Hosanna Legal Center
Last updated: August 14, 2026
1. Terms of Service
1.1. Acceptance of Terms By creating an account, accessing, or using Hosanna applications (including Hosanna Studio and the Mobile App), you agree to be bound by these Terms of Service. If you do not agree with any of these conditions, you should not use the platform.
1.2. Description of Service Hosanna is a software platform designed to assist churches, ministries, and worship teams with organizing their music libraries, managing team members, and planning services. Hosanna does not provide music. The platform does not sell, distribute, host, or provide commercial music libraries, sheet music, lyrics, chord charts, or audio recordings. Hosanna acts exclusively as technological infrastructure allowing users to manage their own content.
1.3. User Accounts and Organizations Hosanna uses an authentication model based on personal accounts.
- Personal Account: Users create an individual, personal account.
- Organizations: To enjoy the full cloud experience (Hosanna Studio), the user must create or join an “Organization”. The organization is the primary container where church songs, services, folders, settings, and teams reside.
- Members and Teams: Users can be invited via email to join an organization. Organizations can be subdivided into teams for collaboration. Removing a member from an organization revokes their access to that organization’s data but does not delete their personal Hosanna account.
1.4. Roles and Responsibilities Each organization manages permissions through roles (e.g., Owner, Admin, Team Leader, Editor, Musician, Viewer). There is always strictly one Owner per organization. The Owner is ultimately responsible for decisions, billing, and organizational usage.
1.5. Mobile App and Offline/Local Mode Hosanna’s Mobile App offers two distinct modes of operation:
- Local / Unauthenticated Mode: Users can open the Mobile App without creating an account or logging in. In this limited mode, the application works offline, allowing users to create and view songs stored locally on the device. No cloud organization data is accessed in this mode.
- Organization / Authenticated Mode: When a user logs into their account and belongs to an organization, the app synchronizes songs, services, and content permitted by their role, enabling cached offline access to previously synced data.
1.6. Service and Terms Modifications Hosanna is continuously evolving. Features may be added, modified, discontinued, or replaced. Hosanna reserves the right to update these Terms. Material changes will be communicated appropriately. Continued use of the service after changes indicates acceptance.
1.7. Beta Features Hosanna may provide “Beta” or experimental features. These features are provided “as is”, may contain bugs, undergo modifications, or be removed, and do not carry the same stability guarantees.
2. Privacy Policy
2.1. Absolute Content Privacy Principle Hosanna respects the private nature of your church’s content. Hosanna never sells, licenses to advertisers, uses for marketing, or shares customer content (songs, lyrics, chord charts, services, and notes) with unrelated third parties. Hosanna does not use user or organization content to train Artificial Intelligence (AI) models.
2.2. Our Role under GDPR For the purposes of the General Data Protection Regulation (GDPR):
- Hosanna acts as Data Controller: In relation to your personal account data, authentication details, billing information, security settings, and data required to fulfill our legal obligations.
- Hosanna acts as Data Processor: In relation to operational and member data managed by the organization (service content, repertoire, team rosters), where the Organization acts as Data Controller.
2.3. Categories of Data Processed
- Account and Security Data: Name, email address, verification status, profile avatar, session information, and account security data (e.g., Two-Factor Authentication - 2FA).
- Organization Data: Content created or submitted by churches, including folders, songs, lyrics in ChordPro format, services, notes, and invitations.
- Technical and Diagnostic Data: Prior to final release (pre-1.0), Hosanna may utilize diagnostic tools and performance metrics (analytics) to detect errors and improve technical infrastructure reliability. This data is never used to profile musical content for marketing purposes.
2.4. Data Subject Rights Under applicable legal grounds, users have the right to request access, rectification, erasure (right to be forgotten), restriction of processing, and portability of their personal data. Where processing is based on consent, it may be withdrawn at any time.
3. Cookie and Local Storage Policy
Hosanna uses strictly necessary storage technologies to ensure authentication and platform functionality. We do not use third-party advertising, marketing, or tracking cookies.
- Session Cookies: Used to securely keep users authenticated and protect session integrity.
- Local Storage / IndexedDB: Used in the Mobile App and Studio to store local preferences, application state, and maintain a local cache of organization data. This enables the platform to operate offline.
4. Acceptable Use Policy (AUP)
To safeguard the security and integrity of the platform, users and organizations agree not to use Hosanna for:
- Unlawful or fraudulent activities or violations of applicable laws;
- Uploading, sharing, or distributing content that infringes third-party copyright or intellectual property rights;
- Transmitting malware or attempting unauthorized access to accounts, other organizations’ data, or Hosanna systems;
- Circumventing authentication, security mechanisms, or subscription limits;
- Making abusive automated requests, mass scraping, denial-of-service attacks, or misusing internal APIs;
- Harassment, hate speech, extremism, fraud, or sexually explicit material inappropriate for the context of the service.
Enforcement: Hosanna investigates credible reports of policy violations. Depending on severity, we may issue warnings, restrict access, suspend accounts, remove members, or terminate organizations (including immediate account bans).
