Privacy Policy
Last updated: June 19, 2026
This Privacy Policy explains how X Auto Pilot ("we", "us", "our") handles information in connection with the X Auto Pilot browser extension (the "Extension") and this website (the "Site"). We are committed to keeping data collection to the absolute minimum required to operate the product.
1. Information We Collect
We collect only what is necessary to deliver and license the product:
- Email address: provided by you at checkout so we can tie your license to you and email your license key and download link.
- Payment reference data: a transaction hash, order ID, or Binance order ID, and the blockchain network used, so we can verify your payment. We do not collect or store your card numbers; card payments are processed by our third-party provider (NowPayments).
- License key: generated by us and stored to validate your access.
2. Information the Extension Handles
- The Extension runs inside your browser using your existing logged-in X (Twitter) session. We never ask for or store your X password.
- Tweet/comment text you choose to generate a reply for is sent to the AI provider (OpenAI) using your own API key, which you supply and which is stored locally in your browser. We do not receive or store this content on our servers.
- Your OpenAI API key, queued links, and settings are stored locally in your browser (extension storage) and never transmitted to us.
3. How We Use Information
- To verify your payment and issue a license key.
- To email you your license key, download link, and installation instructions.
- To provide customer support when you contact us.
- To prevent fraud and abuse (e.g., detecting reused transaction references).
We do not sell, rent, or share your personal information with advertisers, and we do not use your data for advertising.
4. Cookies & Local Storage
The Site does not use advertising or tracking cookies. The admin panel uses your browser's sessionStorage to hold a temporary admin session token. The Extension uses local browser storage to keep your settings and API key on your device. No cross-site tracking cookies are set.
5. Third-Party Services
We rely on the following third parties strictly to operate the product. Their handling of data is governed by their own privacy policies:
- NowPayments: card and crypto payment processing.
- Block explorers (Etherscan and compatible APIs): to confirm on-chain transactions.
- Binance: for verifying Binance transfers.
- Google (Gmail SMTP): to deliver license emails.
- OpenAI: AI reply generation, called directly from your browser using your own API key.
6. Data Retention
We retain payment and license records for as long as needed to provide lifetime access, comply with legal/accounting obligations, and resolve disputes. You may request deletion of your personal data (subject to records we must keep for legal reasons) by emailing us.
7. Data Security
We use reasonable technical measures to protect stored data. No method of transmission or storage is 100% secure, but we limit the data we hold to reduce risk.
8. Children's Privacy
The product is not directed to individuals under 18, and we do not knowingly collect data from them.
9. Your Rights
Depending on your jurisdiction, you may have the right to access, correct, or delete your personal data, or to object to certain processing. To exercise any right, contact us at the address below.
10. Changes to This Policy
We may update this Privacy Policy from time to time. Material changes will be reflected by the "Last updated" date above.
11. Contact
Questions about this policy? Email license@xautopilot.org.