CSA STAR Registry
Security, Trust, Assurance, and Risk Registry
Listings for TranscriptFetch
TranscriptFetch is a developer API that turns video and web content into clean, structured text for AI systems. It returns transcripts for YouTube, TikTok, Instagram, X and Facebook videos, plus any web page as Markdown, as timestamped JSON over a single documented REST interface. Where a video carries no caption track, the audio is transcribed automatically.
It is used by developers and AI teams building retrieval pipelines, agents and research tooling. Integrations include official Python and Node SDKs, an n8n community node, and a Model Context Protocol server for AI clients.
Scope of this assessment: TranscriptFetch is a single-product SaaS API delivered over HTTPS and authenticated with per-account bearer tokens. It runs entirely on managed infrastructure: Neon (Postgres), Clerk (authentication), Stripe (payments), Cloudflare (DNS, CDN, TLS), Groq (speech recognition) and Resend (email). The application origin is not directly reachable from the public internet; it is served through an outbound Cloudflare tunnel. TranscriptFetch operates no datacenters, no physical facilities, no customer-managed virtualization and no corporate endpoint estate, so physical, environmental and endpoint controls are inherited from those providers.
Security documentation, including key handling, data retention, the full subprocessor list and the vulnerability disclosure process, is published at https://transcriptfetch.com/security
TranscriptFetch API
The TranscriptFetch API converts video and web content into structured text for AI systems and data pipelines. One REST endpoint accepts a URL from YouTub...
Listed Since: 2026-07-27
