Crumplet uses a small number of third-party services to run the product. The table below lists each one, what it's used for, and what category of your data it touches.
This page is a factual disclosure, not a privacy policy. It doesn't state a lawful basis for processing, a retention period, or your rights as a data subject — that fuller explanation will be part of the full privacy policy, published after professional legal review, before any public launch (see the Privacy Policy page). This isn't legal advice, and a couple of details below (marked "not yet confirmed") are still being verified — don't rely on this page alone for compliance purposes.
| Provider | Used for | Data it touches |
|---|---|---|
| Clerk US | Authentication and account identity (sign-up, sign-in, session management) | Account email, auth identifiers (Clerk user ID, display name, OAuth linkage) |
| Neon Not yet confirmed | Primary application database — stores nearly all app data | Account email, auth identifiers, timezone, pools/schedules/streams/filter-rule configuration, playback position, payment identifiers, payment event records, API key hashes |
| PostHog US or EU cloud — not yet confirmed which | Product analytics (usage events, page views) | Product analytics events — client-side interactions and server-side events such as stream feed generation |
| Paddle UK / global | Payment processing; Paddle is the Merchant of Record for all purchases | Payment identifiers (customer/subscription IDs), payment event records. Card details are entered directly into Paddle’s checkout and never reach Crumplet’s servers |
| Cloudflare Global | Object storage (R2) for user-uploaded audio, and edge hosting for the web app (Workers) | User-uploaded audio files |
| Better Stack (Logtail) Not yet confirmed | Server log drain for the API | Server logs — request IDs and internal user IDs; no other personal data is logged |
| Google Cloud Not yet confirmed | Crawler runtime (Cloud Run Job) and its logging | Server logs from crawler runs |
Podcast Index and iTunes/Apple power podcast search and discovery, but they don't process your personal data — they receive search terms, not your identity, and Crumplet caches their responses.
Clerk, Cloudflare, and Google Cloud are US-headquartered, and PostHog may be depending on which cloud instance is in use, so data handled by these providers may transfer to or be accessible from the US. Crumplet relies on each provider's own data processing agreement and standard contractual clauses to cover these transfers, rather than negotiating bespoke agreements.
Back to homepage