Privacy

Last updated September 11, 2026

The short version

Without an account, your songs live only in your browser and nothing about your library leaves your device unless you share or export it. With an account, your library is also stored in the cloud so it can follow you between devices. There is no advertising or cross-site tracking either way.

What Bandform stores on your device

  • Your library. Song titles, sections, tempos, settings, and any cover or banner images you add are saved in your browser's local storage. They stay on that device and in that browser until you delete them or clear site data.
  • A one-time backup. Before the app writes a new library format for the first time, it keeps a snapshot of the previous one, also in local storage, so an update is far less likely to lose your songs.
  • Pending sync. Unsynced edits and deletion records are saved locally for the signed-in account so they can be retried. Cloud deletion records prevent an older device from restoring a deleted song.
  • Small flags. Whether you have seen the welcome tour, and, when signed in, your username so the app can show it right away. Bandform sets no cookies.

What leaves your device, and when

  • Share links. When you share a song, the whole arrangement is compressed into the link itself. Anyone who has the link can read that song. Cover and banner images are never included. Bandform's server reads the link only to render the preview and does not keep a copy.
  • Exports. The Export button creates a file on your device. Where it goes after that is up to you.
  • Moving from Song Playthrough. If you used the app under its old name, opening the old address hands your library to bandform.app through the address bar, once, on your own device. No server is involved.
  • Voice files. Spoken bar numbers are ordinary audio files fetched from bandform.app. Section names use your browser's speech service. Depending on your browser and selected voice, this may run on your device or send section names to its speech provider. Bandform does not send section names to a speech service itself.

Analytics

Bandform uses Cloudflare Web Analytics and Umami Cloud to count visits, see which pages are used, and learn whether anonymous visitors use core features such as creating or editing a song. Both are privacy-focused: Bandform uses them without cookies, fingerprinting, cross-site tracking, or links to Bandform accounts. URL query strings and fragments are excluded so shared-song contents and sign-in codes are not collected. Bandform does not send song contents, song names, email addresses, usernames, or account IDs as analytics events. The reports are aggregate and anonymous.

Accounts

Bandform works fully without an account. Sign-in is optional and exists for one reason: to keep your library the same on every device you use.

  • What an account stores. Your email address, a password hash, your username, and your songs, including any cover or banner images. They are stored with Google Firebase (Authentication and Cloud Firestore) in the United States.
  • Email from Bandform. Confirmation and requested password-reset emails are sent through Resend. Important service notices, such as material privacy updates, may also be sent when needed. You can separately opt in to occasional product updates and changelog emails. This is off by default, is not required to use Bandform, and can be turned off in your profile menu. Your choice, its timestamp, and the consent version are stored privately in Firebase. Optional update emails are only for opted-in users with verified email addresses.
  • What is public. Your username and the date you joined, on your profile page. Nothing else. Your email and cloud library are not public. Anyone you give a song share link to can read that shared arrangement.
  • Who can read it. Only you. The database rules allow each account to read and write its own library and nothing else. Shared arrangements are accessible to anyone holding their share link, as described above.
  • Leaving. Signing out keeps your songs on the device by default, and offers to remove them from that device if it is not yours. To delete your account and everything stored with it, email support@bandform.app.

Email abuse prevention

To limit repeated account emails, Bandform stores hashed recipient and network-address identifiers with request counts and timestamps in a private database collection. These records are used for abuse prevention, not advertising.

Hosting

bandform.app is served by Cloudflare. Like every web host, Cloudflare handles the network requests that load the site and keeps standard operational logs for a short period.

Questions

Bandform is made by Swayyy. Email support@bandform.app.