Legal
Privacy Policy
This Privacy Policy describes how Woodshed (the iOS app with bundle identifier com.woodshed, and the website at getwoodshed.com) handles information. Woodshed is operated by Robby Grossman. Contact: [email protected].
It covers the Woodshed iOS app and this website. There is one policy and one public URL: https://getwoodshed.com/privacy.
Summary
- Practice sessions, library items, recordings, and songwriting notes live on your device. No account is required.
- We do not sell personal information.
- We do not share personal information for cross-context advertising.
- Cloud services may be utilized to improve the product.
- Optional diagnostics are on by default and can be turned off in Settings: Sentry (crashes, hangs, MetricKit, error-only session replay) and PostHog (first-party product events only).
- You can send us feedback from inside the app. A report includes what you type and what you choose to attach (such as an email address, a screenshot, or, for “Improve detection”, a session’s audio or MIDI), plus device and app diagnostics.
- Woodshed is not directed at children under 13.
- The app and website are provided with no warranty. Liability is disclaimed to the maximum extent permitted by law.
Information that stays on your device
Woodshed is built so your music stays yours. Practice sessions, audio recordings, library items (pieces, ratings, tags, history), songwriting ideas, takes, notes, MIDI you import or record, analysis results, and related files are stored locally on your device. You do not create a Woodshed account. We do not operate a Woodshed login, and we do not receive your recordings or songwriting notes as a condition of using the app.
If you use Settings to copy a snapshot of your library to iCloud, that copy goes to your Apple iCloud account under Apple’s terms and privacy policy. That is a user-initiated backup snapshot, not automatic Woodshed-operated sync, and we do not receive the contents of that backup on Woodshed servers.
Deleting an item in the app, emptying Recently Deleted, or deleting the app removes local data from that device (subject to any iCloud snapshot you made, device backups you control, and files you exported or shared yourself).
Information we may collect or receive
We try to keep product content on-device, but we would rather overstate what can be processed than leave a gap. Depending on how you use Woodshed and the website, we and our processors may collect, receive, or infer:
- Identifiers and technical data: IP address, approximate location derived from IP, device type and model, operating system and version, app version, language, time zone, anonymous install or distinct identifiers created by diagnostic SDKs, user agent, referrer, and request timestamps.
- Crash and diagnostic data (Sentry, if Crash reports is on): crash reports, stack traces, hang reports, MetricKit payloads, breadcrumbs, device and app state around a failure, and error-only session replay. Session replay is sampled only around errors (not as a product-analytics recording of your practice). We configure Sentry to mask text and images; a replay can still include a visual snapshot of the user interface around a crash. We do not use Sentry as product analytics.
- Product events (PostHog, if Usage analytics is on): named screen views and a closed list of first-party events such as that a recording started or finished, analysis succeeded or failed, a piece or idea was created, a rating was set, inbox or share import happened, backup or restore succeeded or failed, or onboarding completed. Events may include coarse buckets (for example duration or count ranges) and non-content properties such as a source label. We do not send piece names, idea names, recordings, MIDI, file paths, emails, or raw user-content identifiers. We do not autocapture taps, we do not call identify(), we do not use PostHog error tracking, and we do not use PostHog session replay.
- In-app feedback (when you send it): the text you write in “Report a problem”, “Share an idea”, or “Improve detection”; an email address if you choose to leave one (the app may remember it on your device); a screenshot of the current screen if you leave that option on; and diagnostics such as app version and build, install channel, iOS version, device model, locale, the screen you were on, recording state, input type, analysis settings, and summary information about your sessions and the session in view. For “Improve detection”, the report also includes that session’s detected and corrected segments and a copy of the session’s audio or MIDI. Feedback is delivered through Sentry and can be sent regardless of the Crash reports setting.
- Website and email: if you type an email on getwoodshed.com to be notified at launch, that address and related form metadata are processed so we can email you about launch. If you email us, we will have your address and the contents of the message.
- Permissions and local device use: the app may request microphone access (to record practice), notification permission (local alerts), and Bluetooth (to pair a MIDI keyboard). Those features run on your device. Recordings and MIDI are not uploaded to Woodshed as product content. Diagnostic tools, if enabled, may still receive technical data as described above, including a masked UI replay around an error.
- Logs and hosting: the website is hosted on GitHub Pages. GitHub (Pages, and the repositories and issue tracker where we work on the product), Formspree (the launch-email form), Sentry, PostHog, and Apple (App Store, iCloud, iOS, MetricKit) may process technical data, including IP addresses and device information, under their own policies. We may also see aggregated or individual diagnostic records in those vendors’ dashboards.
Cloud services may be utilized to improve the product. That includes the processors named in this policy and other infrastructure we may use to operate, secure, debug, or improve Woodshed. If a later change is material, we will update this page and its date.
Optional diagnostics (default on)
Settings contains two independent toggles. Both default to on. Turning either off is free and takes effect immediately.
- Crash reports — Sentry. Used for crashes, hangs, MetricKit, and error-only session replay. Not product analytics. Turning it off does not disable in-app feedback.
- Usage analytics — PostHog. First-party product events only. No autocapture, no identify, no PostHog error tracking, no PostHog session replay.
PostHog is configured against PostHog’s US Cloud host. Sentry events go to Sentry’s service for our project. Empty keys in a given build mean that backend is a no-op. UI tests do not send telemetry.
In-app feedback
Feedback is sent when you choose to send it. Reports go to our Sentry project and may be copied into our issue tracker and other tools we use to work on the product. If you leave an email address, we may use it to reply about your report, including to let you know when a related change is available. If you do not leave one, we cannot write back.
