Your data. Your rights. Our job is to protect both. This policy explains exactly what we collect, why we collect it, and how you stay in control.
Effective Date: April 21, 2026 · Last Updated: April 21, 2026
Plain English summary: We collect the minimum data needed to run Smashify. We never sell it to third parties. You can request, download, or delete your data anytime. Blockchain data (things already written on-chain) is permanent by nature and can't be erased, but we keep off-chain data deletable and under your control.
Smashify Technologies Private Limited ("Smashify", "we", "us", or "our") is a company registered in Pune, Maharashtra, India, operating the Smashify music streaming platform and the Smashify Token (SMFY) ecosystem.
We are the data controller for the personal information processed through the Platform. Contact our Data Protection Officer at support@smashify.app.
We use your data only for specific purposes:
We do NOT use your data to train external AI models, sell profiles to advertisers, or target political content at you.
Under GDPR and equivalent laws, we process your data on one or more of the following legal bases:
Important: Public blockchain data is permanent. Smashify Token (SMFY) transactions, wallet addresses, and on-chain reward distributions are recorded on public blockchain networks (currently BNB Smart Chain) and cannot be erased, modified, or removed, even if you delete your Smashify account.
On-chain data is pseudonymous (tied to wallet addresses, not directly to your name) but permanent. We never write personally identifying information to the blockchain. If you wish to minimize on-chain exposure, you may use a separate wallet or privacy-preserving tools of your choice.
Your off-chain data, including name, email, app preferences, and listening history, remains under our control and is deletable per your request.
We do NOT sell your personal data to anyone, ever.
We share data only in these limited circumstances:
We keep your data only as long as needed for the purposes outlined above or as required by law.
Depending on your location, you have some or all of the following rights under applicable law (GDPR, CCPA, DPDP Act, and others):
To exercise any of these rights, email support@smashify.app. We respond within 30 days.
We implement industry-standard security measures including:
No system is perfectly secure, however, and we cannot guarantee absolute protection. If a breach occurs, we will notify affected users and relevant authorities within 72 hours, as required by law.
We operate globally, which means your data may be transferred to and processed in countries outside your own, including India, Singapore, the United States, and the European Union. When we transfer data across borders, we use legally approved mechanisms such as Standard Contractual Clauses (SCCs) to ensure adequate protection.
Smashify is not intended for children under 13 (or the minimum digital consent age in your country, whichever is higher). We do not knowingly collect data from children under that age.
If you believe we have inadvertently collected data from a minor, please contact support@smashify.app and we will delete it immediately.
We use cookies and similar technologies to keep you logged in, remember your preferences, and analyze Platform usage. You can manage cookie preferences through your browser settings or in-app privacy controls.
We do NOT use third-party advertising cookies or cross-site tracking pixels.
We may update this Privacy Policy to reflect product changes, new legal requirements, or operational improvements. Material changes will be communicated via email or in-app notification at least 30 days before they take effect. The current version is always available at smashify.app/info/privacy-policy.
Questions, concerns, or requests? Reach our Data Protection Officer at support@smashify.app. We take every message seriously and respond personally.