Privacy

Privacy Policy

Last updated: 2026-06-25

The short version

ChordSine is a no-account, no-ads app with no cross-site tracking. We measure aggregate traffic with privacy-preserving Cloudflare Web Analytics, and we may collect optional quick feedback plus a small set of product events that tell us whether core features are being used. Your live playing, sound generation, and MIDI device input stay on your device. We do not upload audio recordings, MIDI device identity, every keypress, every note, or every control change.

What stays on your device

ChordSine saves your Sinescope settings (things like waveform, octave offset, latch, and visualization preferences) in your browser's localStorage, and short-lived interface flags in sessionStorage. Those settings stay on your device. The analytics client also uses browser storage for a random pseudonymous session ID, one-shot event suppression, campaign fields, and whether a feedback prompt was dismissed. If you send feedback or an allowed event is collected after launch, that analytics session ID and the relevant campaign fields may be sent with the payload.

Playback and MIDI input

Live playback, sound generation, and MIDI device input are processed entirely in your browser. Any MIDI file you open, and any performance you record, is read and rendered on your device and never sent to a server. Nothing you play is uploaded as an audio recording, recorded on a server, or shared. The sound stays on your machine.

Downloadable images

When you download or share a waveform image, ChordSine asks Cloudflare to render that image from the note names and display settings in the URL. That request does not include audio recordings, MIDI device data, uploaded files, or anything from your local settings beyond the image options in the URL.

Contact messages

If you contact us through the contact form, ChordSine is preselected as the related product. The message you write, along with your name and email if you provide them, is sent to us so we can read and reply. Providing a name and email is optional, but we need an email to be able to write back.

The form is operated by Arpeggiator. We use what you send solely to handle your message. It is never sold and never used for marketing. We keep it only as long as needed to deal with your message.

Voluntary contributions

ChordSine is free to use. If you choose to make a voluntary contribution, the contribution link takes you to a payment page hosted by Stripe, our payment processor. Payment happens entirely on Stripe's page: ChordSine never sees or receives your card details, and the link loads no Stripe script or cookie inside ChordSine. Stripe handles your payment information under its own privacy policy. Contributing is optional and unlocks nothing.

Hosting & security

ChordSine is a static site served by Cloudflare. Like any content delivery network, Cloudflare may transiently process basic request metadata such as your IP address and browser user-agent to deliver the site and protect it from abuse. Beyond the privacy-preserving analytics described below, we don't keep app-level logs of your visits.

Analytics

To understand overall traffic, such as how many people visit, which pages they land on, and roughly which country they're in, we use Cloudflare Web Analytics. It's privacy-preserving by design: it sets no cookies, stores nothing on your device, doesn't track you across other sites, and doesn't build a profile of you. The numbers it reports are aggregate and aren't tied to your identity. You can read more in Cloudflare's privacy policy.

ChordSine may also send sparse product events to a database hosted by Cloudflare after the production launch gate is enabled. These events are limited to meaningful moments such as opening the app, opening Sinescope, first interaction, first note, first chord, opening How It Works, sharing or downloading a waveform, and opening or submitting quick feedback. We do not send a full note stream, keypress stream, MIDI device identity, audio recordings, or high-frequency telemetry.

Event payloads may include a pseudonymous random session ID, page path, referrer origin, campaign fields, viewport class, locale, app version, and small metadata such as note count. Our retention policy is to remove raw product events after 12 months.

Quick feedback

If you use the quick-feedback prompt, we store the rating, selected tags, optional short message, page context, and the analytics fields described above in a Cloudflare-hosted database. Free-text feedback is optional and may accidentally contain personal information if you type it, so please do not include anything sensitive. We use feedback to improve ChordSine and may keep submitted comments while they remain useful for that purpose.

Where your information is processed

Some of the providers we rely on are based outside Australia. Cloudflare (hosting, analytics, and D1 feedback/event processing), Arpeggiator (contact messages), and Stripe (voluntary contributions) may process the limited information described above in the United States, Australia, or other countries. We only share what's necessary for them to provide their service.

Keeping your information safe

We take reasonable steps to protect the information you send us through the contact form. That said, no method of sending or storing information online is completely secure, so we can't promise absolute security.

Cookies

ChordSine doesn't set any cookies of its own, and we don't use cookies to track you or show you ads. The settings ChordSine remembers live in localStorage, which isn't a cookie. The analytics session ID and campaign fields described above also use browser storage and may be sent with feedback or sparse product events. Our host, Cloudflare, may set a strictly-necessary security cookie to protect the site from abuse; it isn't used to identify or profile you.

Children

ChordSine isn't directed at children under 13, and we don't knowingly collect personal information from them.

Your choices

You can use the app without an account, ads, or cross-site tracking. You can dismiss quick feedback and clear browser storage at any time by clearing site data for ChordSine in your browser. If you've sent a message through the contact form or included identifiable information in free-text feedback and want it deleted, send another message through the contact form asking us to remove it.

Questions or complaints

If you have a question or concern about your privacy, reach us through the contact form and we'll do our best to sort it out. If you're in Australia and aren't happy with our response, you can contact the Office of the Australian Information Commissioner.

Changes to this policy

If this policy changes, we'll update the "Last updated" date at the top of this page, and note anything material here. Continued use of ChordSine after a change means you accept the updated policy.

Contact

ChordSine is built and operated by Arpeggiator. For any privacy question, reach us through the contact form.