1. About This Service
MUSIXQUARE is an independently operated, non-commercial browser service for real-time audio synchronization and shared playback. It is provided free of charge and can be used without creating an account.
MUSIXQUARE does not require legal names, postal addresses, phone numbers, account passwords, or payment information. Limited technical and session data is processed only when needed to provide, secure, and improve the service.
2. Data We Process
- Room and connection data
- Room codes, optional room passwords, temporary device or peer identifiers, IP and WebRTC connection information, connection status, and related signaling data may be processed to create and maintain rooms.
- Session content
- Device names, playback commands, chat messages, and local session data are normally exchanged directly between participating devices and are not stored in a MUSIXQUARE application database.
- AI BOT beta requests
-
When a participant uses
/botin a PRO room, MUSIXQUARE sends the command text, the minimum playlist metadata needed to carry it out, and, when search is needed, a short search summary to the Google Gemini API. The command is also displayed in room chat and can be seen by the other room participants. It does not automatically attach media bytes or stored media URLs, the room's full chat history, room PINs or API keys, or participant lists. Anything entered directly in the command, including a URL, is part of the command text sent to Gemini, so users should not enter secrets or other sensitive information. Gemini produces a one-shot action plan, and MUSIXQUARE validates every proposed action against a fixed allowlist before execution. - System audio
- System audio is usually exchanged directly when participants are on the same network, but it may be relayed through Cloudflare infrastructure for remote participants or in large rooms. MUSIXQUARE does not intentionally record or store this audio.
- Ordinary-room file data
- Ordinary-room files are usually transferred directly when participants are on the same network. For remote participants or in large rooms, files may be encrypted in the sharing browser and temporarily stored in Cloudflare R2. MUSIXQUARE does not store the decryption key, and these objects are automatically deleted within an intended maximum of 24 hours.
- PRO-room media
- In a PRO room, original media uploaded by an authenticated participant is stored persistently in a private Cloudflare R2 bucket for the room playlist. This storage is not covered by the ordinary remote-share client-encryption or 24-hour-retention statements. Downloads are issued only through short-lived authorized URLs.
- YouTube data
- YouTube search terms are sent through the MUSIXQUARE service to the YouTube Data API. Video identifiers, playback requests, and player interactions may be processed by YouTube or Google when YouTube features are used.
- Website analytics
- Page paths, referrers, browser, operating system, device type, performance measurements, and approximate region may be processed through Cloudflare Web Analytics. Cloudflare Web Analytics is cookie-free and is designed not to collect visitors' personal data.
3. Why We Process Data
Data is processed to establish and protect rooms, synchronize playback, deliver requested sharing features, interpret individual AI BOT requests, diagnose failures, prevent abuse, and understand aggregate service reliability.
MUSIXQUARE does not access, analyze, or retain ordinary-room shared content except as technically necessary to provide the requested sharing feature.
MUSIXQUARE does not sell user data or use shared content for advertising or profiling.
4. Retention and Deletion
Active room and connection state is kept only as needed to operate the room. Closing a room or ending a connection removes the corresponding live session state from the application.
Access to encrypted remote-file objects normally expires after one hour. A bucket-level R2 lifecycle rule automatically deletes ordinary remote-share objects, with a maximum intended retention of 24 hours. Expired objects cannot be downloaded through MUSIXQUARE.
PRO-room media remains stored until its last playlist reference is removed and cleanup succeeds, or until the operator deletes the room data. If cleanup fails, deletion may be delayed until a retry succeeds.
Short-lived rate-limit records used to prevent remote-share abuse identify an IP address with a keyed, one-way pseudonym rather than storing the raw address in the record key. These records normally expire after about one hour.
Infrastructure providers may retain limited security and operational metadata under their own service settings and policies.
5. Service Providers and International Processing
MUSIXQUARE uses Cloudflare for website delivery, signaling, relay services, remote system audio, temporary encrypted remote-file delivery, persistent private PRO-room media storage, security, and aggregate web analytics. Cloudflare may process technical data in the countries and regions where its network and service providers operate.
YouTube features use YouTube API Services and the YouTube embedded player. Their use is also subject to the YouTube Terms of Service and the Google Privacy Policy. Google account permissions can be reviewed at Google Security Settings.
The AI BOT beta in PRO rooms uses the Google Gemini API to interpret commands using only the limited request data described above. Google's processing is also subject to the Google Privacy Policy.
6. Security
MUSIXQUARE uses HTTPS, WebRTC transport security, browser security controls, restricted service capabilities, and Cloudflare infrastructure. Ordinary remote-share files use client-side AES-GCM encryption before upload. This client-side encryption statement does not apply to persistent PRO-room media, which is kept in a private bucket and made downloadable only through short-lived authorized URLs.
No internet service can guarantee absolute security. Users should share room codes and passwords only with people they trust and should not share content they are not authorized to distribute.
7. Your Choices and Requests
MUSIXQUARE has no account profile to inspect or edit. You can stop processing live session data by leaving or closing a room. Browser storage used for local preferences can be cleared through your browser settings.
For privacy questions, access or deletion requests, or concerns about the handling of data, contact contact@musixquare.com. Requests will be reviewed and addressed where technically and legally applicable.
8. Changes
This policy may be updated when MUSIXQUARE's features, infrastructure, or legal obligations change. Material changes will be reflected by a new effective date and may also be announced through the website or app.