If they didn't tell this person not to share the info, then the problem rests with whoever divulged this information in the first place. Once it's out, it's out.
It is common knowledge[0] that Spotify peruses and pilfers songs from users with similar listener profiles and trades them around under "Discover Weekly". There aren't any closely guarded IP secrets in the GP comment here.