TranscriptFetch · Trust Center

Transcriptfetch Trust Center

Trust center

TranscriptFetch maintains a public trust center covering its security and compliance posture.

TranscriptsSpeech-to-TextCaptionsYouTubeTikTokInstagramPodcastsMCPllms-txtOpenAPITranscriptionVideoAI/LLMRAGAgentsDeveloper ToolsMediaContentSpotifyApple Podcasts
Trust center: https://transcriptfetch.com/trust

Certifications & Compliance

Source

Trust Center

Raw ↑
generated: '2026-09-09'
method: searched
probe: true
source: https://transcriptfetch.com/trust
url: https://transcriptfetch.com/trust
note: >-
  The trust page explicitly states TranscriptFetch is NOT SOC 2 or ISO 27001 certified
  and holds no BAA or FedRAMP authorization — the keyword probe's SOC 2 / ISO 27001
  matches were the disclaimer sentence, not claims. What IS published: a CSA STAR
  Registry Level 1 CAIQ v4 self-assessment answering all 261 Cloud Controls Matrix
  questions, an independent third-party status page, public shallow + deep health
  endpoints, a full subprocessor list, and a 12-month versioning/deprecation commitment.
certifications: []
self_assessments:
- name: CSA STAR Level 1 (CAIQ v4 self-assessment)
  registry: https://cloudsecurityalliance.org/star/registry/transcriptfetch
  detail: Answers all 261 Cloud Controls Matrix questions; published on the Cloud Security Alliance STAR Registry (verified HTTP 200 2026-09-09).
disclaimed:
- SOC 2
- ISO 27001
- BAA (HIPAA)
- FedRAMP
privacy:
  gdpr_ccpa: Honours GDPR and CCPA data rights requests (stated on /security).
  data_use: No sale of personal data; transcript requests are not used to train models.
subprocessors:
- {name: Clerk, purpose: Authentication}
- {name: Neon, purpose: Postgres database}
- {name: Stripe, purpose: Payments}
- {name: Cloudflare, purpose: DNS, note: CDN + TLS termination + outbound tunnel (no exposed origin)}
- {name: DeepInfra, purpose: Speech recognition for videos with no captions}
- {name: Resend, purpose: Transactional email}
- {name: Better Stack, purpose: Uptime monitoring}
- {name: Microsoft Clarity, purpose: Product analytics}
evidence:
- source: https://transcriptfetch.com/trust
  detail: "'We are not SOC 2 or ISO 27001 certified. If your procurement needs that, say so...'"
- source: https://transcriptfetch.com/security
  detail: "'TranscriptFetch is not currently SOC 2 or ISO 27001 certified, and we do not have a signed BAA or FedRAMP authorisation.'"
- source: https://cloudsecurityalliance.org/star/registry/transcriptfetch
  status: 200

Work with this as data

Every security artifact here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for security posture

4 MCP tools reach this
  • find_securityBrowse and filter every security artifact in the catalog.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This security artifact
curl "https://apis.io/api/v1/security/transcriptfetch-trust-center"
All security posture
curl "https://apis.io/api/v1/security?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.

A second provider on the same verified email joins the account you already have.