Vagus

Privacy Policy

Effective date: July 2, 2026  ·  Last updated: July 5, 2026

Overview

Vagus is a music release tracker. You follow artists, and the app notifies you when they release new music. This policy explains what data the app collects, who it's shared with, and how long it's kept.

Vagus is developed and operated by a single developer. Your data is not sold and is not used for advertising.

What we collect

Data Why it's collected
Email address & account info To identify your account and sync your library across devices. Provided via Google Sign-In or email/password through Firebase Authentication.
Artists you track Stored in Firestore to sync your library across devices and run the daily release check pipeline.
Tags and tiers Labels you assign to artists, stored in your account to organize and filter your library.
Inbox and release history Releases added to your inbox (album name, release date, artist). Stored per-user in Firestore.
Push notification token A device token issued by Firebase Cloud Messaging, used to deliver new release notifications.
Subscription status Purchase receipts and subscription state are managed by RevenueCat to verify access to premium features. Vagus does not store payment card details.
Last.fm credentials (optional) If you choose to connect Last.fm, your username and API key are stored locally on your device only and are never transmitted to Vagus servers. They are used to retrieve your listening history from Last.fm's API.

Local cache

Vagus stores a local database on your device containing your artist list, release catalogue, and inbox so the app works without waiting on a network request each time. This mirrors your Firestore data and is cleared when you sign out or uninstall the app.

What we don't collect

Third-party services

Vagus uses the following third-party services to function. Each service's privacy practices are governed by their own policies.

Firebase (Google)

Used for account authentication (Firebase Auth), cloud data storage (Firestore), push notifications (Cloud Messaging), and server-side processing (Cloud Functions). Governed by Google's Privacy Policy.

Spotify Web API

Used to search for artists and retrieve artist/album metadata using an app-level access token. Vagus does not connect to your Spotify account and cannot access your Spotify library, listening history, playlists, or playback. No user Spotify credentials or tokens are collected or stored. Governed by Spotify's Privacy Policy.

Deezer

Used to fetch release catalogue and artist metadata via Deezer's public API. No user account or authentication is required. Governed by Deezer's Privacy Policy.

MusicBrainz

Used to look up open music metadata. No user data is sent. Governed by the MetaBrainz Privacy Policy.

RevenueCat

Used to manage in-app subscriptions and verify purchase receipts. RevenueCat may receive your device's purchase receipt and a device identifier. Governed by RevenueCat's Privacy Policy.

Last.fm (optional)

If you choose to enable Last.fm integration by supplying your username and API key, Vagus reads your listening history from Last.fm to show which tracks you've heard. Your Last.fm credentials are stored only on your device. Governed by Last.fm's Privacy Policy.

Data retention & deletion

Your Firestore data (artists, inbox, tags) is retained as long as your account exists. Your local device cache is cleared when you sign out or uninstall the app.

To delete your account and all associated data, contact us at the address below. We will remove your Firestore data within 30 days of a verified request.

Children

Vagus is not directed at children under 13. We do not knowingly collect personal information from children. If you believe a child has provided personal information through the app, please contact us and we will delete it promptly.

Changes to this policy

If we make material changes to this policy, we will update the date at the top of this page. Continued use of the app after changes take effect constitutes acceptance of the updated policy.

Contact

Questions about this policy or requests to delete your data:

Michael Tran
justanappearance@gmail.com