LOCAL-FIRST / PRIVACY NOTE

Your listening stays yours.

Songle stores settings, round history, normalized imported-playlist metadata, and playlist progress in this browser. There are no Songle accounts, analytics, advertising IDs, or cloud databases. When you connect Spotify, access and refresh tokens are kept in an encrypted, HttpOnly same-origin cookie and are sent only to this app’s Worker.

The Worker uses that session to request catalog metadata, playlist items, and playback authorization from Spotify. For public playlists you do not own or collaborate on, Songle may read Spotify’s public embed page to recover track IDs before resolving them through the official authenticated API. It does not download or proxy audio.

Challenge links remain limited to synthetic demo tracks and never include a Spotify token, account, or playlist. You can disconnect Spotify, remove an imported playlist, or clear all local Songle data from Settings at any time.

Return to Songle