Privacy Policy
Updated on: May 20, 2026
Introduction:
This Privacy Policy describes how Nonfollowers collects, uses, and shares your information when you visit www.nonfollowers.com or its subdomains, including app.nonfollowers.com where our signed-in web application is hosted (collectively, the "Site"), or use the Nonfollowers mobile app (the "App").
Mobile App vs. Website:
Our products work in two different ways depending on how you use them:
Mobile App: Nonfollowers' core functionality (analyzing your exported Instagram data) runs entirely on your device. Your raw export information is not uploaded to or stored on our servers, and the Mobile App does not require an account.
Website (account required): The analysis functionality on the Site is provided through our signed-in web application at app.nonfollowers.com and requires you to create an account and sign in. The Instagram data you upload while signed in (the raw export information and the analyzed results derived from them) is stored on our servers and associated with your account so that you can access it across browsers and devices. You can still browse public pages on www.nonfollowers.com (such as the homepage, blog, and these policies) without an account, but you will need to sign in at app.nonfollowers.com to upload and analyze your exported Instagram data.
Information We Collect:
Usage Information: We may collect information about how you interact with the App and the Site, including but not limited to your browser type and version, operating system and version, referring URLs, access times, IP address, device model, app version, and metadata of files you upload within the App or the Site. This information is used to improve the App and the Site and to troubleshoot any issues.
Account Information (Site only): When you create a Site account, we collect the email address you use to sign in. If you sign in with Google, we also receive your name, profile picture, and a unique Google account identifier from Google; we do not receive your Google password. If you sign in with an emailed sign-in link (sometimes called a "magic link"), we use the email address you provide to send the link and to identify your account. We use this information to create and secure your account, recognize you across sessions, and contact you about your account when necessary.
Uploaded Instagram Data (signed-in Site users only): When you upload your Instagram data export while signed in on the Site, the raw export files and the analyzed results derived from them are stored on our servers and linked to your account. This data is treated as personal information and is used only to provide the service to you.
In-App Purchase Data Sharing: By using the App and making in-app purchases, you consent to our sharing of data regarding your usage and consumption of purchased content with Apple and Google, as part of our efforts to resolve refund requests. This information may include details about how you have accessed and interacted with the purchased content. The purpose of sharing this data is to help Apple and Google make an informed decision regarding refund requests. We ensure that such data sharing is done in compliance with Apple and Google's policies and only as necessary to process your requests.
Authentication and Sign-In:
The Site offers two ways to create and access your account: Google Sign-In and emailed sign-in links (sometimes called "magic links").
When you sign in with Google, you authenticate directly with Google and we request only basic profile information (your name, email address, profile picture, and Google account identifier). We do not request, receive, or store access to your Gmail, Drive, Contacts, Calendar, or any other Google service. Your use of Google Sign-In is also subject to Google's own privacy policy and terms.
When you sign in by emailed link, you provide an email address and we send a one-time sign-in link to that address. We use the email address only to deliver the sign-in link, identify your account, and contact you about your account when necessary. We do not set a password for these accounts.
Local Storage, Cookies and Similar Technologies:
We may use local storage, cookies and similar tracking technologies to enhance your experience on the App and the Site, including to keep you signed in when you create an account on the Site. You can adjust your device or browser settings to manage data storage and tracking, but some features of the App or the Site may not function correctly as a result.
Use of Information:
On the Mobile App, analysis of your exported Instagram data runs entirely on your device and we do not upload or store your raw export information on our servers. Using the analysis functionality on the Site requires a signed-in account: when you sign in and upload data on the Site, we store your account information and the Instagram data you upload so that we can provide the signed-in experience (saving your results, syncing across devices, and helping you manage your data). We also collect the limited usage and diagnostic information described above to operate, secure, and improve the service. We may also collect information you provide to us through the Contact form to improve our services and to respond to your inquiries and requests. Additionally, we may use error logging data to enhance and tweak our product. We do not sell your personal information, and we do not use the contents of your uploaded Instagram data for advertising.
Service Providers and Sub-processors:
We work with a small number of trusted third-party providers who process information on our behalf under contractual confidentiality and security obligations:
- Supabase hosts our database and authentication infrastructure (including delivery of emailed sign-in links) and stores Site account information and the Instagram data uploaded by signed-in Site users.
- Google provides Google Sign-In and authenticates Site users who choose to log in with Google.
- Stripe processes payments for website purchases.
- Apple and Google Play process in-app purchases and subscriptions for the Mobile App.
- Analytics providers help us understand usage and diagnose issues using the limited information described above.
International Data Transfers:
Our database is hosted in the United States. If you access the Site from outside the United States, your information (including account information and any Instagram data you upload while signed in) will be transferred to and processed in the United States, which may have data protection laws different from those in your country. Where required by applicable law (for example, for users in the European Economic Area or the United Kingdom), we rely on appropriate safeguards such as the European Commission's Standard Contractual Clauses to protect your information during such transfers.
Data Retention:
We retain usage and diagnostic information for as long as is reasonably necessary to operate, improve, and troubleshoot the App and the Site, and to comply with our legal obligations. Analytics data is retained for up to 7 years, after which it is deleted or anonymized. Site account information and Instagram data uploaded by signed-in users are retained for as long as your account is active. You may request deletion of your account and associated uploaded data at any time through the Contact form, after which we will delete this information within a reasonable period, except where we are required to retain certain records to comply with our legal obligations.
Your Privacy Rights:
Depending on where you live, you may have rights regarding your personal information, including the right to access, correct, delete, or restrict processing of your data, and the right to object to its use. Residents of the European Economic Area (under the GDPR) and California (under the CCPA/CPRA) have additional rights, including the right to know what information is collected and the right to opt out of the sale or sharing of personal information. We do not sell your personal information. To exercise any of these rights, including requesting deletion of your account and uploaded Instagram data, please contact us through the Contact form.
Children's Privacy:
Nonfollowers is not directed to children under the age of 13 (or the equivalent minimum age in your jurisdiction), and we do not knowingly collect personal information from children. If you believe a child has provided us with personal information, please contact us through the Contact form and we will take steps to delete that information.
Changes to this Privacy Policy:
We may update this Privacy Policy to reflect changes in our practices or for other operational, legal, or regulatory reasons. Any changes will be effective when we post the revised Privacy Policy on the Site or within the App. We encourage you to review this Privacy Policy periodically.
Contact Us:
If you have questions or concerns regarding this Privacy Policy, please contact us through the Contact form, or by email at hello@nonfollowers.com.
Acknowledgment:
By installing and using Nonfollowers app (the "App") or visiting www.nonfollowers.com or its subdomains, including app.nonfollowers.com where our signed-in web application is hosted (collectively, the "Site"), you acknowledge and accept these policies.