Who this policy is for
This policy applies to visitors of musosoft.com, people who contact us, customers and prospects, and users of services we operate for a customer. It covers our website, contact form, email communication, support work, and any integrations we connect on your behalf.
Information we collect
Depending on how you work with us, we may receive:
- your name, email address, company or project name, and message;
- technical details needed to run or troubleshoot a service;
- server logs, application logs, DNS records, IP addresses, and security events;
- billing or administrative details needed for an active project;
- account access, API keys, OAuth tokens, or credentials you explicitly provide to us.
We ask for only what we need. If you send us secrets or access details, we treat them as confidential and use them only for the requested work.
How we use information
We use information to:
- reply to messages and discuss possible work;
- set up, host, monitor, secure, and maintain services;
- debug incidents, performance issues, and delivery problems;
- protect systems from abuse, spam, fraud, or unauthorized access;
- meet legal, accounting, and operational obligations.
We do not sell personal information. We do not use customer data to build advertising profiles.
Google services and OAuth data
If a project uses Google Cloud, Google APIs, Google OAuth, or another Google service, we access Google-related data only for the feature or service you asked us to configure, operate, or support.
For example, if we connect a Google account for email, calendar, identity, storage, analytics, or server operations, we use the granted access only to make that integration work. We do not transfer Google user data to others except where necessary to provide or secure the service, comply with the law, or when you tell us to do so.
We do not use Google user data for advertising. We do not allow humans to read Google user data unless it is needed for support, security, debugging, compliance, or you have asked us to inspect it.
Cookies and basic site data
This website may use a small cookie to remember your light/dark theme preference. Hosting providers and security layers may also process standard request data such as IP address, browser details, requested URL, and timestamp to deliver the site and protect it from abuse.
If analytics are added later, we will keep them privacy-respecting and update this policy with the details.
Service providers
We rely on infrastructure and software providers to run services. This can include hosting platforms, DNS and security providers, email providers, payment or accounting tools, monitoring systems, and open-source software we deploy for customers.
They may process information only as needed to provide their service to us or to the customer. We choose providers with security and reliability in mind.
Retention
We keep contact and project records for as long as needed to handle the conversation, provide the service, keep useful operational history, and meet legal or accounting requirements. Logs are normally kept for a shorter period unless they are needed for security, debugging, or an active support case.
When access is no longer needed, we remove or rotate it where practical.
Security
We use practical security measures: least-privilege access, separate accounts where possible, HTTPS, secret rotation when needed, backups, updates, monitoring, and access reviews. No system is perfect, but we take operational security seriously because running systems is our job.
Your choices
You can ask us to access, correct, export, or delete personal information we hold about you, subject to legal, security, and contractual limits. You can also ask us to revoke or rotate access we hold for your systems.
Send requests to hello@musosoft.com. We may need to verify that the request comes from the right person or project owner before making changes.
Changes to this policy
We may update this page when our services, providers, or legal obligations change. The date at the top shows when it was last updated.