Privacy Policy
Symphoniee — operated by AutoKnerd LLC · Effective August 1, 2026 · Last updated August 1, 2026
1. Who we are and what this covers
Symphoniee is a live audience-engagement platform: a presenter runs a presentation, class, training, or event, and the audience joins from their phones to answer polls and quizzes, ask questions, and see live results. This policy explains what personal information we collect, how we use it, who we share it with, and the choices you have.
It applies to our website (symphoniee.com), the presenter application, and the audience “companion” experience. It does not cover a customer’s own privacy practices for content they create.
Two kinds of people use Symphoniee, and our role differs for each:
- Presenters / account holders (teachers, trainers, presenters, admins) — we are the controller of their account data.
- Audience members (students, attendees) — when a presenter or their organization runs a session, that organization directs what is collected and Symphoniee acts as a service provider / processor handling audience data on the organization’s behalf and instructions. See our Data Processing Agreement.
Note: for limited purposes — security, fraud/abuse prevention, legal compliance, and operating our own systems — we may also process some audience-related data on our own behalf. US state privacy laws use terms like “business” and “service provider” rather than “controller/processor.”
2. Information we collect
a) Account information (presenters/admins). Name, email address, password (stored hashed by our authentication provider), organization/workspace, role, and billing details. Payments are processed by Stripe; we do not store full card numbers.
b) Audience / attendee information (collected during a session, on the presenter’s behalf). Depending on how the presenter configures a session, this can include: name; and optionally email address, phone number, company, job title, and other custom check-in fields; the responses an attendee submits (poll/quiz answers, ratings, free-text questions and comments); and, where a session uses a lead-capture step, contact details the attendee chooses to provide.
c) Session and usage data. Session participation, timestamps, aggregated results, device/browser information, IP address, and operational logs generated by our hosting and backend providers. (As of this draft, we use no third-party product-analytics or advertising trackers.)
d) AI-generated content. For sessions that use the AI insight feature, we generate a summary report from the session’s responses. See Section 4 and our sub-processor list.
We do not intentionally collect Social Security numbers, government IDs, financial account numbers, precise geolocation, or special-category/sensitive data. Attendees should not enter such information into free-text fields.
3. How we use information
- To provide and operate the service (run sessions, show live results, generate reports).
- To create and secure accounts, authenticate users, and prevent abuse.
- To process payments and manage subscriptions.
- To provide the AI insight reports a presenter requests.
- To support customers and communicate about the service.
- To improve and secure the product (diagnostics, aggregate analytics).
- To comply with law and enforce our terms.
We do not sell personal information, and we do not use audience data to train third-party AI models or for cross-context behavioral advertising.
4. How we share information
We share personal information only as follows:
- With the presenter’s organization (for audience data — that’s the point of the product; results and rosters go to the organization that ran the session).
- With service providers / sub-processors that operate the service under contract — hosting, database, payments, and AI. The current list is maintained in our Sub-Processors list. Each is bound to protect the data and use it only to provide their service to us.
- For legal reasons — to comply with law, respond to lawful requests, or protect rights and safety.
- In a business transfer — as part of a merger, acquisition, or asset sale, subject to this policy.
We do not sell or “share” personal information for cross-context behavioral advertising as those terms are defined under California law.
5. Children’s privacy (K-12 / under 18)
Symphoniee is used in classrooms and by universities, so minors may participate as audience members. We treat children’s data with heightened care and rely on the school/organization to provide required consents. Our full approach — including COPPA and FERPA — is in our companion Children’s Privacy (COPPA/FERPA) document, which is incorporated into this policy by reference.
6. Data retention
- Account data: kept while your account is active. Self-service account deletion is not yet available — you may request deletion of your account data by contacting us, and account-deletion tooling is being added.
- Live-session data (audience rosters, responses, captured leads): retention is set by your organization. A workspace admin chooses the window in Data handling — from delete immediately after the session through keep until deleted — and we delete on that schedule automatically. K-12 workspaces are capped at 30 days and cannot select a longer window. You may also download a complete copy of any session, or delete it on demand, at any time and on any plan.
7. Your choices and rights
Depending on your state (e.g., California — CCPA/CPRA, and other US state privacy laws), you may have the right to access, correct, delete, or obtain a copy of your personal information, and to appeal a decision. To exercise a right, contact andrew@symphoniee.com. We will verify your request and respond within the timeframe the law requires. We will not discriminate against you for exercising a right.
Because we act as a service provider for audience data, if you are an attendee, please direct requests about your session data to the organization that ran the session; we will assist them.
8. Security
We implement administrative, technical, and organizational measures to protect personal information, including encryption in transit and at rest, role-based access controls, tenant isolation, and least-privilege access. No method of transmission or storage is 100% secure.
9. International users
Symphoniee is intended for use in the United States, and data is processed in the United States. We do not currently offer the service to users in the EU/UK; if that changes, this policy will be updated to address GDPR/UK-GDPR.
10. Changes to this policy
We may update this policy; we will post the new effective date and, for material changes, provide additional notice.
11. Contact
AutoKnerd LLC, Lakeland, FL 33813 · andrew@symphoniee.com