5. Copyright and Content Policy
5.1. Content Ownership Customers and users retain all ownership rights to content they create or upload (subject to third-party rights). Hosanna receives only the limited license necessary to operate the service (storing, syncing, processing, displaying to authorized users, and performing technical backups).
5.2. Licensing Responsibility Organizations are solely responsible for ensuring they possess all necessary rights, permissions, or licenses (e.g., through CCLI) for all musical content stored, reproduced, or shared on the platform. Hosanna acts as an infrastructure provider and does not automatically audit licensing for each song.
5.3. Audio & YouTube Integration Hosanna does not host audio files or recordings. Metadata linking a song to YouTube videos merely references external content. Hosanna does not control external content, which remains subject to third-party terms.
5.4. Copyright Takedown Procedure If you are a copyright holder and believe your work is being improperly used on our infrastructure, please send a formal notice to our legal contact. We will investigate and reserve the right to remove or restrict access, while preserving the user’s right to respond or counter-notify.
6. Subscriptions, Billing, and Refunds
6.1. Plans and Payment Processing Hosanna Cloud operates on a subscription model (monthly or annual) at 12€/month per organization (or per campus). Payments are processed securely via our billing partner (Stripe). Hosanna does not store raw credit card details.
6.2. Cooling-Off Period & Refunds
- Initial 14-Day Period: New subscriptions benefit from a 14-day cancellation window with full refund eligibility, subject to statutory consumer rights and voluntary terms.
- Grace Period (Monthly): We provide a 3-day (72-hour) courtesy window after automated monthly renewals to request cancellation and refund for that billing cycle.
- Annual Plans: Mid-cycle cancellations for annual plans may receive a pro-rata refund in accordance with active policy and mandatory consumer laws.
6.3. Payment Failures If a charge fails, the billing service will retry. After grace periods expire, the organization may enter read-only mode. Content is never deleted immediately, allowing organizations to export their library.
7. Data Processing Agreement (DPA)
Where Hosanna acts as Data Processor for personal data entered into an Organization, we commit to:
- Processing data solely according to documented instructions from the organization;
- Ensuring confidentiality obligations;
- Implementing technical and organizational security measures;
- Assisting the organization in fulfilling data subject requests;
- Deleting or returning organization data upon service termination where feasible and requested, unless retention is legally required.
8. Security and Data Management
8.1. Security Hosanna implements reasonable technical safeguards including encrypted transport (HTTPS/TLS), secure session tokens, role-based access control (RBAC), and 2FA authentication via TOTP apps and recovery codes. User password hygiene remains critical to overall account protection.
8.2. Security Incidents In the event of a confirmed personal data breach affecting users, Hosanna will comply with applicable data protection legislation, notifying competent authorities and affected users within required statutory timeframes.
8.3. Exports, Backups, and Organization Deletion
- Export: We recommend organizations maintain independent backups. The platform allows exporting data locally, though Hosanna does not store exports as separate cloud recovery files.
- Account Deletion: Deleting a personal account does not delete content in organizations where you were a member.
- Organization Deletion: This destructive action is managed by the Owner, permanently deleting associated folders, songs, services, teams, and invites.
9. Subprocessors
To operate Hosanna, we utilize trusted external providers for cloud hosting, databases, authentication, email delivery, and payments (including Vercel, PostgreSQL providers, Stripe, Resend). Transfers outside the EEA utilize appropriate safeguards (e.g., Standard Contractual Clauses).
10. Open Source and Self-Hosting
10.1. Open Source License Source code for Hosanna’s server, Studio, Mobile App, and packages is released under the Apache License 2.0.
10.2. Cloud Service Distinction (Hosanna Cloud) While code is under Apache 2.0, use of our managed hosted platform (“Hosanna Cloud”) is governed by these Terms of Service.
10.3. Self-Hosting Users hosting Hosanna on their own servers do so at their sole discretion and responsibility. Hosanna is not liable for infrastructure, updates, security, or data compliance on third-party self-hosted environments.
11. Accessibility
Hosanna strives to follow accessibility best practices, incorporating features like font resizing, chord toggling, and screen keep-awake controls for musicians in live settings.
12. Service Availability & Disclaimers
12.1. Service Level Hosanna strives for high reliability. However, the service is provided “as is” and may experience scheduled maintenance or transient interruptions.
12.2. Live Worship Context Live worship requires preparation. While offline features mitigate connection drops, users and organizations are responsible for ensuring devices are charged, updated, and synced ahead of live services.
13. Community Guidelines
We expect collaborative spaces to remain respectful, using notes for legitimate planning and honoring shared workspace resources.
14. Legal Information & Contact
Applicable Law: These Terms are governed by Portuguese law, without prejudice to mandatory local consumer rights.
Service Operator: Tiago Rodrigo dos Reis Inês Operated from Camarate, Portugal.
Contact: For legal inquiries, GDPR, privacy, or copyright issues, reach us at: [hosanna.songbook@gmail.com].