Last updated 14 September 2026
Music Journals is a personal concert journal. Your notes are yours: they are never shown to other users, never published, never sold, and never used to advertise to you. There is no analytics or tracking software in this app.
Your account. Email address and password (handled by Google Firebase Authentication — the password is never visible to us), your first and last name, and optionally how you heard about the app.
What you put in your journal. The concerts you log, the program text you paste or the program photo you upload, and the private note you write about each concert.
Your subscription, if you have one. Whether it is active, which store it came from, that store's identifier for it, and when the current period ends.
When you submit a program, its text — or the photo of it — is sent once to Google's Gemini API so the works, composers and performers can be pulled out for you to confirm. After you confirm a concert, the app may make one further request that searches the web for factual details about the works, such as when a piece was composed.
A program is sent only when the read actually goes ahead. If it is refused — no subscription, or the month's concerts already used up — nothing is sent to Gemini; the program stays in your own saved draft.
Your private notes are never sent to any AI provider. Only program material is, and only when you submit it.
Payment is handled by Apple through the App Store. Payment details never reach Music Journals, which has no way to see or store them.
Music Journals keeps the App Store subscription's signed identifier, product, status and period end so access can follow the subscription. It does not receive your card number or Apple Account password.
A subscription decides what the app will do for you; it is never used to advertise to you, and it is not shared with anyone beyond the payment provider handling it.
Concert records, notes and uploaded program images are stored in Supabase (PostgreSQL and private file storage) in the United States. The site is hosted on Vercel. Sign-in is handled by Firebase Authentication. Uploaded program images are kept in a private storage area that is not publicly readable and is scoped to your account.
Composers, works, performers and venues form a shared catalog, so that when two people log the same piece it is recognised as the same piece. That catalog holds no personal information: no note, no account detail, and no record of who attended what.
Your concerts, your journal, your notes and your uploaded programs are visible only to you.
You can export a note from its concert page. Account-wide export is not currently available.
You can delete your account from the same page. Deleting removes your profile, your concerts, your journal entries, your notes and their history, your submitted program text and images, your subscription record, and your sign-in credentials. App Store subscriptions are managed separately by Apple; deleting this account does not cancel one, so cancel it in Apple Subscriptions first if it is still active. Entries in the shared catalog that you created stay — other people's journals reference them — but they are detached from you and hold nothing personal. Deletion begins immediately, may complete in stages across our storage, database and sign-in provider, and can be retried safely if one stage fails.
If you would rather we did it for you, write to hello@artstory.app from your account address.
Music Journals is not directed at children under 13 and does not knowingly collect their data.
If this policy changes in a way that affects what is collected or who can see it, the date at the top of this page changes and the change is described here.
14 September 2026. Reading a program became part of a subscription, so this page now describes the subscription record kept against your account, what reaches Apple when you pay, and that a refused read sends nothing to Gemini. Nothing changed about your concerts, your notes, or who can see them.