Privacy Policy
Welcome to NextHit, a service operated by Goforce Inc. ("NextHit", "we", "us", or "our"). We value your privacy and are committed to protecting your personal information. This Privacy Policy explains what data we collect, how we use it, the choices you have, and your rights.
If you have any questions, contact us at privacy (at) nexthit (dot) co.
1. Scope
This Policy applies to our website nextHit.co, web app, dashboards, APIs, mobile or desktop clients, and any related services that link to or reference this Policy (collectively, the "Service").
2. Information We Collect
2.1 Information You Provide
| Category | Examples | Purpose |
|---|---|---|
| Account Data | Name, e‑mail, password, company/band name, billing country | Create and secure your account, provide Service |
| Audio & Project Files | Unreleased audio tracks, metadata, artwork, version notes | Generate predictive analytics and insights |
| Payment Data | Cardholder name, last 4 digits, billing address (via Stripe) | Process transactions; fraud prevention |
| Support & Feedback | Survey responses, feature requests, support tickets, troubleshooting logs | Customer support; product improvement |
2.2 Information Collected Automatically
| Category | Examples | Purpose |
|---|---|---|
| Usage Data | Pages viewed, buttons clicked, session duration, referrer URL | Analytics, UI optimisation |
| Device & Log Data | IP address, browser type, operating system, time zone, error logs | Security, diagnostics |
| Cookies & Similar Tech | Session cookies, auth tokens, analytics cookies | Remember preferences; measure traffic |
Cookies. We use first‑party and third‑party cookies to keep you logged in, remember settings, and analyse usage (see § 7).
3. How We Use Your Information
We process personal information to:
- Provide the Service – authenticate you, generate analytics, deliver reports;
- Process Payments – via our payment processor Stripe;
- Maintain & Improve – monitor performance, debug, develop new features;
- Communicate – send transactional e‑mails, product updates, and respond to inquiries;
- Marketing (Optional) – send newsletters or promotional content with your consent; you can opt out anytime;
- Legal & Security – detect fraud, enforce our Terms of Service, comply with legal obligations.
4. Legal Bases (EEA/UK Users)
If you are in the European Economic Area or United Kingdom, we process your data under the following legal bases:
- Contractual necessity – to provide the Service;
- Legitimate interests – to maintain security, improve the Service, and prevent fraud;
- Consent – for optional marketing e‑mails and cookie categories;
- Legal obligation – to comply with applicable laws, such as tax regulations.
5. Sharing & Disclosure
We do not sell your personal information. We share it only as described:
| Recipient | Reason | Safeguards |
|---|---|---|
| Stripe, Inc. | Payment processing | PCI‑DSS compliance |
| PostHog | Product analytics | IP anonymisation, EU data centre |
| Sentry | Error monitoring | Pseudonymisation |
| AWS / Hetzner | Cloud hosting & storage | ISO 27001; data encryption |
| OpenAI LLC, Anthropic PBC | Machine‑learning inference to generate analytics | Encrypted transfer; no public model training with your raw audio (unless opted in) |
| Law enforcement | When legally required, e.g., valid subpoena | Reviewed by counsel |
If Goforce Inc. undergoes a merger, acquisition, or asset sale, we will notify you before your data is transferred and becomes subject to a different policy.
6. Data Retention
| Data Type | Retention Period |
|---|---|
| Account data | While account is active + 2 years |
| Audio uploads | 180 days (default); immediate deletion upon user request |
| Analytics outputs | 24 months for benchmarking and quality control |
| Payment records | 7 years (legal requirement) |
| Logs & backups | Up to 30 days, then aggregated or deleted |
7. Cookies & Tracking Technologies
We use four categories of cookies:
- Strictly Necessary – authentication tokens (cannot be disabled);
- Performance – PostHog analytics;
- Functional – remember UI settings (e.g., dark mode);
- Marketing – optional newsletters / referral tracking.
You can manage cookies via your browser or our cookie‑preferences banner.
8. Your Rights & Choices
Depending on your jurisdiction, you may have rights to:
- Access – obtain a copy of your personal data;
- Rectify – correct inaccurate or incomplete data;
- Delete – request erasure of personal data;
- Restrict or Object – limit or challenge certain processing;
- Portability – receive data in a structured, machine‑readable format;
- Opt Out of Marketing – unsubscribe via any marketing e‑mail;
- Do Not Sell or Share (California) – we do not sell, but you may exercise your CPRA rights at privacy (at) nexthit (dot) co.
We will respond within 30 days (or as required by law).
9. Security
We employ industry‑standard measures including TLS encryption in transit, AES‑256 at rest, role‑based access controls, and periodic penetration testing. However, no method of transmission or storage is 100% secure, and we cannot guarantee absolute security.
10. International Transfers
We are headquartered in the United States. When we transfer data from the EEA/UK or other regions with differing laws, we rely on Standard Contractual Clauses, adequacy decisions, or your explicit consent.
11. Children's Privacy
The Service is not intended for children under 16. We do not knowingly collect personal data from children. If we learn that a child has provided us data, we will delete it promptly.
12. Changes to This Policy
We may update this Policy from time to time. We will post the revised version with an updated "Effective Date" and, if the changes are material, provide 30 days' prior notice (e.g., by e‑mail or in‑app).
13. Contact Us
Attn: Privacy Officer
E‑mail: privacy (at) nexthit (dot) co
Address: 30 N Gould St # 41550 Sheridan, WY 82801
If you believe we have not resolved your privacy concern, you have the right to lodge a complaint with your local supervisory authority or data‑protection regulator.
© 2025 Goforce Inc. All rights reserved.