Spotify Integration Policy & Privacy
Effective date: 16 September 2025
This page explains how Clipperino complies with Spotify’s Developer Terms and Developer Policy, and how we process personal data under the GDPR (EU/EEA), with Sweden (Europe/Stockholm) as our primary operating location.
Clipperino is an independent project and is not endorsed by Spotify. Spotify® is a registered trademark of Spotify AB.
1) Privacy Policy (Spotify Data)
What we collect (depending on scopes you approve)
- Spotify user ID, display name, country
- Email address (only if explicitly scoped)
- Profile image URL
- Now playing / playback state (for player features)
- Saved tracks / playlists (names, IDs) as needed
- Track/artist/album metadata used in the UI
- OAuth tokens (access/refresh) stored securely
- Minimal server logs (timestamps, errors)
Why we collect it
- To link your Spotify account and provide requested features (e.g., queue a song to your account).
- To display Spotify content metadata and cover art alongside playback, with attribution.
- To maintain secure sessions and diagnose issues.
Legal bases (GDPR)
- Consent – You explicitly grant scopes during Spotify login.
- Contract – We process data to deliver the features you use.
- Legitimate interests – Basic security and fraud prevention.
Retention
- OAuth tokens and linked data are kept only while your account remains connected.
- If you disconnect (see Disconnect & Deletion), we delete associated Spotify personal data within a reasonable period.
- Aggregated, non-personal metrics may be retained for service reliability.
Security
- Transport security via HTTPS/TLS; secrets stored server-side with restricted access.
- Industry-standard practices and periodic reviews of access and logs.
Subprocessors
We may use infrastructure providers (e.g., cloud hosting, monitoring) to operate Clipperino. We ensure appropriate data protection commitments with each provider. Details are available on request.
Children
Clipperino is not directed to children. Do not use the Spotify integration if you are a child under applicable law.
2) Spotify Developer Policy Compliance
Transparency & Control
- We request only the minimum scopes needed for the features you choose.
- You can disconnect at any time via Spotify Account > Apps or by using the instructions below.
Respect for Content & Creators
- Attribution: Spotify content is labeled and links back to Spotify. Cover art and metadata are never offered standalone.
- No manipulation: We prohibit bots, incentives, or artificial inflation of plays/follows.
- No misleading use: We don’t imply endorsement by Spotify or any artist.
Prohibited Uses (not supported by Clipperino)
Examples:
Streaming & Commercial Use
- Full-track streaming is available only to Spotify Premium users, per Spotify’s rules.
- We do not resell or charge for access to Spotify content, nor serve ads on any Streaming SDA features.
Branding & Naming
We follow Spotify’s Branding Guidelines. Clipperino does not use confusing names (e.g., beginning with “Spot”) and does not imply endorsement.
Access, Usage & Quotas
- Each Spotify-facing component uses its own Client ID as required.
- We monitor API usage and apply for extensions only when necessary for the reviewed use case.
3) Your GDPR Rights
- Access your personal data
- Rectify inaccurate data
- Erase data (“right to be forgotten”)
- Restrict or object to processing
- Data portability
- Withdraw consent at any time (this does not affect past lawful processing)
You may lodge a complaint with your local supervisory authority. In Sweden, this is the Swedish Authority for Privacy Protection (IMY).
4) Disconnect & Data Deletion
- Go to spotify.com/account/apps.
- Find Clipperino and click Remove Access.
- (Optional) Request deletion confirmation from us using the methods below.
Request Deletion / Data Access
Contact us with the subject “Spotify Data Request” including your Spotify user ID or the email tied to your Spotify account:
Email support@clipperino.cloud Other contact options
We will verify your identity and respond within a reasonable timeframe.
5) Contact
Clipperino
Email: support@clipperino.cloud
Registered/operating in Sweden
For security disclosures, please use the subject “Security” and include relevant details. Do not include secrets or tokens in plain text.