Privacy
Short-lived files, minimal product data.
Audio-to-MIDI.io is designed as an anonymous tool. We do not require an account, but the conversion itself is not browser-only.
What is processed
Your selected audio is uploaded to private Cloudflare R2 storage and made available to Replicate Basic Pitch through a temporary signed link. Replicate processes the file to produce MIDI. Do not upload audio you do not own or have permission to process.
How long files remain
The server-side source audio is deleted when the provider succeeds, fails, cancels, or times out. A storage lifecycle rule removes abandoned source objects within 24 hours. MIDI results and conversion records expire within 24 hours. If you select “Delete My Files,” deletion is requested immediately.
Browser-local playback and editing
To offer a complete source preview after the server copy is deleted, your browser stores a local copy in IndexedDB. It is marked to expire after 24 hours. If you choose “Edit MIDI,” the generated MIDI is also copied into IndexedDB so the browser editor can import it without putting a private result token in the editor URL. Browser cleanup runs when you next use the converter. You can remove these local copies immediately with “Delete My Files” or your browser’s site-data controls.
Anonymous limits and security
We set a signed anonymous visitor cookie and derive a daily rotating hash from the request IP address. We do not store the raw IP for rate limiting. Cloudflare Turnstile helps reduce automated abuse.
Analytics
We use aggregate page-view and performance measurements together with structured runtime logs. Technical events may include conversion stage, route, timing, error type, byte size, duration, and format. Product analytics must not include filenames, audio content, or private object URLs.
Effective: September 10, 2026