Screenshots and “Improve detection” media are attachments. Sentry retains attachments for a limited period under its own policy, and we may copy them to storage we control, where they are used to work on and improve Woodshed, including its practice-segment detection. To ask about a report you sent, email [email protected].
How we use information
We use information to operate Woodshed, fix crashes and hangs, understand which screens and actions are used so we can improve the product, act on feedback you send from the app and reply to it if you gave us an address, improve the product (including practice-segment detection) using sessions people send for that purpose, send launch email if you asked for it, respond if you contact us, and meet legal obligations. We do not use personal information to build a cross-app advertising profile, and we do not sell it.
Sale, sharing, and advertising
We do not sell personal information. We do not share personal information for cross-context behavioral advertising. We do not use your recordings, library, or songwriting notes for advertising. Processors listed here receive data only to provide their service to us (diagnostics, hosting, email delivery, or Apple platform services).
Retention
Local app data lasts until you delete it or delete the app (and any copies you made, including iCloud snapshots and device backups you control). Vendor diagnostic data follows Sentry’s and PostHog’s retention for our accounts, which those vendors control and which may change. In-app feedback, including any email address you left, is kept in Sentry under that same retention and in our issue tracker and related storage for as long as it is useful to us. “Improve detection” sessions are kept for as long as they are useful for detection work. Launch-list email is kept until you ask us to remove it or we stop the list. Email you send us is kept as long as needed to respond and for ordinary records.
Children
Woodshed is not directed at children under 13. We do not knowingly collect personal information from children under 13. If you believe a child under 13 has provided personal information, contact [email protected] and we will delete it from systems we control.
Your choices
- Turn off Crash reports and/or Usage analytics in Settings. Each toggle is independent.
- Do not submit your email on the website if you do not want us to have it.
- In the feedback composer, you can leave the email field empty and turn off the screenshot or diagnostics before sending.
- Delete local data in the app, or delete the app.
- Email [email protected] to ask us to delete launch-list email or to ask what diagnostic records, feedback reports, or “Improve detection” sessions we can locate and delete from Sentry, PostHog, GitHub, or our private repository. We may not be able to reverse Apple-held iCloud or device backups you control.
Security
We take reasonable administrative and technical steps to protect information, including keeping product content on-device by default and limiting telemetry to the categories above. No method of electronic storage or transmission is completely secure. You are responsible for the physical security of your device and for any iCloud or export copies you make.
International processing
Woodshed is operated from the United States. Sentry, PostHog (US Cloud), GitHub, Formspree, and Apple may process data in the United States and other countries. If you use Woodshed from elsewhere, you understand that information may be processed outside your country, including in places that may have different data-protection rules.
Changes
If we make a material change to this policy, we will update this public page and the effective date on it. Continued use of the app or website after that date means you are using the product under the updated policy. Please check this URL when you need the current text; the app opens this same page rather than shipping a second copy of the legal language.
No warranty; limitation of liability
THE WOODSHED APP, THIS WEBSITE, AND ALL RELATED CONTENT AND SERVICES ARE PROVIDED “AS IS” AND “AS AVAILABLE,” WITHOUT WARRANTY OF ANY KIND, WHETHER EXPRESS, IMPLIED, STATUTORY, OR OTHERWISE. TO THE MAXIMUM EXTENT PERMITTED BY APPLICABLE LAW, ROBBY GROSSMAN AND WOODSHED DISCLAIM ALL WARRANTIES, INCLUDING IMPLIED WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE, TITLE, QUIET ENJOYMENT, ACCURACY, AND NON-INFRINGEMENT, AND ANY WARRANTIES ARISING FROM COURSE OF DEALING OR USAGE OF TRADE. WE DO NOT WARRANT THAT THE APP OR WEBSITE WILL BE UNINTERRUPTED, ERROR-FREE, SECURE, OR FREE OF HARMFUL COMPONENTS, THAT RECORDINGS OR ANALYSIS WILL BE COMPLETE OR CORRECT, OR THAT DATA WILL NOT BE LOST.
TO THE MAXIMUM EXTENT PERMITTED BY APPLICABLE LAW, ROBBY GROSSMAN AND WOODSHED SHALL NOT BE LIABLE FOR ANY INDIRECT, INCIDENTAL, SPECIAL, CONSEQUENTIAL, PUNITIVE, EXEMPLARY, OR LOST-PROFITS DAMAGES, OR FOR ANY LOSS OF DATA, RECORDINGS, GOODWILL, OR PRACTICE TIME, WHETHER BASED IN CONTRACT, TORT (INCLUDING NEGLIGENCE), STRICT LIABILITY, OR OTHERWISE, EVEN IF ADVISED OF THE POSSIBILITY. TO THE MAXIMUM EXTENT PERMITTED BY APPLICABLE LAW, TOTAL LIABILITY FOR ALL CLAIMS RELATING TO WOODSHED OR THIS WEBSITE SHALL NOT EXCEED THE GREATER OF (A) THE AMOUNT YOU PAID TO US FOR WOODSHED IN THE TWELVE MONTHS BEFORE THE CLAIM OR (B) TEN U.S. DOLLARS (US$10). SOME JURISDICTIONS DO NOT ALLOW CERTAIN LIMITATIONS; IN THOSE PLACES, OUR LIABILITY IS LIMITED TO THE GREATEST EXTENT THE LAW ALLOWS. THIS POLICY DOES NOT LIMIT LIABILITY THAT CANNOT BE LIMITED UNDER APPLICABLE LAW, INCLUDING LIABILITY FOR DEATH OR PERSONAL INJURY CAUSED BY NEGLIGENCE WHERE SUCH A LIMIT IS PROHIBITED.
Contact
Questions about this policy or Woodshed’s privacy practices: [email protected]. Operator: Robby Grossman.