Privacy Policy
Last updated: March 14, 2026
1. Data Controller and Contact
The data controller for Twitter AI Reader is:
- Trading Name: Twitter AI Reader
- Legal Form: Sole Proprietorship
- Location: Shenzhen, China
- Contact Email: formiopa+twitter-support@gmail.com
For privacy requests or general support, contact formiopa+twitter-support@gmail.com.
2. Information We Collect
- Account: Email, user ID, subscription status
- Settings: Followed accounts, groups, preferences (if cloud sync is enabled)
- Usage: Product analytics, service logs, error diagnostics
- Local-only data: API keys and tweet cache in your browser storage
3. BYOK and Local Storage
Twitter AI Reader follows a Bring Your Own Key (BYOK) model. API keys are stored locally in your browser. We do not intentionally collect or store your API keys on our servers.
4. How We Use Data
- Provide account access and core features
- Process subscriptions and billing events via Paddle
- Enable optional cross-device settings sync for Pro users
- Monitor reliability, detect abuse, and improve service quality
- Send service, legal, and security notices
5. Legal Bases for Processing (EEA/UK)
- Contract performance (Art. 6(1)(b)): account authentication, subscription delivery, customer support
- Legitimate interests (Art. 6(1)(f)): fraud prevention, security monitoring, product analytics
- Consent (Art. 6(1)(a)): optional settings sync and optional communications where required
- Legal obligation (Art. 6(1)(c)): tax/accounting records and compliance requirements
6. Third-Party Processors
- Supabase: authentication, database, and storage
- Paddle: merchant of record, payment processing, invoicing
- Vercel: hosting and service delivery infrastructure
7. International Transfers
Data may be processed outside your jurisdiction, including the United States. For cross-border transfers, we rely on appropriate safeguards such as Standard Contractual Clauses (SCCs), along with technical and organizational measures.
You may request information about applicable transfer safeguards at privacy@ai-reader.xyz.
8. Data Retention
- Account data: retained while account is active, then deleted or anonymized within a reasonable period
- Billing and transaction records: retained as required by law and payment regulations
- Local browser cache: controlled by you and auto-expired by product logic
9. Your Rights
You may have rights to access, correct, delete, restrict, object, and data portability, subject to applicable law.
We aim to respond to verified privacy requests within 30 days. We may request additional information to verify identity and protect account security.
10. International Data Transfers
Your data may be transferred to and processed in countries outside your residence (primarily the United States).
Notice to users in mainland China:
- Your account data (email, subscription status) is stored on AWS servers in the United States (Supabase)
- We ensure appropriate safeguards are in place to protect your data
- By using this Service, you consent to the cross-border transfer of data
11. EEA/UK Supervisory Authority
If you are in the EEA/UK and believe your rights were not handled properly, you may lodge a complaint with your local data protection supervisory authority.
12. Children
The Service is not intended for users below the minimum age required by applicable law for digital consent in their jurisdiction.
13. Policy Updates
We may update this Privacy Policy and will provide notice of material changes.
13. Language
This Policy may be provided in multiple languages. In case of conflict, the English version prevails unless applicable law requires otherwise.
Please read this Privacy Policy together with our Terms of Service.