Back

Privacy Policy

Applies to bro-fi.co.uk and the Bro-Fi app.

What we collect

  • Account info — email address, and your name/profile photo if you sign in with Google.
  • Your content — audio files, artwork, playlist names, and track metadata you upload.
  • Activity analytics — playlist opens, plays, downloads, exports, QR shares, and link copies, with a timestamp. Recorded only after you accept analytics in the consent banner.
  • On-device data — cached tracks, playlist metadata, player settings, and your consent choice, stored locally in your browser.

How we use it

To run the player, store and stream your uploads, keep you signed in, enable offline playback, and show creators how their shared playlists are being used. We do not sell your data and do not run advertising profiles.

Sharing and public links

Anyone with a playlist link or QR code can open, stream, and download that playlist. Do not upload anything you would not want shared publicly. Hosting, database, storage, and authentication are provided by our cloud infrastructure provider acting as our processor.

Consent and choices

Analytics is off until you accept it. You can withdraw consent at any time from the privacy controls on your dashboard or by clearing site data. Rejecting analytics does not limit playback, uploads, sharing, or offline caching.

Your rights (GDPR / UK GDPR / CCPA)

You can request access to, correction of, export of, or deletion of your data. Signed-in users can delete everything immediately with Delete my data on the dashboard — that removes your playlists, uploaded files, analytics events, profile, and account. We do not sell or share personal information for cross-context behavioural advertising.

Cached music and settings live on your device; clear them from the Offline storage section on the home screen.

Children

Bro-Fi is for users aged 13 and over. Accounts are age-gated at sign-up. Parents or guardians who believe a child under 13 created an account can contact us to have it and all associated data removed.

Retention and security

We keep your content and analytics until you delete them or delete your account. Data is encrypted in transit, and files are served through expiring signed URLs. No system is perfectly secure — Bro-Fi is not HIPAA compliant and is not SOC 2 or FedRAMP certified, so never upload regulated or sensitive personal data.

Contact

For privacy requests, use the delete tool on your dashboard or reach out through the contact details listed on our Legal page.

This policy is provided for transparency and is not legal advice.