Privacy policy
Last updated 2026-09-15
MY EPK lets artists build a public press kit. This page explains what we store and why.
What we collect
- Account: your email address and name, provided by the sign-in provider you choose (Google or email). We never see your password.
- Press kit content: everything you type or upload to your kit. When you publish, that content is public by design and may be indexed by search engines.
- Technical logs: standard server logs (IP address, browser, pages requested) kept for up to 30 days to run and secure the service.
What we do not do
- We do not sell or share your personal data with advertisers.
- We do not use tracking cookies. The only cookie is the session cookie that keeps you signed in.
Third parties
Sign-in is handled by Amazon Cognito and, if you choose it, Google. Photos are stored on Amazon Web Services. Embedded players load from Spotify and SoundCloud when you add those links, subject to their own policies.
AI assistants
You can build a kit through an AI assistant (ChatGPT, Claude or any MCP client) connected to my-epk.com/mcp. We receive only what the assistant sends to your kit: the text, links and photo addresses you asked it to add. We do not receive your conversation. Such drafts belong to nobody until you open the claim link and sign in; unclaimed drafts are deleted after 30 days, photos included. Profile and release details come from the public APIs of Spotify, Apple Music, Deezer and Mixcloud when you ask for them.
Your choices
Unpublish your kit at any time from the dashboard. To delete your account and all content, email hello@my-epk.com from your account address and we will remove it within 7 days.