Privacy Policy
Last updated: March 31, 2026
1. Overview
SocialCrank ("we", "us", "our") respects your privacy. This policy explains what data we collect, how we use it, and your rights regarding that data. We are committed to protecting your information and being transparent about our practices.
2. Data We Collect
From your X account (via OAuth):
Your X user ID, username, display name, profile image, follower count, and following count. Your public follower list and following list, including each user's public profile information (name, username, bio, location, follower count, following count, post count, account creation date, and profile image).
From your use of the Service:
Your subscription plan and billing status (managed through Stripe). Session data for authentication purposes. We do not collect your email address, password, or any private X data such as direct messages, private lists, or non-public profile information.
3. How We Use Your Data
We use your data exclusively to:
Provide the core Service — displaying, searching, sorting, filtering, and exporting your follower and following lists. Detect mutual follows between your followers and following lists. Manage your subscription and process payments through Stripe. Improve the Service and fix bugs. We do not sell your data. We do not use your data for advertising. We do not share your data with third parties except as described in this policy.
4. Data Storage
Your follower and following data is stored as encrypted JSON files in Supabase Storage (hosted on AWS). Your account metadata (username, plan, sync history) is stored in a Supabase PostgreSQL database. Payment information is handled entirely by Stripe — we never store your credit card details. All data is transmitted over HTTPS.
5. X API Data Usage
In compliance with X's Developer Agreement and Policy, we disclose the following: We access X data solely through X's authorized APIs. We only access data you have explicitly authorized via OAuth. We store X data to provide our Service and refresh it periodically. We do not use X data to create surveillance tools, derive sensitive personal information, or target individuals. We never post to X on your behalf — we only request read access. If you revoke access via X's settings, we will no longer be able to refresh your data.
6. Third-Party Services
We use the following third-party services:
Supabase — Database and file storage (stores your follower data and account information). Stripe — Payment processing (handles subscriptions and billing). Vercel — Application hosting. X API / TwitterAPI.io — Fetching your follower and following data. Each of these services has their own privacy policies governing their handling of data.
7. Data Retention
We retain your follower data for as long as your account is active. Your data is refreshed when you initiate a sync (available once per month). If you cancel your subscription, your data remains accessible at the free tier level. If you request account deletion, we will delete all your data from our systems within 30 days.
8. Your Rights
You have the right to:
Access your data at any time through the Service dashboard. Export your data via CSV export. Request deletion of your account and all associated data. Revoke X API access at any time through your X account settings (Settings → Security and account access → Apps and sessions → Connected apps).
9. Cookies
We use essential cookies only for authentication (maintaining your login session). We do not use tracking cookies, analytics cookies, or advertising cookies.
10. Children's Privacy
The Service is not intended for users under the age of 13. We do not knowingly collect data from children under 13. If we discover that we have collected data from a child under 13, we will delete it promptly.
11. Changes to This Policy
We may update this privacy policy from time to time. We will notify users of material changes via the Service. Continued use after changes constitutes acceptance.
12. Contact
For questions about this privacy policy or to request data deletion, contact us at hello@socialcrank.xyz.