Privacy Policy
Last updated: April 2, 2026
PodToSite, operated by Silverback Software, LLC ("we," "us," or "our"), is a SaaS platform that helps podcasters build AI-optimized websites from their YouTube content. This Privacy Policy explains what information we collect, how we use it, and your rights regarding your data. This policy applies to podtosite.com and any tenant sites we host (e.g., yourshow.podtosite.com).
Information We Collect
Account Information
When you create an account, we collect your email address, name, and authentication credentials. Passwords are stored hashed via Amazon Cognito; we never see them in plain text.
YouTube Channel Data
When you connect your YouTube channel via Google OAuth, we receive access to your channel metadata, video titles, descriptions, captions, and thumbnails — only for the channels you explicitly authorize. We store OAuth tokens encrypted at rest. We do not post, modify, or delete content on your YouTube channel; access is limited to what is required to build your site and refresh periodically for new episodes.
Usage & Analytics Data
We collect standard web analytics through Google Analytics 4 on podtosite.com and on tenant sites: pages viewed, referrer, browser type, device type, approximate geographic region, and timestamps. We also log AI crawler activity (ChatGPT, ClaudeBot, Perplexity, etc.) hitting tenant sites to provide AI visibility analytics.
Billing Information
For paid plans, payment information is collected and processed by Stripe. We do not store credit card details on our servers — only a customer reference and subscription status.
How We Use Your Information
- To build, update, and host your podcast website
- To sync new episodes from your YouTube channel
- To process transcripts and generate topic/episode summaries via AI models (AWS Bedrock)
- To provide analytics about your site traffic and AI crawler visibility
- To authenticate you, enforce permissions, and protect your account
- To send service-related email (account notifications, invite emails, billing receipts)
- To comply with legal obligations and enforce our Terms of Service
We do not sell your data. We do not use your podcast content, transcripts, or analytics data to train AI models for third parties.
Third-Party Services
We rely on the following third-party providers to deliver our service. Each has its own privacy practices:
- Amazon Web Services (AWS) — hosting, storage, compute, and encryption
- AWS Bedrock (Anthropic Claude, Amazon Titan) — AI transcript cleanup and analysis; data is not used for model training
- Google (YouTube Data API, OAuth) — access to your YouTube channel content
- Google Analytics 4 — website analytics
- Stripe — payment processing (paid plans)
- Amazon SES — transactional email delivery
Cookies & Tracking
We use essential cookies for authentication and session management. Google Analytics uses first-party cookies to measure site usage. You can disable cookies in your browser, but some features (e.g., signing in) will not work without them.
Tenant sites follow the allow-list in their robots.txt — AI crawlers (GPTBot, ClaudeBot, PerplexityBot, meta-externalagent, etc.) are welcomed by default to support the LLM-optimized content strategy. Tenants can opt out through their producer dashboard.
Data Retention
We retain your account and site data as long as your account is active. If you cancel, we keep your data for 30 days to support reactivation, after which it is permanently deleted. You may request earlier deletion by contacting us.
Your Rights
Depending on your location (GDPR, CCPA, and similar laws), you have the right to:
- Access the personal data we hold about you
- Correct inaccurate data
- Request deletion of your data
- Export your data in a portable format
- Withdraw consent and disconnect third-party integrations
- Object to or restrict processing
- Lodge a complaint with a data protection authority
To exercise these rights, email privacy@podtosite.com. We will respond within 30 days.
Data Security
We use industry-standard encryption (TLS in transit, AES-256 at rest via AWS KMS). OAuth tokens are encrypted before storage. Access to production systems is restricted and audited. No system is perfectly secure; if we become aware of a breach affecting your data, we will notify you as required by law.
Children's Privacy
PodToSite is not directed to children under 13. We do not knowingly collect data from children under 13. If you believe a child has provided us with information, contact us and we will delete it.
Changes to This Policy
We may update this policy from time to time. Material changes will be announced via email or an in-app notice. The "Last updated" date at the top of this page reflects the most recent revision.
Contact Us
Questions about this policy or your data:
Email: privacy@podtosite.com
General: hello@podtosite.com