Privacy Policy
Last Updated: 8 January 2025
Version: 1.0
Table of Contents
1. Introduction
Welcome to PodSummarize (podsummarize.com, "we", "us", "our"). We are committed to protecting your privacy and ensuring transparency about how we collect, use, and safeguard your personal data.
This Privacy Policy explains how we process your personal information when you use our AI-powered podcast transcription and content generation service. We operate in compliance with:
- UK General Data Protection Regulation (UK GDPR)
- Data Protection Act 2018
- Privacy and Electronic Communications Regulations (PECR)
Data Controller:
PodSummarize
United Kingdom
Email: support@podsummarize.com
By using PodSummarize, you acknowledge that you have read and understood this Privacy Policy.
🔒 Key Privacy Highlights
- ✅ Audio files deleted after 3 days automatically
- ✅ We never sell your data to anyone
- ✅ Full GDPR rights - access, delete, export your data anytime
- ✅ UK-based with EU data hosting (Supabase)
- ✅ No tracking or advertising cookies
- ✅ OpenAI doesn't train on your data (Enterprise API)
2. Information We Collect
2.1 Information You Provide Directly
Account Information:
- Email address (required for registration)
- Password (encrypted and stored securely via Supabase Auth)
- Profile information (if provided)
Content You Upload:
- Audio files (podcast episodes in MP3, WAV, or M4A format)
- YouTube video URLs for processing
- Episode titles and metadata (if provided)
Payment Information:
- Billing details processed securely through Stripe
- We do NOT store your full credit card details on our servers
- Stripe stores payment methods in compliance with PCI DSS standards
2.2 Information Collected Automatically
- Subscription tier (Free, Creator, or Studio)
- Minutes of audio processed per billing period
- Number of episodes processed
- IP address (for security and fraud prevention)
- Browser type and device information
3. Third-Party Services and Data Sharing
We work with carefully selected third-party service providers to deliver PodSummarize. Your data is shared with these services only as necessary to provide our service.
🤖 OpenAI (AI Processing)
Services: Whisper API (transcription) and GPT-4o (content generation)
Data Shared: Audio files, transcripts, episode metadata
Location: United States
Retention: 30 days for abuse monitoring, then deleted
✓ Your data is NOT used to train OpenAI models
Privacy Policy: openai.com/policies/privacy-policy
💳 Stripe (Payment Processing)
Services: Payment processing, subscription management
Data Shared: Email, billing information, subscription status
Location: United States (PCI DSS Level 1 certified)
✓ We do NOT store your card details
Privacy Policy: stripe.com/privacy
🗄️ Supabase (Database & Storage)
Services: Database, authentication, file storage
Data Shared: Account data, episodes, transcripts, audio files
Location: EU (AWS London/Ireland)
✓ Your data stays in the EU/UK
Privacy Policy: supabase.com/privacy
📧 Other Services
- Resend: Email delivery (US-based)
- YouTube/Google: Video processing (US-based)
- Vercel: Web hosting (Global CDN)
✓ We will NEVER sell your personal data to anyone.
4. Data Retention and Deletion
⏱️ 3-Day Audio Deletion Policy
Audio files are automatically deleted after 3 days to protect your privacy and minimize data storage. Transcripts and generated content remain accessible until you delete them.
Audio Files:
Automatically deleted after 3 days (or immediately via manual deletion)
Generated Content:
Retained until you delete your episodes or account
Account Data:
Retained until you request account deletion (Settings → Delete Account)
Billing Records:
Retained for 7 years as required by UK tax law (HMRC)
5. Your Data Protection Rights (GDPR)
Under the UK GDPR and Data Protection Act 2018, you have the following rights:
✓ Right to Access
Request a copy of all personal data we hold about you (use "Export Data" feature in Settings)
✓ Right to Erasure ("Right to be Forgotten")
Request deletion of your personal data (use "Delete Account" in Settings)
✓ Right to Data Portability
Receive your data in JSON format (use "Export Data" in Settings)
✓ Right to Rectification
Correct inaccurate or incomplete data (update in Settings or contact support)
✓ Right to Lodge a Complaint
Contact the Information Commissioner's Office (ICO):
ico.org.uk/make-a-complaint
Phone: 0303 123 1113
7. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or how we handle your personal data, please contact us:
Email: support@podsummarize.com
Website: podsummarize.com/contact
Postal Address:
PodSummarize
United Kingdom
Response Time: We aim to respond to all enquiries within 5 business days, and within 1 month for Subject Access Requests.
Thank you for trusting PodSummarize with your podcast content. We are committed to protecting your privacy and providing transparency about our data practices.
This Privacy Policy is governed by the laws of England and Wales.
For our Terms and Conditions, please visit: podsummarize.com/terms