Legal

Privacy Policy

Effective date: April 14, 2026

Overview

FollowPact ("we", "our", "us") operates followpact.com. This policy explains what data we collect when you use the service, how we use it, and who we share it with. By using FollowPact you agree to the practices described here.

Data we collect

Account information

When you create an account we collect your email address and, if you sign in via Google or X, the name and profile image returned by that provider. We use this solely to identify your account and personalise the dashboard.

Linked X account data

When you connect an X account we store your X user ID, username, display name, profile image URL, and the OAuth access and refresh tokens issued by X. Tokens are stored encrypted at rest and are used only to query follow-relationship status on your behalf.

Pact and follow-relationship data

We record the pact agreements you create, their current status (pending, active, broken), and the results of each automated or manual follow-status check. This forms the audit trail that the product is built around.

Billing data

If you subscribe to a paid plan we store your Stripe customer ID and subscription status. We never see or store your full card number — all payment data is handled directly by Stripe.

Usage and log data

Our infrastructure may log standard request metadata (IP address, browser type, timestamps) for security and debugging purposes. We do not use this data for advertising or sell it to third parties.

How we use your data

  • To authenticate your session and protect your account.
  • To monitor the follow-relationship status of your active pacts on a scheduled basis.
  • To notify you inside the dashboard when a pact changes status.
  • To enforce plan limits and process subscription payments via Stripe.
  • To maintain and improve the reliability of the service.

Third-party services

Supabase

We use Supabase for authentication and database hosting. Your account and pact data are stored in a Supabase-hosted PostgreSQL database. Supabase processes data under their own privacy policy.

Stripe

Subscription payments are processed by Stripe. When you subscribe, Stripe collects and stores your payment information. We only receive a customer reference and subscription status in return.

X (Twitter) API

We call X's API on your behalf using the tokens you grant during X account linking. We query follow-relationship data only for accounts that are part of an active pact you have created.

Google OAuth

If you sign in with Google we receive your email address and public profile from Google. We do not request access to your Google Drive, Gmail, or any other Google service.

Data retention and deletion

We retain your data for as long as your account is active. If you wish to delete your account and all associated data, contact us at hello@followpact.com and we will action your request within 30 days. Note that Stripe retains billing records independently; we have no control over that data.

Your rights

Depending on your location you may have the right to access, correct, or delete the personal data we hold about you, or to object to certain processing. To exercise any of these rights, email us at hello@followpact.com.

Changes to this policy

We may update this policy from time to time. When we do, the effective date at the top of the page will change. Continued use of the service after a change constitutes acceptance of the updated policy.

Contact

Questions about this policy? Email us at hello@followpact.com or visit our support page.