Privacy Policy

Last updated: March 22, 2026

27 Club Agency ("we," "us," or "our") operates the website at 27club.agency and the 27 Club mobile application. This Privacy Policy explains what data we collect, how we use it, and your rights regarding that data.

1. Information We Collect

Account Information

When you create an account, we collect your email address, name, and password. Passwords are hashed and stored securely through our authentication provider, Supabase. We never have access to your plaintext password.

Music Career Data

To provide our services, we collect information you provide about your music career, including your artist name, bio, press photos, contacts, events, booking history, and financial data such as fees and expenses.

Analytics Connections

If you connect streaming platforms (Spotify, Apple Music, TikTok, YouTube), we store OAuth tokens to fetch your analytics data on your behalf. We access listener counts, streaming statistics, and audience demographics. We do not post or modify content on these platforms.

Usage Data

We collect standard usage data such as pages visited, features used, and device information to improve the service.

2. How We Use Your Information

  • Provide and maintain the 27 Club platform and your account
  • Display your public EPK (Electronic Press Kit) page if you enable it
  • Fetch and display analytics from connected streaming platforms
  • Process payments and manage subscriptions
  • Send transactional emails (account verification, booking notifications)
  • Power the AI chat assistant in your dashboard
  • Improve features and fix bugs
  • Respond to support requests

3. Third-Party Services

We use the following third-party services to operate 27 Club:

  • Supabase — Authentication and database hosting. Your data is stored in Supabase-managed PostgreSQL databases hosted in the United States.
  • Stripe — Payment processing. Stripe handles all payment card information directly. We never store your card numbers on our servers.
  • Brevo — Transactional email delivery. We share your email address with Brevo to send account-related emails.
  • Anthropic (Claude AI) — Our dashboard chat assistant is powered by Claude. Conversations you have with the assistant may be processed by Anthropic to generate responses. We do not use your conversations to train AI models.
  • Spotify, Apple Music, TikTok, YouTube — When you connect these platforms via OAuth, we store access tokens to retrieve your analytics. You can disconnect these integrations at any time from your dashboard.

4. Cookies and Local Storage

We use cookies and browser local storage for authentication tokens and session management. The AI chat assistant stores conversation history in your browser's local storage. We do not use third-party advertising or tracking cookies.

5. Data Retention

We retain your data for as long as your account is active. If you delete your account, we will delete your personal data within 30 days. Some data may be retained in backups for up to 90 days after deletion. Anonymized, aggregated data may be retained indefinitely for analytics purposes.

6. Data Security

We use industry-standard security measures to protect your data, including encrypted connections (TLS), hashed passwords, and row-level security policies on our database. However, no method of transmission over the internet is 100% secure, and we cannot guarantee absolute security.

7. Your Rights

You have the right to:

  • Access your personal data
  • Export your data in a portable format
  • Correct inaccurate information
  • Delete your account and personal data
  • Disconnect third-party integrations at any time

To exercise any of these rights, email us at studio@27club.agency.

8. Children's Privacy

27 Club is not designed for or directed at children under the age of 13. We do not knowingly collect personal information from children under 13. If we become aware that a child under 13 has provided us with personal data, we will take steps to delete that information.

9. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of significant changes by email or through a notice on the platform. Your continued use of 27 Club after changes are posted constitutes acceptance of the updated policy.

10. Contact

If you have questions about this Privacy Policy or your data, contact us at studio@27club.agency.