Privacy policy This app uses the third-party service twitterapi.io instead of the official X API to keep data retrieval costs down. twitterapi.io is operated by Prism Digital, LLC, based in the United States, and is independent of X. The X username and ID being recorded are sent to twitterapi.io through Kagayoi’s relay server to retrieve public following and follower lists. Your X password and two-factor authentication secrets are not sent. Online use requires Sign in with Apple. No separate ID or password is registered, and we do not request your name or email. We verify Apple’s signature and manage the 5 free fetches, subscriptions and usage history using a salted hash of Apple’s identifier. App Store purchases use an app-generated linking UUID; the Apple sign-in and purchasing Apple Account may differ. Verification challenges expire after 5 minutes and can be used once. We do not store Apple ID tokens. App authentication lasts 15 minutes and renews automatically when needed during use. Sign in again after 30 days without renewal or 180 days from sign-in. Refresh secrets are stored in iPhone Keychain or an HttpOnly cookie on the web; the relay stores only their hashes. The web stores user and grant identifiers and expiry metadata on the device to resume access. Up to 5 X accounts can be linked to one Apple sign-in. Unlinking the selected account invalidates its X sessions on all devices. Subscriptions and consumed allowances remain with the original Apple user; unlinking or relinking does not reset free allowances or waiting times. An X account’s 12-hour wait after a fetch remains when it is linked to another Apple user. Legacy free usage is carried over conservatively; legacy purchases migrate once through an explicit, Apple-verified restore. For online fetching, link through X’s official authorization screen. We obtain your X ID and username to manage your records and fetch allowance. Up to 5 accounts share fetch counts, subscription renewal dates and waiting times. When adding accounts, IDs registered on the device are sent to the relay to check the limit. The relay exchanges the X authorization code and verifies your account. Intermediate authentication information is temporarily encrypted on the relay and expires after 5 minutes at each stage. Used information is deleted immediately; expired information is removed by a task running every 5 minutes. To limit repeated authentication requests, we temporarily retain an identifier made by hashing the source IP with a secret. The raw IP is not stored. The identifier expires after 1 minute and is removed by the task running every 5 minutes. X access tokens are not stored. The relay retains the verified X ID, username and link to the Apple user until unlinking, and checks ownership and the link generation on each use. We do not request your X email address or permission to change posts or follows. After linking, your public display name and profile image URL are retrieved from twitterapi.io. The relay caches them for 24 hours and removes expired entries every 5 minutes. The device retains them with the linked account information and deletes them when you erase relay data and sign out. Images are loaded directly from X’s image servers. Profile lookups also incur API charges for the app operator. Suspension checks are optional. Pressing Check suspension sends the person’s X ID through the relay to twitterapi.io to check their current status. Each person checked uses one check, including unknown results and communication failures. This is separate from list fetching: linked accounts share 10 checks per month, resetting at 00:00 Japan time on the first day of each month. Relay results expire after 1 hour and are removed every 5 minutes. Identifiers for usage limits, usage times and hashes of target IDs are retained. Results reflect the time of checking and do not prove why someone disappeared. ZIP files downloaded from X are read on your device. The archive creation time and the following and follower ID lists are recorded. The ZIP and any DMs, photos or videos inside are not sent. ZIP import requires neither X linking nor a purchase. Fetched lists are stored on your device. Profile image URLs in the lists are also retained by ID. For the selected account, PNG and JPEG icons are downloaded in sequence from X’s image servers and stored in the device’s SQLite database. Each image may be up to 256 KiB and 2048 pixels in either dimension; records and images together may occupy about 1 GB. Successfully saved images can appear in added/disappeared history after the person leaves the list and while offline. Erasing that account’s records deletes its images and URLs. Unavailable or unsupported images, insufficient space and other issues may prevent saving. Check the status under Records and storage in Settings. Previously deleted URLs or images no longer hosted cannot be recovered. Fetching runs on a VPS managed by Kagayoi. User information, purchase records, usage counts and temporary fetch results are stored on Cloudflare. Fetch results are temporarily retained for up to 1 hour after completion and then automatically erased. To manage the 5 free fetches, monthly plan limits and the 12-hour wait after a successful fetch, we continuously retain user identifiers without names or email addresses, usage times, and purchase and subscription information. Erasing records or relay data does not remove the usage history and purchase information retained to prevent reuse of the free allowance. Please consult twitterapi.io’s privacy policy for its data handling. Fetching is manual and incurs API charges for the app operator. Results may be incomplete or delayed, and service may be interrupted. A person disappearing from a list alone does not prove that they unfollowed you. App features, including samples, are unavailable until you consent. To stop using the app, unlink X or delete the app account in Settings. Unlinking the selected X account invalidates that link on all devices and also deletes that account’s records and images stored on this device. Usage counts and purchase information remain. Unlinking all X accounts deletes records and images for linked X accounts on this device, while records created only from ZIP files remain. Deleting the app account deletes all records on this device and your personal data on the server. Manage or cancel the App Store subscription separately. After identity verification, deletion is available before consent and while logged out. The relay exchanges the Apple authorization code obtained during deletion and uses the resulting secret token to revoke Apple authorization. Neither the code nor secret token is stored. We delete your identifiers, links, history, purchase transactions and usage records on the server; records owned by other users are retained. Keys needed to reject authentication issued before deletion are kept for one hour, then erased by cleanup running every five minutes. If the relay is stopped, cleanup runs at the next startup. After verification with Apple, we delete your app account, X links, usage history and purchase associations. All records on this device, including ZIP imports, are erased permanently. Your Apple and X accounts themselves are not deleted. Erase records on other devices separately. Deleting your account does not cancel your Apple subscription. To stop billing, cancel it in Apple subscription management first. You can also delete your account without cancelling. Registering again resets the free allowance. Restoring purchases will not restore the usage count in this app. Identifiers used to reject old authentication are erased by scheduled cleanup after one hour. Deleted relay data may remain in Cloudflare recovery history for up to 30 days. It is not accessed during normal service operation. Support Your email address, name (optional), inquiry category, subject and message, and app and OS versions are sent to Kagayoi’s shared support service, which manages inquiries and replies. Your X account information and saved records are not attached. Support authentication is separate from X linking. It is stored in dedicated protected device storage (in the tab session on the web) and reused only until the API expiry time. Standard costs JPY 980 per month for 10 fetches per subscription period; Plus costs JPY 2,980 per month for 30. Fetch manually at least 12 hours after a successful fetch. Allowances are shared across up to 5 accounts; a successful fetch for one account uses one fetch. The free allowance is 5 fetches in total from first use. Check the monthly price on the store purchase screen. Subscriptions renew automatically through the store and can be cancelled through its subscription management. Accuracy and continued service are not guaranteed. Contact: https://support.kagayoi.com/