Pass Muster

Privacy

Plain words, kept short. Last changed October 5, 2026.

What Pass Muster does

You give it your handles. It finds who you follow on Substack, Bluesky and YouTube and shows their new work on one page, one card per person. It only reads what is public, or what you choose to share through Google.

What we read

What is stored, and where

Google

If you bring in your YouTube subscriptions, Google gives your browser a read-only key. Your browser uses it once to read the list of channels you subscribe to. The key is not sent to our server and is not kept. Only the list of channels is stored, as described above. Pass Muster's use of information received from Google APIs follows the Google API Services User Data Policy, including the Limited Use requirements. You can remove the access any time at myaccount.google.com/permissions.

What we never do

Who runs the machinery

The page is served by Cloudflare. Accounts, the shared cache and the fetcher run on Supabase. Both keep the standard technical logs any web service keeps (such as IP addresses of requests) for a short time.

Deleting

Signed in, open Settings (the gear) and press "Delete my account". That removes your account and everything synced to it. To clear what is in a browser, clear that site's data in the browser's settings.