PLAIN-LANGUAGE PRIVACY
Privacy Policy
Effective October 8, 2026
Follow Garden helps you manage your X following. This policy describes the extension and this static product website.
Snapshots stay in your browser. Requests go directly to X, its avatar CDN or the optional TwitterAPI.io provider. We operate no data collection server.
What the extension handles
After you select a read mode and refresh data, the extension handles your current account ID and display name, following and follower profiles, follower IDs, relationship fields, avatar URLs and the time and completeness of the snapshot. It also stores protection notes, your review list, task results and your language preference locally.
Authentication and network requests
On the connected X tab, the extension observes the request headers necessary to authenticate its X requests, including authorization, CSRF and operation-specific request identifiers. These remain in background memory, expire after ten minutes, and are not logged, exported or saved to persistent storage. It uses your browser's existing X cookies without reading their values. It never asks you to paste a X password or X token.
When you load data or confirm an unfollow action, requests go directly to x.com or api.x.com. Avatars load through HTTPS pbs.twimg.com without a page referrer. The developer receives none of these account records.
Optional API provider
Optional TwitterAPI.io mode sends your own API key, target username or ID and pagination parameters directly to that provider when you request a read. It never sends X cookies or login credentials. Reads are billed by the provider. The key lasts for this browser session by default; Remember stores it unencrypted on this device. You can remove the key or clear all data. The key is excluded from page data and exports.
Storage and retention
Snapshots, account-specific protection notes, review lists, task history and language preferences are saved in Chrome local storage. Only the current account's profile snapshot is retained; previous account organization and task records remain until cleared. The connected tab number is kept in browser-session storage. No Chrome sync or cloud backup is used. Optional provider keys use session storage by default, or local storage when you choose Remember. Keys are excluded from snapshots and exports.
Your choices
You can export a CSV, protect accounts, pause or cancel pending work, and clear local account data in Settings. Clearing data disconnects the temporary session and loads fictional demo data; the language preference remains. It does not delete files you already exported or undo unfollows completed on X. Each new unfollow task requires your confirmation. Uncertain results are not automatically replayed. Clearing all data also removes provider keys from session and local storage; you can remove just the key separately.
Sharing and other data
No data is sold or used for advertising or creditworthiness. There is no analytics, ad network or developer proxy. The extension does not process direct messages, passwords or address books, and does not collect general browsing history. Only necessary requests from the connected X tab are observed. X and TwitterAPI.io apply their own policies.
This website
This static site uses local storage to remember your language. It has no analytics or forms. Its hosting provider may process ordinary access logs under its own privacy policy; no additional tracking is added by Follow Garden.
Updates
Changes will be reflected here with an updated effective date. Use GitHub Issues for general support without including credentials or private records. Report vulnerabilities through the repository’s private security reporting channel.
Follow Garden is independent and is not affiliated with X Corp.