Privacy Policy
Podcast Growth Partner
Last Updated: March 2026
1. Introduction
Welcome to Podcast Growth Partner ("we," "us," or "our"). This Privacy Policy explains how we collect, use, store, and protect your information when you use the Podcast Growth Partner platform (the "Service").
By using our Service, you agree to the collection and use of information in accordance with this policy.
2. Information We Collect
2.1 Information You Provide Directly
Account Information:
- Email address
- Password (hashed, never stored in plaintext)
Profile Information:
- Podcast name (optional)
- Podcast URL (optional)
Podcast Brands and Guest Profiles:
- Tone, audience, niche, angle, and mission
- Positioning and persona
- Formality and energy levels
- Signature phrases and forbidden words
- CTA defaults
- Intro and outro styles and signature interview questions
- Connect links (social/web URLs) and podcast platform links
- Guest profile bios, links, goals, and email signatures
Podcast Content:
- Transcript text (uploaded or pasted for analysis)
- Text files uploaded via our file upload system
Podcast Prep Inputs:
- Guest name and background
- Topic and goals
- Areas to cover
- Standard questions
Mock Interview Sessions:
- Conversation history
- Session mode (practice, coaching, etc.)
- Coaching feedback
Payment Information:
- Processed entirely by Stripe, our payment processor
- We store only: subscription IDs, customer IDs, subscription status, billing period
- We DO NOT store: credit card numbers, CVV codes, expiration dates, or bank account details
Communications:
- Support messages and feedback you send us
2.2 Information Collected Automatically
Usage Data:
- IP address
- Browser type and version
- Device type
- Pages visited and features used
- Timestamps of access
- Error logs
Cookies:
- Session cookies (authentication state)
- We do not use third-party advertising or tracking cookies
3. How We Use Your Information
We use collected information to:
- Provide the Service: Analyze podcast transcripts, generate SEO-optimized metadata, prepare podcast guest research, and run mock interview practice sessions
- Manage Your Account: Authentication, profile management, subscription status
- Process Payments: Manage subscription billing and payment status via Stripe
- Improve the Service: Understand usage patterns and fix bugs
- Communicate: Respond to support requests and send service-related notifications
- Enforce Limits: Track usage against subscription limits (credits, monthly resets)
- Security: Detect and prevent unauthorized access or abuse
We do NOT use your information to:
- Train AI models (your transcripts are processed in real-time and not retained for training)
- Sell to third parties
- Send unsolicited marketing emails (unless you opt in)
4. AI Data Processing
4.1 How Your Content Is Processed
Transcript Analysis:
- Your transcript (up to 150,000 characters) is sent to Amazon Bedrock (Claude AI) for analysis
- Your selected podcast brand or guest profile (if configured) is included as context (up to approximately 40KB)
- Claude generates SEO-optimized metadata (titles, descriptions, tags, etc.) with a max_tokens limit of 32,000
- The analysis results are stored in your account
- The first 10,000 characters of the original transcript are stored for reference
- Full transcripts submitted via the text input are not persisted beyond the analysis request
Podcast Prep:
- Guest information (name, background, topic, goals, areas to cover) is sent to Amazon Bedrock
- Your selected podcast brand or guest profile is included as context for personalized output
- Claude generates tailored research and talking points with a max_tokens limit of 16,000
- Results are stored in your account
Mock Interview:
- Your conversation history and session context are sent to Amazon Bedrock
- Claude provides interactive AI conversation simulating a podcast interview
- Coaching feedback is generated based on your responses
- Session data is stored with TTL-based expiration
4.2 What the AI Receives
- Transcript text (up to 150,000 characters)
- Podcast brand or guest profile data (tone, audience, niche, mission, signature phrases, forbidden words, bio, links, etc.)
