Policies
Privacy Policy
Last updated October 10, 2026
This policy describes what Light Show Labs collects when you use this website. It does not claim that the site collects nothing.
Information from a song request
The request form asks for a song title, artist, one or more Tesla models, and an email address. Your name, a song link, and notes are optional. After you submit, the site stores a request reference, the time of the request, the payment method you later select, and the payment and fulfillment status.
The site does not ask for a card number, bank password, or a copy of your payment login. Payment is completed inside Cash App, Venmo, PayPal, or Zelle when those methods are configured.
How that information is used
- To identify your request and tell the difference between an unpaid request and a verified payment.
- To email you the reference, payment instructions, and a later message if payment is verified.
- To email the business owner the details needed to do the work.
- To limit automated form submissions.
When email delivery is configured, messages are sent through a transactional email service. A message that says a request was received is not a receipt. A message that says payment was confirmed is sent only after the owner records that the payment was verified in the payment service.
If email is not configured, the website says so on the confirmation page and does not pretend a message was delivered.
Payment providers
Cash App, Venmo, PayPal, and Zelle process the payment under their own terms and privacy policies. Light Show Labs sees the result in the receiving account. It does not receive your provider password. Customer-entered notes and screenshots are not treated as proof of payment.
Cookies
After a successful request, the site sets one cookie so this browser can reopen the confirmation page. The cookie is httpOnly, which means page scripts cannot read it. It holds a signed request id, not your email address. It is not an advertising cookie. The site does not use a visitor account.
Rate-limit records
The server stores a hash of the network address with a timestamp so the forms can slow repeated submissions. The raw address is not kept as a customer profile.
Where information is stored
Published light shows live in files that are part of the website. Customer requests are stored in a hosted Postgres database when that database is connected. During local development, requests can be stored in a private file on the owner's computer. That file is not part of the public website.
Data retention
Open decision. A fixed retention period has not been published yet. Until it is, request records are kept long enough to finish the request, answer questions, and meet tax or dispute needs. Edit this section in src/app/privacy/page.tsx when you choose a period.
Contact and deletion requests
To ask about your information, use the contact page or reply to a message about your request. Include your reference number. Access or deletion requests will be handled to the extent the law requires, and some records may need to be kept for accounting or a dispute.
A public inbox is shown on the contact page only after one is added to the site configuration. The private notification address used for new requests is not published here.
