Privacy policy
Last updated 9 October 2026
This policy explains what podnoms collects when you use the site, why, and what you can do about it. If anything here is unclear, email [email protected].
What we collect
- Your account: your email address and, if you give them, your name and profile picture. If you sign up with a password it is stored hashed, never in plain text. If you sign in with GitHub, Google or Facebook, we receive your name, email address and profile picture from that service.
- Two-factor authentication: if you turn it on, your authenticator secret (encrypted), the public keys of your security keys and hashed recovery codes.
- Your content: the podcasts and episodes you create, the links you submit, the files you upload and the audio and images we make from them.
- Listening activity: plays, downloads and shares of episodes, with the listener's country, region and city, app and referring site. Listeners are told apart by a hash of their IP address and browser, salted with a random value that changes daily and is then deleted. We don't keep IP addresses.
- Technical data: server logs and error reports, used to keep the site running and fix problems, and privacy-friendly, cookie-free visitor statistics.
How we use it
We use your data only to run podnoms: to sign you in, build and serve your podcasts and feeds, show you statistics about your listeners, keep the service secure and fix problems. We don't sell your data or use it for advertising.
Cookies
We use only the cookies needed for the site to work: one that keeps you signed in, and short-lived ones that protect sign-in from forgery. Your browser may also store preferences such as your theme and player volume.
Who else sees your data
- Anyone with the link can see public podcasts, their episodes and their RSS feeds.
- The sign-in provider you choose (GitHub, Google or Facebook) knows that you signed in to podnoms.
- Services that help us run the site, such as our hosting and network providers, process data on our behalf.
- We will disclose data if the law requires it.
How long we keep it
We keep your account and content until you delete them or ask us to delete your account. Uploads that are never turned into episodes are removed after a day. Logs and error reports are kept only as long as they're useful for running the service.
Deleting your data
You can delete your podcasts and episodes at any time from the site. To delete your account and everything in it, including data received from a sign-in provider such as Facebook, email [email protected] from the address on your account. We'll delete it within 30 days and confirm when it's done.
You can also ask us for a copy of your data or to correct it. Depending on where you live, you may have other rights under laws such as the GDPR, including the right to complain to your data protection authority.
Children
podnoms is not meant for children under 13, and we don't knowingly collect their data.
Changes
We may update this policy. When we make significant changes we'll update the date above and, where appropriate, let you know.
podnoms