The actual answer is to move everything to an app and kill your API, so you control everything in a locked down environment.
This is a much bigger issue than just podcasts. It's every form of binary encoded data.