Legal
Privacy Policy
The Gwava Suite is built local-first: your music, setlists, and lighting designs live on your own devices, not on our servers. This policy explains exactly what information the apps and the gwava.app website handle, and the few cases where data leaves your machine.
The short version
- Your work stays on your device. Projects, songs, setlists, media files, fixtures, scenes, and chases are stored locally on your Mac (and on paired devices) — not uploaded to us.
- No account is required to use the apps, and we don't run analytics or advertising trackers.
- Companion remotes talk over your local network only (Wi-Fi or Bluetooth) — the connection between your Mac and your iPad, iPhone, or Android remote does not pass through our servers.
- Two exceptions send data off-device: the optional AI lighting-design feature (which uses an AI provider you configure with your own key), and purchases (which are handled by Apple). Both are detailed below.
01 Who this policy covers
This policy applies to the Gwava Suite of applications — GwavaTRACKS and GwavaLIGHTS for macOS, and the companion remote apps GwavaTRACKS for iPad, iPhone, and Android, and GwavaLIGHTS for iPad/iPhone — together with the gwava.app website and its support area.
In this policy, “we”, “us”, and “Gwava” refer to the makers of the Gwava Suite [insert your legal entity name and registered address here]. “You” means the performer, lighting engineer, or visitor using the apps or website.
02 What information we handle
Content you create and store
Everything you build in the apps — project names, song titles and artists, BPM, setlists,
venue names and dates, lighting fixtures, scenes, chases, and the audio, video, and MIDI
files you import — is written to your device's local storage (for example, a
projects.data file and per-project folders in your Documents directory). This
content stays on your device. We do not have access to it, and it is not transmitted to us.
Microphone and audio input (GwavaLIGHTS)
GwavaLIGHTS can listen to the room through your Mac's microphone or line-in to detect tempo and lock its lighting chases to the beat. This audio is processed in real time on your device for beat detection only. It is not recorded, stored, or transmitted anywhere. macOS will ask for your permission before the app can access the microphone, and you can revoke that permission at any time in System Settings.
Connections to companion remotes
The remote apps connect to your Mac over your local network — using Apple's local peer-to-peer networking (Wi-Fi) for the iPad and iPhone remotes, a direct local TCP connection for the Android remote, and Bluetooth Low Energy MIDI for the GwavaLIGHTS pad remote. These connections carry playback commands and the current performance state between your own devices. They do not route through Gwava servers and are not visible to us.
AI lighting design (optional)
GwavaLIGHTS includes an optional feature that turns a natural-language description into a lighting design. If you choose to use it, the text prompt you write is sent to a third-party AI provider to generate the result. To use this feature you supply your own API key, which is stored securely in the macOS Keychain on your device. When you use this feature:
- Your prompt text is transmitted to the AI provider you have configured.
- That provider's handling of your prompt is governed by their privacy policy and terms, not ours.
- If you never use the feature, no prompt data ever leaves your device.
Purchases and licensing
When the apps are released for sale, purchases will be processed by Apple through the App Store using StoreKit. Apple handles your payment and receives the associated transaction details; we do not collect or see your payment-card information. The apps validate your purchase entitlement (Trial, Gig, or Pro) locally on your device. If we later enable optional server-side verification to confirm entitlements across your devices, the verification will involve Apple-issued purchase identifiers and a license record — not your payment details — and we will update this policy with the specifics before that goes live.
The website and support articles
The gwava.app website is served as static pages. Like any website, the hosting provider may record standard technical server logs (such as IP address, browser type, and the page requested) for security and reliability. The support area loads help articles and release notes from our blog hosted on WordPress.com; loading those articles involves a request to WordPress.com, whose own privacy practices apply to that request.
When you contact us
If you email support@gwava.app, we receive the contents of your message and your email address so we can reply and provide support. We keep support correspondence only as long as needed to help you and to keep a reasonable record of the request.
03 How we use information
We use the limited information described above only to:
- Make the apps work on your device — playing tracks, syncing video and lighting, and connecting your remotes.
- Generate AI lighting designs when you explicitly request them.
- Verify your purchase so the right features are unlocked.
- Respond to your support requests.
- Keep the website and services secure and working.
We do not use your content to build advertising profiles or to train our own models.
04 What we never do
- We don't sell or rent your personal information.
- We don't show third-party ads in the apps.
- We don't run cross-site or cross-app advertising trackers.
- We don't run usage analytics or telemetry in the apps. (Should we ever add optional, anonymised performance statistics in the future, we'll describe them here and keep them off by default unless you opt in.)
- We don't access the music, video, or designs stored on your device.
05 Third-party services
A small number of outside services come into play, each only in the situations above:
- Apple — App Store distribution and payment processing for purchases.
- Your chosen AI provider — only when you use the optional AI lighting-design feature with your own API key.
- WordPress.com (Automattic) — hosts the blog and the support articles shown in the Support area.
- Our website host — serves the gwava.app pages and may keep standard server logs.
Each of these operates under its own privacy policy. We encourage you to review the policy of any AI provider you configure, since your prompts are governed by it.
06 Storage, retention, and deletion
Because your content lives on your own device, you control it directly. You can delete projects, songs, setlists, and designs from within the apps, and you can remove all app data by deleting the relevant files or uninstalling the app. Deletions within the apps are permanent, so the apps ask you to confirm before removing items.
We retain support emails only for as long as needed to handle your request. Any future license records held for purchase verification will be retained for as long as required to support your entitlement and to meet legal and accounting obligations.
07 Security
Your content is protected by the security of your own device and operating system. Sensitive values such as the AI provider API key are stored in the macOS Keychain rather than in plain files. Connections to companion remotes stay on your local network. No method of storage or transmission is ever completely secure, but we design the suite to keep your data on your own equipment wherever possible.
08 Children
The Gwava Suite is a professional tool for live performers and is not directed to children. We do not knowingly collect personal information from children. If you believe a child has provided us with personal information through our support channels, please contact us and we will remove it.
09 International users and data transfers
The apps keep your content on your own device wherever you are. For the limited data that does involve outside services — support email, purchase processing through Apple, AI prompts to your chosen provider, and website hosting — that information may be processed in countries other than your own, including the United States. Where required, those providers apply their own safeguards for international transfers.
10 Your rights
Depending on where you live (for example under the EU/UK GDPR or the California Consumer Privacy Act), you may have rights to access, correct, delete, or port personal information we hold about you, and to object to or restrict certain processing. Because most of your data sits on your own device, you can exercise many of these rights directly inside the apps. For information that involves us — such as support correspondence — you can make a request by emailing support@gwava.app, and we will respond as required by law. You also have the right to lodge a complaint with your local data-protection authority.
11 Changes to this policy
As the suite moves out of beta and we turn on features like purchases and optional server verification, we'll update this policy to match. When we make a material change, we'll revise the effective date at the top of the page. Significant changes may also be announced on the website or in the apps.
12 Contact
Questions about this policy or your data? Get in touch:
Email support@gwava.app
This page is a plain-language privacy policy for the Gwava Suite. It is not legal advice; before publishing, confirm the bracketed legal-entity details and have it reviewed against the laws that apply to you.