Burn One Back

Privacy Policy

Effective date: August 8, 2026 · Last updated: August 20, 2026 · Lil C LLC · contact@lilcllc.com

Burn One helps you build nostalgic mix “discs” from music metadata (titles, artists, artwork URLs, and similar catalog info) and hand them to a friend. We do not host, stream, or distribute full audio recordings. This policy explains what we collect, why, who else is involved, and how you can ask us to delete your data. Use of Burn One is also governed by our Terms of Use.

1. Overview

When you use Burn One you may: sign in with Apple to sync discs and create share links; connect Spotify, Apple Music, and/or YouTube Music (optional); design a disc (title, liner notes, stickers, drawings, uploaded cover photos); optionally generate cover art with AI; buy credits, unlocks, or a subscription through Apple; and burn a disc and share a link so someone else can open the mix. We collect only what’s needed to run those features. We do not sell your personal information.

2. What we collect

Account: If you Sign in with Apple, our auth provider (Supabase) receives an Apple user identifier so we can associate discs with your account. Apple may also share your email and/or name only if you choose to share them during Sign in with Apple.

Disc content you create: titles, subtitles, and liner notes; mood tags you assign; tracklist metadata (song title, artist, album, duration, catalog IDs, ISRCs, artwork URLs); label/design data (Sharpie text, stickers, doodles, style choices, disc materials); a rendered cover image when you burn or sync a disc; photos you upload for cover art; and whether a disc is burned, when, and its share slug. Synced discs and cover images are stored with our backend (Supabase), tied to your account. Discs you keep only on-device stay on your device until you sync or delete them.

Music platform connections: You can optionally connect Spotify, Apple Music, and/or YouTube Music via OAuth (or Apple’s MusicKit permission flow). Connecting a service grants Burn One access to music account data needed to search catalogs, read library/playlist context where permitted, match tracks, and help create a playlist for recipients — typically library/catalog read access and playlist-related scopes. Exact scopes appear in each platform’s consent screen when you connect. Burn One does not receive your platform password — we receive an OAuth access token (and refresh token where applicable). Tokens are kept on your device where possible, and exchanged through our backend only when needed.

AI-generated cover art: If you use AI cover generation, Burn One sends your text prompt and any reference image you provide to OpenAI’s image API so the image can be generated. OpenAI processes that input under its own terms and privacy policy. Generated images you keep may then be stored with your disc (via Supabase) like other cover art.

Purchases: In-app purchases (credits, unlocks, subscriptions) are processed by Apple through StoreKit. Apple handles payment. Burn One receives purchase and entitlement status (for example, that you bought a product or have an active subscription). We do not receive your payment card number or full billing details.

Advertising (free tier): If you are not on Burn One Unlimited (or another ad-free entitlement), Burn One may show ads via Google Mobile Ads. Before personalized ads are requested where required, we present a consent experience through Google’s User Messaging Platform (UMP). Depending on your region and choices, Google and its partners may process device identifiers, coarse location, IP address, and ad interaction data to serve and measure ads under their policies. You can revisit choices from Account → Privacy Choices when that option is available on your device. Unlimited / ad-free purchases stop Burn One from requesting ads for that entitlement. We do not sell your personal information, and we do not use your music library to build advertising profiles.

Diagnostics and device information: Apple’s platforms and our infrastructure providers may process standard technical data (device type, OS version, crash/diagnostics signals, IP addresses in server logs) needed to run the app securely and reliably.

Feedback you send: If you email us or use in-app feedback, we receive whatever you include (usually your email address and the content of your note).

3. Why we collect it

We use this information to let you build, edit, burn, sync, and share discs; show a recipient page for a burned disc and help the recipient open or save the mix in a music service they choose; apply cover art you upload, draw, or generate; unlock features you’ve purchased and keep entitlement status accurate; keep the service secure, debug issues, and respond to support or privacy requests; and comply with law where required. We do not use your music library to build advertising profiles, and we do not sell personal information.

