Privacy Policy
How we collect, use, and protect your information
Last updated: 30 September 2026
ReleaseLoop is owned by PGC Consulting. This policy covers the ReleaseLoop service and its integration with ChatGPT. For privacy questions and data requests, contact privacy@releaseloop.com.
1. Information We Collect
We collect information you provide directly to us when you create an account, use our services, or communicate with us. This may include:
- Name and contact information
- Account credentials
- Payment information
- Content you create or upload
- Communications with us
2. How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve our services
- Process transactions and send related information
- Send technical notices and support messages
- Respond to your comments and questions
- Protect against fraudulent or illegal activity
3. Information Sharing
We do not sell your personal information. We may share your information only in the following circumstances:
- With your consent
- With service providers who assist in our operations
- To comply with legal obligations
- To protect rights, property, or safety
4. Data Security
We implement appropriate technical and organizational measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction.
5. Your Rights
You have the right to:
- Access your personal information
- Correct inaccurate information
- Request deletion of your information
- Object to processing of your information
- Export your data
6. Cookies
We use cookies and similar tracking technologies to track activity on our service and hold certain information. You can instruct your browser to refuse all cookies or to indicate when a cookie is being sent.
7. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last updated" date.
8. Connecting ReleaseLoop to ChatGPT
Connecting ReleaseLoop to ChatGPT is optional. You sign in to ReleaseLoop and authorise the connection using OAuth. You do not need to give your ReleaseLoop password to ChatGPT. Access is limited to the workspaces and records your ReleaseLoop account has permission to use.
To answer your requests, the integration processes the tool inputs sent by ChatGPT and the ReleaseLoop records needed for the requested operation. These can include workspace names, artists, releases, tracks, credits, campaign information, budgets and tasks. Contacts can include names and contact details; royalty imports can include stakeholder and financial information. Contacts and royalties are available only where your account permissions allow access. Requested release and task changes are stored in your ReleaseLoop workspace.
We send the requested tool results to OpenAI so ChatGPT can answer you. Cloudflare processes requests through our MCP proxy, and Supabase provides the authentication and backend processing used by the integration. Authentication tokens are used to authorise access. The integration does not request your full ChatGPT conversation history. Do not put passwords, payment card details, government identifiers or health information into requests or workspace fields used with the integration.
Your ChatGPT conversations and information received by OpenAI are also governed by OpenAI's applicable privacy policy and your ChatGPT settings. See OpenAI's privacy policy.
You can revoke access in ReleaseLoop Settings under Connected assistants, and disconnect ReleaseLoop in ChatGPT to stop using the integration. For help revoking authorised access, contact privacy@releaseloop.com. Disconnecting does not delete your ReleaseLoop records or existing ChatGPT conversations. You can request access, correction, export or deletion of your ReleaseLoop data using the contact details below; manage ChatGPT conversations and their deletion through OpenAI.
9. Data Retention
Account and workspace content has no automatic expiry. We retain it until it is deleted by an authorised user or through a completed deletion request. Deleting your account does not automatically delete a shared workspace owned by someone else. If you own a workspace, ownership must be transferred or the workspace deleted as part of closing your account.
Our Supabase database uses daily backups with a rolling seven-day retention window. Deleted database records may remain in backups until those backups expire. Database backups contain file metadata, but do not include the uploaded files stored through Supabase Storage.
Supabase service logs are retained for up to seven days to diagnose errors, maintain reliability and investigate security issues. They can include timestamps, IP addresses, request paths, response status codes and account or workspace identifiers. We do not currently export these logs to an external log store or write separate authentication audit logs to our database. The Cloudflare MCP proxy does not persist separate copies of tool inputs or results, and has no persistent Worker log storage or log exports configured.
Information already sent to OpenAI follows OpenAI's retention policy and your ChatGPT settings. Revoking access or deleting data in ReleaseLoop does not delete copies in your ChatGPT conversations. Use ChatGPT's data controls to manage those copies.
10. Contact Us
If you have any questions about this Privacy Policy, please contact us at privacy@releaseloop.com