- Podcast prep inputs (guest background, topic, goals)
- Mock interview conversation context
- Podcast name and episode number (if provided)
- A system prompt defining the analysis, prep, or interview task
4.3 What the AI Does NOT Receive
- Your email address or account information
- Your payment information
- Your analysis history
- Other users' data
4.4 AI Provider
- Provider: Anthropic (Claude) via Amazon Bedrock
- Data Handling: Processed in AWS us-east-1 region; not used for model training
- Anthropic's Privacy: https://www.anthropic.com/privacy
5. Third-Party Services
We share information with the following third-party services as necessary to provide the Service:
| Service | Provider | Data Shared | Purpose |
|---|
| AWS | Amazon Web Services | Account data, transcripts, usage logs | Infrastructure, storage, authentication, AI processing |
| Cognito | AWS | Email, password (hashed) | User authentication |
| Bedrock | AWS (Anthropic Claude) | Transcript text, brand voice data, podcast prep inputs, mock interview context | AI-powered analysis, prep, and interview |
| Stripe | Stripe, Inc. | Email, subscription tier, payment events | Payment processing |
We do NOT sell, rent, or trade your personal information to third parties for marketing purposes.
6. Data Retention
| Data Type | Retention Period | Notes |
|---|
| Account data (email, profile) | While account is active | Deleted within 30 days of account deletion |
| Podcast brands and guest profiles | While account is active | Deleted with account |
| Analysis results | 180 days | Auto-deleted after retention period |
| Podcast prep results | 180 days | Auto-deleted after retention period |
| Mock interview sessions | TTL-based expiration | Auto-deleted per session TTL |
| Original transcript (first 10K chars) | 180 days | Stored with each analysis |
| Uploaded transcript files (S3) | 30 days | Auto-deleted via S3 lifecycle policy |
| Credits and usage tracking | Monthly reset | Usage counters reset each billing cycle |
| API and Lambda logs | 14 days | CloudWatch log retention |
| Payment metadata | While account is active | Subscription IDs, status, billing period |
7. Data Security
We implement the following security measures:
- Encryption in Transit: All data transmitted via TLS/HTTPS
- Encryption at Rest: DynamoDB tables encrypted with AWS-managed keys; S3 buckets use AES-256
- Authentication: AWS Cognito with JWT tokens, complex password requirements
- Access Control: Row-level data isolation (users only access their own data)
- Infrastructure: Private S3 buckets, API Gateway throttling, IAM least-privilege policies
- Presigned URLs: File uploads use time-limited URLs (5-minute expiration)
- No Shared Secrets: All credentials stored in AWS Secrets Manager
8. Your Privacy Rights
8.1 All Users
You have the right to:
- Access: Request a copy of your personal data
- Correction: Update inaccurate personal information via your profile
- Deletion: Delete your account and associated data
- Data Portability: Request your data in a machine-readable format
- Opt Out: Unsubscribe from non-essential communications
To exercise these rights, contact us at the email address listed in the Contact section below.
8.2 California Residents (CCPA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act:
- Right to know what personal information is collected
- Right to know whether personal information is sold or disclosed
- Right to say no to the sale of personal information (we do not sell your data)
- Right to equal service and price (non-discrimination)
8.3 European Economic Area (GDPR)
If you are in the EEA, you have additional rights under the General Data Protection Regulation:
- Right to access, rectification, and erasure
- Right to restrict processing
- Right to data portability
- Right to object to processing
- Right to withdraw consent
Legal Basis for Processing: Contractual necessity (providing the Service you subscribed to) and legitimate interest (improving the Service).
9. Cookies
We use minimal cookies:
| Cookie | Type | Purpose | Duration |
|---|
| Session token | Essential | Authentication state | 1 hour (access), 30 days (refresh) |
We do not use analytics cookies, advertising cookies, or third-party tracking cookies.
10. Children's Privacy
Our Service is not directed to children under 18. We do not knowingly collect personal information from children. If you believe a child has provided us with personal information, contact us and we will delete it.
11. International Data Transfers
Your data is processed and stored in the United States (AWS us-east-1 region). By using the Service, you consent to the transfer and processing of your data in the United States.
12. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by:
- Posting the updated policy on our website
- Updating the "Last Updated" date
- Sending email notification for significant changes
Continued use of the Service after changes constitutes acceptance of the updated policy.
13. Contact Us
For privacy questions or to exercise your rights:
Achieving Success LLC
Email: olivia.atkin@achieving-success.com