Last updated: 5 June 2026 · Crowdwave (crowdwave.fm)
This Privacy Policy explains how Crowdwave ("we", "us", or "our") collects, uses, and protects information when you use our platform at crowdwave.fm. We are committed to protecting your privacy in accordance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
Crowdwave is the data controller for personal data collected through our platform. You can contact us at hello@crowdwave.fm.
Account data: Name, email address, and password hash when you create an account.
Billing data: Payment is processed by Stripe. We store only your Stripe Customer ID — we never see or store your full card details.
Usage data: Pages visited, features used, and actions taken within the platform, used to improve the service.
Fan data (on your behalf): When fans interact with your drops or gates, we collect their email addresses and platform connection data on your behalf. You are the data controller for this data — see Section 7.
We do not sell your personal data to third parties.
We process your data under the following legal bases:
We retain your account data for as long as your account is active. If you delete your account, we delete your personal data within 30 days, except where we are required to retain it for legal or financial compliance purposes (e.g. billing records for 7 years under UK law).
We use the following third-party processors:
When fans interact with your Crowdwave pages (drops, gates, bio links), we collect their data on your behalf. In this context you are the data controller and we are the data processor. You are responsible for:
We use strictly necessary cookies to maintain your login session. We do not use third-party advertising or tracking cookies. No cookie consent banner is required for strictly necessary cookies under UK PECR.
Under UK GDPR you have the right to:
To exercise any of these rights, contact us at hello@crowdwave.fm. We will respond within 30 days.
We use industry-standard security measures including encrypted connections (HTTPS/TLS), hashed passwords, and access controls. No system is completely secure — if you believe your account has been compromised, contact us immediately.
Some of our third-party processors may transfer data outside the UK. Where this occurs, we ensure appropriate safeguards are in place (such as UK adequacy decisions or standard contractual clauses).
We may update this Privacy Policy from time to time. We will notify you by email of any material changes. The date at the top of this page reflects the most recent update.
For any privacy-related queries or to exercise your rights, contact us at hello@crowdwave.fm.