Privacy Policy

Last Updated: 8 January 2025

Version: 1.0

1. Introduction

Welcome to PodSummarize (podsummarize.com, "we", "us", "our"). We are committed to protecting your privacy and ensuring transparency about how we collect, use, and safeguard your personal data.

This Privacy Policy explains how we process your personal information when you use our AI-powered podcast transcription and content generation service. We operate in compliance with:

  • UK General Data Protection Regulation (UK GDPR)
  • Data Protection Act 2018
  • Privacy and Electronic Communications Regulations (PECR)

Data Controller:
PodSummarize
United Kingdom
Email: support@podsummarize.com

By using PodSummarize, you acknowledge that you have read and understood this Privacy Policy.

🔒 Key Privacy Highlights

  • Audio files deleted after 3 days automatically
  • We never sell your data to anyone
  • Full GDPR rights - access, delete, export your data anytime
  • UK-based with EU data hosting (Supabase)
  • No tracking or advertising cookies
  • OpenAI doesn't train on your data (Enterprise API)

2. Information We Collect

2.1 Information You Provide Directly

Account Information:

  • Email address (required for registration)
  • Password (encrypted and stored securely via Supabase Auth)
  • Profile information (if provided)

Content You Upload:

  • Audio files (podcast episodes in MP3, WAV, or M4A format)
  • YouTube video URLs for processing
  • Episode titles and metadata (if provided)

Payment Information:

  • Billing details processed securely through Stripe
  • We do NOT store your full credit card details on our servers
  • Stripe stores payment methods in compliance with PCI DSS standards

2.2 Information Collected Automatically

  • Subscription tier (Free, Creator, or Studio)
  • Minutes of audio processed per billing period
  • Number of episodes processed
  • IP address (for security and fraud prevention)
  • Browser type and device information

3. Third-Party Services and Data Sharing

We work with carefully selected third-party service providers to deliver PodSummarize. Your data is shared with these services only as necessary to provide our service.

🤖 OpenAI (AI Processing)

Services: Whisper API (transcription) and GPT-4o (content generation)

Data Shared: Audio files, transcripts, episode metadata

Location: United States

Retention: 30 days for abuse monitoring, then deleted

✓ Your data is NOT used to train OpenAI models

Privacy Policy: openai.com/policies/privacy-policy

💳 Stripe (Payment Processing)

Services: Payment processing, subscription management

Data Shared: Email, billing information, subscription status

Location: United States (PCI DSS Level 1 certified)

✓ We do NOT store your card details

Privacy Policy: stripe.com/privacy

🗄️ Supabase (Database & Storage)

Services: Database, authentication, file storage

Data Shared: Account data, episodes, transcripts, audio files

Location: EU (AWS London/Ireland)

✓ Your data stays in the EU/UK

Privacy Policy: supabase.com/privacy

📧 Other Services

  • Resend: Email delivery (US-based)
  • YouTube/Google: Video processing (US-based)
  • Vercel: Web hosting (Global CDN)

✓ We will NEVER sell your personal data to anyone.

4. Data Retention and Deletion

⏱️ 3-Day Audio Deletion Policy

Audio files are automatically deleted after 3 days to protect your privacy and minimize data storage. Transcripts and generated content remain accessible until you delete them.

Audio Files:

Automatically deleted after 3 days (or immediately via manual deletion)

Generated Content:

Retained until you delete your episodes or account

Account Data:

Retained until you request account deletion (Settings → Delete Account)

Billing Records:

Retained for 7 years as required by UK tax law (HMRC)

5. Your Data Protection Rights (GDPR)

Under the UK GDPR and Data Protection Act 2018, you have the following rights:

✓ Right to Access

Request a copy of all personal data we hold about you (use "Export Data" feature in Settings)

✓ Right to Erasure ("Right to be Forgotten")

Request deletion of your personal data (use "Delete Account" in Settings)

✓ Right to Data Portability

Receive your data in JSON format (use "Export Data" in Settings)

✓ Right to Rectification

Correct inaccurate or incomplete data (update in Settings or contact support)

✓ Right to Lodge a Complaint

Contact the Information Commissioner's Office (ICO):
ico.org.uk/make-a-complaint
Phone: 0303 123 1113

6. Cookies and Advertising

6.1 What Cookies We Use

Essential Cookies (Required)

  • Authentication tokens (to keep you logged in)
  • Session cookies (to remember your preferences during a session)
  • Security cookies (to protect against fraud and abuse)

Legal Basis: Legitimate interests (UK GDPR Article 6(1)(f)) and performance of a contract

Advertising Cookies (Optional - Requires Consent)

We use Google AdSense to display advertisements on our website. Google AdSense may use cookies and similar technologies to:

  • Show personalized ads based on your interests
  • Measure ad performance and effectiveness
  • Track ad impressions and clicks
  • Prevent fraudulent clicks

Legal Basis: Your consent (UK GDPR Article 6(1)(a))

6.2 Google AdSense

We display advertisements via Google AdSense to help support our service.

Data Shared with Google:

  • Page URL and content (for contextual ad targeting)
  • IP address (for geographic targeting and fraud prevention)
  • Browser and device information
  • Cookies and device identifiers (if you consent to personalized ads)
  • Ad viewing and interaction data (impressions, clicks)

Google's Use of Data:

  • To display relevant advertisements
  • To measure ad performance
  • To improve Google's advertising services
  • To build advertising profiles (if you consent)

Location: United States (Google is based in California)
Privacy Policy: policies.google.com/privacy

6.3 Your Advertising Choices

Opt Out of Personalized Ads:

You can opt out of personalized advertising while still seeing ads (non-personalized):

Change Your Cookie Preferences:

You can change your cookie preferences at any time by clearing your browser cookies and revisiting our site. The cookie consent banner will appear again, allowing you to make a new choice.

6.4 Managing Cookies in Your Browser

You can control cookies through your browser settings. However, disabling essential cookies (authentication) will prevent you from logging in.

Browser Cookie Settings:

  • Chrome: Settings → Privacy and Security → Cookies and other site data
  • Firefox: Settings → Privacy & Security → Cookies and Site Data
  • Safari: Preferences → Privacy → Cookies and website data
  • Edge: Settings → Cookies and site permissions

Note: We do NOT use tracking cookies for analytics, social media pixels, or third-party tracking beyond Google AdSense. We respect your privacy and minimize data collection.

7. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or how we handle your personal data, please contact us:

Email: support@podsummarize.com

Website: podsummarize.com/contact

Postal Address:
PodSummarize
United Kingdom

Response Time: We aim to respond to all enquiries within 5 business days, and within 1 month for Subject Access Requests.

Thank you for trusting PodSummarize with your podcast content. We are committed to protecting your privacy and providing transparency about our data practices.

This Privacy Policy is governed by the laws of England and Wales.
For our Terms and Conditions, please visit: podsummarize.com/terms

Ready to Transform Your Podcast?

Join thousands of podcasters who are already using AI to create professional content.

PodSummarize LogoPodSummarize

AI-powered podcast transcription and content generation

© 2025 PodSummarize. All rights reserved

Advertisement