Legal information

Privacy policy for MH Podcasts

The German version is the legally authoritative version.

Last updated:

1. Controller

Marc Herkner
Am Bergwald 57
70329 Stuttgart
Germany

Email: [email protected]
Website: https://herkner.org/
App: MH Podcasts
Application ID: org.herkner.mhpodcasts

2. Core principle

Most data is processed locally on your device. Marc Herkner does not operate an MH Podcasts account or a central server storing subscriptions, listening history or downloads. Data leaves the device only when a feature requires network access or a transfer chosen by you, or when the Google Cast SDK included in the Google Play variant processes technical, anonymised usage data.

3. Data processed locally

The app may locally process subscriptions and feed URLs; feed, episode, chapter, transcript and show-note metadata; images and media URLs; downloaded media; playback state, queue, favourites, tags, filters, statistics and settings; credentials for protected feeds, proxies or optional synchronisation; exports, backups and local diagnostic information. This data is not automatically sent to Marc Herkner.

4. No automatic Android cloud backup or device transfer

Automatic Android/Google cloud backup and automatic Android device transfer are disabled through explicit exclusion rules. Manual exports and manual or scheduled local backups remain available; you choose their destination and any external storage provider.

5. Podcast feeds, media and images

When feeds or media are added, refreshed, streamed or downloaded, the app connects to the relevant podcast host, CDN or referenced server. The provider may receive the IP address, technical connection data, user agent, feed or media URL and time. Credentials for protected feeds are sent to the selected host. Some user-selected servers may use unencrypted HTTP.

6. Podcast search

User-initiated online search and feed resolution can use Apple Podcasts, fyyd and Podcast Index. Search terms, podcast or feed URLs and technical connection data may be sent to the selected provider only when this feature is used.

7. Optional synchronisation

Optional gpodder.net and Nextcloud/Gpodder Sync features are active only when configured by you. The selected provider may receive authentication data, server address, device ID and name, subscribed feed URLs, subscription changes, episode actions, playback positions and timestamps. MH Podcasts does not create its own sync account; the selected provider’s retention and deletion rules apply.

8. Google Cast and Google Play Services

The Google Play variant includes Google Play Services and the Google Cast Android Sender SDK. When Cast is used, technical session, device and playback information is processed between the app, the local Cast device and Google components. Google states that the SDK automatically collects anonymised discovery, session, mobile-device, SDK and app metadata, sends it encrypted to Google, retains it briefly and aggregates it to improve Cast. Google states that these logs contain no identifiers traceable to a specific user and that neither developers nor users can opt out or delete this SDK data.

Google Cast SDK Data Safety documentation

9. Android Auto and system media controls

MediaSession and MediaBrowser features support Android Auto, vehicle head units and system media controls. Titles, podcast name, artwork, queue, playback status and control commands may be visible on the connected system when you use these integrations.

10. External links and show notes

Show notes may contain images and links from third parties. Loading or opening them may provide the third party with your IP address, the URL, time and browser or connection information. Those operators are responsible for their own content and privacy practices.

11. Feedback, bug reports and diagnostics

After an explicit user action, the app can prepare an email to [email protected]. It is sent only by you through your chosen mail app. It may include app and Android versions, package name and Git revision, device model and manufacturer, your description and optional Logcat or crash details. Logs can unintentionally contain episode titles, podcast URLs, server names, error messages or sync references; you can review and remove content before sending.

Support emails and diagnostic attachments are generally deleted no later than 90 days after the request is closed, unless longer retention is required by law or for legal claims.

12. Import, export and manual backups

OPML, HTML, favourites and database exports, and manual or scheduled local database backups, may contain subscriptions, feed URLs, episode data, playback state, queue and settings. They are not sent to Marc Herkner. If you select a cloud, document or mail provider, that provider’s privacy rules also apply.

13. Advertising, tracking and automatic crash reporting

MH Podcasts contains no advertising, AdMob, Firebase Analytics or Crashlytics, and does not automatically send crash or diagnostic information to Marc Herkner. This is separate from the anonymised Cast SDK collection described above.

14. Purposes and legal bases

Where Marc Herkner receives personal data, particularly for support or privacy requests, it is processed to handle the request and provide support. Depending on context, the legal bases are Article 6(1)(b) GDPR and the legitimate interest in safe, reliable support under Article 6(1)(f) GDPR. Providers chosen by you may act as independent controllers.

15. Security

Local data is held in Android app storage, app databases or folders selected by you. Credentials are stored in private app storage. Android sandboxing, HTTPS where supported and system document-sharing mechanisms protect processing. Because feeds, media, proxies and custom servers may use HTTP, universal transport encryption cannot be guaranteed.

16. Deletion and data requests

Local data can be removed in the app, by deleting exports, resetting app data or uninstalling. External podcast, sync, Cast, storage or mail providers have their own deletion routes. Requests concerning data held by Marc Herkner can be sent to [email protected]; identity verification may be required.

17. Data subject rights

Subject to statutory conditions, you may have rights of access, rectification, erasure, restriction, portability and objection, and may complain to a supervisory authority such as the State Commissioner for Data Protection and Freedom of Information Baden-Württemberg. Marc Herkner does not perform automated decision-making or profiling.

18. Children and target audience

MH Podcasts is not specifically directed at children. The intended target group for the first Google Play release is people aged 18 and over. Independent podcast providers supply content that may cover different topics and age ratings.

19. Open source and origin

MH Podcasts is an unofficial modified version of AntennaPod under GPL-3.0 and is not the official AntennaPod project. Licence and corresponding source information are available in the app and with the source release for each version.

20. Updates

This policy is updated when functions, data flows, SDKs or legal requirements change. The published page states its current date.

Questions about this information?

Contact me directly by email.

Contact