Privacy Policy
Last updated August 10, 2026
This Privacy Policy explains what Content Drop (“the Service,” operated by DB Creations LLC) collects, why, and who it's shared with. It covers the Service specifically, the AI processing, payments, and content storage, not general web-browsing tracking.
What we collect
Account info: your email address, via Clerk, our authentication provider. We don't see or store passwords, Clerk handles sign-in via a one-time code sent to your email.
Your uploaded content: the audio/video files you upload, and everything generated from them, transcripts, summaries, clips, social posts.
Payment info: handled entirely by Stripe. We receive confirmation that a payment succeeded and a Stripe customer reference, never your full card number.
Usage data: which features you use and when, via PostHog, our product analytics provider, so we can see what's working and what's breaking. This does not include the content of your uploads or transcripts.
Connected social accounts: if you connect a social platform for publishing, we store the access token needed to post on your behalf, and use it only when you explicitly trigger a publish action.
Who we share it with
We don't sell your data. We share it with the specific vendors that make the Service work, each of them processes data under their own privacy policy:
- Google (Gemini API) — your uploaded audio/video and transcript are sent to Google for AI processing (transcription, summarization, content generation).
- Deepgram — your audio is sent for speaker diarization, only when that feature is used on your content.
- Clerk — handles authentication; stores your email and session data.
- Stripe — handles payment processing; stores your payment method and billing history under their own terms.
- PostHog — receives anonymized usage/analytics events, not your uploaded content.
- Social platforms you connect (Instagram, TikTok, LinkedIn, X, YouTube, Facebook) — receive whatever content you explicitly choose to publish through the Service.
- Railway — our hosting provider; stores your uploaded files and generated content on our behalf.
We may also disclose information if required by law, or to protect the rights, property, or safety of the Service, our users, or the public.
How long we keep it
Your uploaded content and generated Library entries are kept as long as your account is active, so you can search and reuse them later. If you delete a Library entry, we remove the underlying files. If you close your account, contact db@digitalalchemy.dev and we'll delete your stored content within a reasonable time, subject to anything we're legally required to retain (e.g. payment records).
Your choices
- Delete individual Library entries at any time from within the app
- Disconnect a social account at any time, revoking its publish access
- Request a copy or deletion of your data by emailing us
- Opt out of analytics is not currently a self-serve setting; email us and we'll handle it manually
Security
We use reasonable technical and organizational measures to protect your data, encrypted connections, access-controlled storage, and server-side-only handling of business logic and credentials. No method of transmission or storage is 100% secure, and we can't guarantee absolute security.
Children
The Service is not directed at children under 13, and we don't knowingly collect data from them. If you believe a child has provided us data, contact us and we'll delete it.
Changes to this Policy
We may update this Policy as the Service changes. Material changes will be reflected by an updated “Last updated” date on this page.
Contact
Questions about this Policy, or a data request: db@digitalalchemy.dev.