-limited UTM source, medium, campaign, content, and term values to the same-origin analytics endpoint.
Only the analytics choice is kept in localStorage. Visitor and session UUIDs and first- and last-touch UTM values are kept in sessionStorage and disappear when the browser session ends. No analytics values or events are created before a choice or after you decline. You can turn future collection off or allow it again from Analytics settings.
Growth-event rows do not store names, email addresses, phone numbers, full URLs, free text, prompts, lyrics, project names, filenames, IP addresses, user-agent strings, or social-account information.
4. Optional trial-completion record
Only if you separately opt in on the free-trial request page does the desktop app send a fixed completion signal after it successfully saves the first final video. Declining does not change the trial period or features.
The server stores the account identifier, the final_video event, and server receipt time once per account. It does not send or store a project name, filename, file path, audio, lyrics, prompt, or video content.
This record is used only to improve trial onboarding and distinguish request, start, first-production, and purchase stages. You may request deletion or restriction at admin@plpl.co.kr.
4-1. Free remote-support bookings
If you book remote support, we process your name, email, phone number, selected support topics, appointment time, and any notes you submit to confirm, change, and coordinate the appointment. Booking is optional.
The booking is confirmed on screen; automatic email or text notifications are not currently available. You must keep the booking-management link. An operator may contact you directly using the details you provide.
Booking details are stored in Cloudflare D1 and shown only to the operator. They become eligible for deletion 30 days after the appointment, and expired rows are deleted on a later booking API request. If there are no requests, physical deletion may be delayed. Contact admin@plpl.co.kr for early deletion.
5. Retention
Account information is retained for the membership relationship and dispute handling, then deleted or separated from records that must be retained by law when the purpose ends or deletion is requested.
Contract, withdrawal, payment, supply, complaint, and dispute records may be retained for periods required by e-commerce law. Security logs are kept only for the minimum period needed for their purpose.
An optional trial-completion record remains linked to the account only for as long as needed to evaluate trial operations and is deleted when consent is withdrawn, deletion is requested, or its purpose ends.
Allowed analytics events are stored in Cloudflare D1 with the server receipt time. A row becomes eligible for deletion 90 days after receipt, and up to 250 expired rows are deleted when a later valid analytics event is processed. Because no scheduled deletion job is used, physical deletion can be delayed until the next event when no new events arrive.
Turning analytics off immediately stops future transmission and clears session analytics values, but rows already sent to D1 follow the process above. You may request earlier deletion at admin@plpl.co.kr. Because events are not linked to an account or email address, specific rows may no longer be identifiable after the session UUID disappears.
6. External processing
ChatGPT sign-in, Cloudflare-based hosting and D1 data storage, and Latpeed checkout may be used. Each service processes only the information needed for its function, and the payment provider handles card data.
We do not sell personal information or disclose it arbitrarily except with consent, as required by law, or as needed to provide the requested service.
7. Your rights
- Request access, correction, deletion, restriction, or account closure.
- A request may be limited when retention is required by law or another person's rights would be affected, and the reason will be explained.
- Marketing consent is separated from required operational notices and is not a condition for core service access.
- Website analytics is optional and can be turned off or allowed again at any time from Analytics settings.
- The trial-completion record is also optional. Declining does not change trial features, and you may request deletion or restriction of an existing record.
8. Safeguards and changes
We use separated access, hashed device identifiers, signed payment notification verification, least privilege, and security logs. Material policy changes are announced on the site before they take effect.
9. Optional YouTube publishing and data use
YouTube publishing uses YouTube API Services and is a pilot for approved pilot participants only. You must review and accept this policy before connecting. Authorization uses your device's default browser; the app does not collect YouTube passwords.
The youtube.upload scope sends your reviewed final video, title, and description to the connected channel. Manual publishing requires the upload button. One Touch uses the automatic-upload settings and templates you reviewed and saved beforehand. An upload failure does not change the saved local video.
The youtube.readonly scope identifies the connected channel. Only when recent-video reference is enabled and you explicitly request an AI suggestion does the app read the titles, descriptions, and publication times of up to five recent videos from that channel and send them to OpenAI Codex through your connected ChatGPT account. The app keeps this raw reference data in memory for that one-time operation and does not write it to disk or diagnostic logs. OpenAI processing follows the data settings and terms applicable to your connected account.
The refresh token, granted scopes, channel information, and upload-resume data are encrypted on the device using operating-system secure storage. Short-lived access tokens remain in memory. Approved publishing templates are saved locally under the app account. YouTube-related data is not sold or used or shared beyond requested publishing, channel identification, and the disclosed AI suggestion.
Google authorization codes and tokens pass through the Playlist Playground account server for exchange or refresh with Google. The server uses these credentials only while handling the request and does not store them in a database or diagnostic logs. Video files are sent directly from the app to Google.
Disconnect stops ongoing YouTube work and immediately attempts Google token revocation and deletion of stored connection, channel, and upload-resume data. Network or file-access failures are shown as incomplete cleanup with retry guidance. You may also revoke access through Google account security settings. Related stored data is deleted when invalid authorization is confirmed. Local finished videos are retained. Contact admin@plpl.co.kr for access, deletion, or privacy questions.
SUPPORT · PRIVACY · BILLING
Questions and rights requests
Send contract, billing, refund, or privacy access, correction, and deletion requests to the email below. Do not send card numbers or payment secrets by email.- Service operator
- Wonhyeong Cho · Playlist Playground operations
- Support email
- admin@plpl.co.kr