4. Shared discs and public links

When you hand off a burned disc, Burn One stores a shareable record — typically title, cover art, tracklist metadata, and liner notes — and makes it available at a share link. Anyone with that link can view the shared disc; treat the link like a postcard. Recipients may also authorize their own music account so they can save a playlist; that connection is between them and their music platform. Deleting a disc or your account is intended to remove or disable that shared record on our side (see Data retention & deletion). Copies already saved into a friend’s playlist, or screenshots someone took, are outside our control.

5. Social sharing

If you export an image or video and share it to Instagram, TikTok, Facebook, Messages, or similar apps, the system share sheet hands that file to the app you pick. Burn One does not upload that export directly to those social networks. What those platforms do with the content is governed by their policies and your account settings.

6. Third parties we rely on

PartyRole
AppleSign in with Apple, App Store / StoreKit purchases, Apple Music (MusicKit), device/OS services
SpotifyOAuth + catalog/search/playlist APIs when you (or a recipient) connect Spotify
Google / YouTubeOAuth + YouTube Data APIs when you (or a recipient) connect YouTube Music; Google Mobile Ads / UMP when ads are shown on the free tier
SupabaseAuthentication, database, and file storage for synced discs and cover images
OpenAIImage generation when you use AI cover art
Vercel / hostingServing marketing and recipient pages

Each provider has its own privacy policy. We only send them what the feature needs.

7. Data retention & deletion

On-device discs stay on your phone until you delete them in the app. Synced discs & covers are stored in Supabase while your account exists and the disc remains. OAuth tokens are kept while a music service stays connected, and cleared when you unlink in Account. Apple retains payment records; we retain entitlement status as needed to provide what you bought.

Deleting discs: You can delete discs in Burn One (including long-press delete on the home/library screens). Deleting a synced/burned disc should remove it from our backend and disable its share link.

Deleting your account: Sign out stops sync for that session. For full account deletion (auth user, profile, synced discs, cover files, and share links), use Account → Delete Account in the Burn One app — self-service, no email required. That removes your account and cloud data from our servers. Mixes stored only on your device remain until you delete them there. We may still retain limited records where required (for example fraud prevention, legal obligations, or Apple entitlement history we cannot erase). After deletion, our share URLs should stop showing your disc; we cannot erase playlists a recipient already created, images posted to social apps, or copies others downloaded or screenshotted. If Delete Account is unavailable for some reason, email contact@lilcllc.com with the subject “Burn One account deletion.”

8. Your rights and choices

Depending on where you live, you may have rights to access, correct, or delete personal data, or to object to certain processing. You can: use Burn One without connecting music services; unlink Spotify, Apple Music, or YouTube Music anytime in Account; skip Sign in with Apple if you don’t want cloud sync (note: friend share links require sync); delete discs in the app; delete your Burn One account in Account → Delete Account; manage ad personalization where Account → Privacy Choices appears; subscribe to Unlimited (or another ad-free offer) to stop Burn One from requesting ads; email contact@lilcllc.com for access requests or help; manage App Store subscriptions and purchases in your Apple ID / Settings; and use iOS Settings to revoke Apple Music access for Burn One. We will not discriminate against you for exercising privacy rights.

9. Children’s privacy

Burn One is not directed at children under 13, and we do not knowingly collect personal information from children under 13. If you believe a child under 13 has provided us personal data, contact contact@lilcllc.com and we will delete it.

10. Security

We use industry-standard protections appropriate to a small consumer app (encrypted transport, authenticated APIs, access controls on synced data). No method of transmission or storage is 100% secure. Protect your device passcode and Apple ID.

11. International processing

Lil C LLC and our providers (including Supabase, Apple, Spotify, Google, and OpenAI) may process data in the United States and other countries. If you use Burn One from elsewhere, you understand your information may be transferred to those locations.

12. Changes to this policy

We may update this Privacy Policy as the product changes. We’ll revise the “Last updated” date above. For material changes — especially around purchases, AI, or sharing — we’ll aim to give clearer notice in the app or on this site when practical. Continued use after an update means you accept the revised policy.

13. Contact

Privacy questions, access requests, or deletion requests: contact@lilcllc.com — Lil C LLC — Burn One. Please include enough detail for us to find your account (Apple ID email used with Sign in with Apple helps a lot).

TermsSupport