Draft — Pending Legal Review
← Marketplace

Privacy Policy

Unicorn Commander
Company: Magic Unicorn Unconventional Technology & Stuff Inc.
Website: unicorncommander.ai
Effective Date: March 21, 2026
Last Updated: March 21, 2026

This Privacy Policy describes how Magic Unicorn Unconventional Technology & Stuff Inc. ("Company," "we," "us," or "our") collects, uses, and protects your information when you use the Unicorn Commander platform ("Service"). By using the Service, you agree to the practices described in this policy.

1. Information We Collect

Account Information

When you create an account through our Keycloak-based single sign-on (SSO) system, we collect:

Usage Data

We automatically collect information about your use of the Service, including:

Device & Browser Information

Payment Information

Payment processing is handled by Stripe. We do not store your credit card numbers, CVV, or full payment card details on our servers. We retain only:

2. How We Use Information

We use the information we collect to:

3. AI Processing

We do not use your content to train AI models.

When you use our AI services, you may submit content such as:

This content is processed on our servers (or federated partner servers — see Section 4) solely to generate the outputs you request. Your submitted content is:

Generated outputs (music, images, text, audio) are stored in your account and retained according to our Data Retention policy (Section 6).

4. Federation & Third-Party Processing

Unicorn Commander operates a federated compute network. Your AI processing requests may be routed to:

Processing Location Description
Our Servers Infrastructure directly owned and operated by Magic Unicorn Unconventional Technology & Stuff Inc.
Federated Nodes Partner servers participating in the Unicorn Commander federation network
Cloud GPU Providers On-demand cloud infrastructure (e.g., Lambda Labs) used during peak demand

When your data is processed on third-party infrastructure:

5. Data Storage & Security

We implement the following security measures to protect your data:

6. Data Retention

Data Type Retention Period
Account data Retained while your account is active; deleted upon request after account closure
Generated content (music, images, text) Retained for 30 days after generation, or until you delete it, whichever comes first
Input content (prompts, lyrics, uploads) Deleted after processing is complete; not retained beyond the active session
Billing & transaction records Retained as required by applicable tax and financial regulations (typically 7 years)
Usage logs & analytics Retained in aggregated/anonymized form; raw logs retained for up to 90 days
Security & audit logs Retained for up to 1 year

7. Your Rights

You have the following rights regarding your personal data:

To exercise any of these rights, contact us at [email protected]. We will respond to requests within 30 days.

8. Cookies

We use cookies in a minimal and privacy-respecting manner:

Cookie Type Purpose Duration
Session Cookies Authentication state via Keycloak SSO Session (cleared on logout)
Preference Cookies UI preferences (theme, language) 1 year

We do not use third-party tracking cookies. We do not embed third-party analytics scripts (e.g., Google Analytics) or advertising trackers. Any analytics we perform use first-party data only.

9. Children

The Service is not intended for use by individuals under the age of 13. We do not knowingly collect personal information from children under 13. If we learn that we have collected personal information from a child under 13, we will take steps to delete such information promptly.

If you believe a child under 13 has provided us with personal information, please contact us at [email protected].

10. International Data Processing

The Service is operated from and data is primarily processed in the United States. If you access the Service from outside the United States, you understand and consent to the transfer, processing, and storage of your data in the United States.

We may process data in other jurisdictions through our federated compute network. Regardless of where your data is processed, we apply the same security standards and protections described in this policy.

11. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. For material changes that affect how we collect, use, or share your personal data, we will provide at least 30 days' notice via email or a prominent notice on the platform.

The "Last Updated" date at the top of this document will always reflect the most recent revision. We encourage you to review this policy periodically.

12. Contact

If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:

Privacy and data-protection requests: [email protected]. We respond within 30 days, as described in Section 7.