Privacy Policy
Last updated 8 September 2026
Join Queue is operated by Matthew Rostkowski, a sole proprietor. This policy covers the Join Queue iOS app and the joinqueue.live website. It describes what the app collects, why it collects it, who it is shared with, and what you can ask us to do about it.
The short version: we collect what is needed to run a room and settle a payment. We do not sell personal information, we do not run ads, we do not track you across other companies' apps or websites, and card numbers never reach our servers.
What we collect
Account information
An email address and a display name, so you can sign back in and so other people in a room can see who requested a song. If you sign in with Apple or with Google, we receive whatever identifier that service passes us, which may be a private relay address rather than your real one. We never receive your password for those services.
Payment information
Song requests are processed by Stripe, including ones paid with Apple Pay. Your card number, expiry and security code go directly to Stripe and are never stored on, or transmitted through, Join Queue's servers. We receive and store a payment reference, the amount, the currency, the card brand, and the last four digits, so that a receipt and a refund are possible.
Purchases made in the Store — vote packs, request packs and Queue+ — are Apple in-app purchases. Apple takes the payment. We receive a signed receipt from Apple identifying the product and the transaction, which we verify and store so that what you bought can be credited to your account. We never receive payment details for those purchases.
What you do in a room
The songs you request and search for, the votes you cast, which rooms you joined or hosted, the amounts you paid, and whether a request ended up playing. This is the record of the night, and it is what makes the queue, the receipts and any refund work.
Music service authorisation, hosts only
If you host a room, the app asks for permission to control Apple Music playback on your device. We receive a token that lets the app place songs in the queue on your phone. We do not receive your Apple ID, your password, your listening history, your library, or your playlists.
Notifications
If you turn on notifications, we store the push token your device gives us so we can tell you when your song is coming up. Delivery goes through Apple's push service. You can turn this off in iOS Settings at any time.
Technical information
IP address, device model, operating system version, app version, and error and crash logs. This is used to keep the service running and to work out what went wrong when something breaks.
What we do not collect
Join Queue does not request or receive your location, contacts, photos, microphone, calendar, health data, or advertising identifier. There is no advertising SDK in the app and no cross-app or cross-site tracking, so the app does not ask for tracking permission.
Why we collect it
| Purpose | Data used |
|---|---|
| Signing you in and keeping you signed in | Account information |
| Running the queue and showing the board | Room activity, display name |
| Taking a payment, issuing a receipt, making a refund | Payment references, room activity |
| Crediting what you bought in the Store | Apple transaction receipts |
| Playing music on the host's device | Music service authorisation, host only |
| Telling you your song is coming up | Push token |
| Keeping the service working and fixing failures | Technical information |
| Meeting tax, accounting and fraud obligations | Payment references |
Who we share it with
We share personal information only with the service providers that make the app work, and only with what they need:
- Stripe — payment processing for song requests. Handles card details directly. Stripe's privacy policy.
- Apple — sign in with Apple, in-app purchases and their receipts, music playback and catalogue search through Apple Music, push notifications, and app distribution. Apple's privacy policy.
- Google — only if you choose to sign in with Google. Google's privacy policy.
- Supabase — sign-in and the database of accounts and rooms. Supabase's privacy policy.
- Railway — hosting for the Join Queue server. Railway's privacy policy.
- Sentry — error monitoring. Receives crash and error reports, which can include your user identifier and the room involved. Sentry's privacy policy.
We may also disclose information if the law requires it, or to investigate fraud or a serious safety problem. We do not sell personal information, and we do not share it for cross-context behavioural advertising.
How long we keep it
- Account information: until you delete your account.
- Room activity: while the room is live, and afterwards as part of the record of a night. Deleted or anonymised when you delete your account.
- Payment records: retained for as long as tax and accounting law requires, which is generally seven years, even after account deletion. This is a legal obligation and we cannot delete these on request.
- Error logs: up to 90 days.
Deleting your account
You can delete your account from inside the app: Profile → Privacy → Delete Account. This removes your account, your display name, your saved cards and your request and vote history, and releases any pending payment holds. Any unspent vote or request credits are forfeited. It cannot remove payment records we are legally required to keep, and it cannot un-play a song that already played in someone's room.
If you would rather we did it for you, or you can no longer sign in, email [email protected] from the address on the account and we will delete it within 30 days.
Your rights
Wherever you live, you can ask us for a copy of the personal information we hold about you, ask us to correct it, or ask us to delete it. You can export your own data in the app at Profile → Privacy → Download my data, or email [email protected] and we will respond within 30 days.
If you are in the EEA or the UK
We process your information to perform our contract with you (running a room, taking a payment), to meet legal obligations (tax and accounting records), and on the basis of our legitimate interest in keeping the service secure and working. You have the right to access, correct, delete, restrict or port your information, to object to processing, and to complain to your local data protection authority.
If you are in California
You have the right to know what we collect and why, to delete it, to correct it, and not to be discriminated against for exercising those rights. We do not sell personal information and we do not share it for cross-context behavioural advertising, so there is nothing to opt out of. The categories we collect are set out above.
International transfers
Join Queue is operated from the United States, and our service providers store data in the United States and elsewhere. If you use the app from outside the United States, your information will be transferred to and processed in the United States.
Children
Join Queue is not intended for children under 13, and we do not knowingly collect personal information from them. If you believe a child under 13 has created an account, email [email protected] and we will delete it.
Security
Traffic between the app and our servers is encrypted in transit. Music service tokens are encrypted at rest. Card details never reach our servers. No system is perfectly secure, and we will tell affected users promptly if a breach involving personal information occurs.
Changes to this policy
If we change this policy we will update the date at the top, and for material changes we will tell you in the app before the change takes effect.
Contact
Matthew Rostkowski, sole proprietor, operating as Join Queue.
[email protected]