Store
Back to Home
Data Protection

Privacy Policy

Technical principles regarding data collection, processing, and entitlement protection.

1. Accounts and payments

We process account name, email address, verification status, password hashes, sessions, orders, subscription and payment reference IDs to provide account access, purchases, support and paid features. Payment providers such as PayPal process their own checkout information. We do not receive your PayPal password or full payment card details.

2. Instagram Media Exporter

The extension reads Instagram media and associated page information to download and export content available to your account. This includes media URLs, photos and videos, captions, usernames, media identifiers, timestamps and pagination information. Settings, download history, duplicate-detection records and recovery checkpoints are stored locally in your browser. Media files are saved to the location managed by your browser; media and captions are not uploaded to our licensing server.

3. Authentication and installation data

Instagram cookies and request security values are used locally to request content from Instagram using your existing session; they are not sent to our account server. The extension does not ask for your Instagram password or collect browsing activity on unrelated websites. When you choose web sign-in, it exchanges authorization codes with our service and stores access and refresh tokens in private extension-origin storage. Our service processes account information, an internal entitlement reference, a random installation identifier and browser/device information to authenticate you and enforce installation limits. This identifier is not a hardware fingerprint.

4. Sharing and limited use

Content requests go to Instagram and its media delivery services. Account and entitlement requests go to our service. Infrastructure providers, including Cloudflare, process traffic necessary to deliver the service. Payment providers process payments you initiate. We may disclose records where legally required. We do not sell extension user data, use it for advertising, or transfer it for unrelated purposes. Our use of extension user data is limited to its stated functionality, security and customer support, consistent with the Chrome Web Store User Data Policy and Limited Use requirements.

5. Storage, retention and deletion

Local history and recovery records remain until removed through available controls or by uninstalling the extension. Downloaded files remain until you delete them. Signing out removes the extension web session and resets its paid-access cache, but does not delete downloaded files or recovery history. Tokens have limited validity and can be revoked. Account, order, payment and security records are retained as needed to operate your account, handle disputes and meet legal obligations. Signing out does not delete server-side purchase records.

6. Security and privacy requests

Production account requests use HTTPS. Passwords are stored as one-way hashes. Credentials and authentication payloads must not appear in production diagnostic logs. You can request access, correction or deletion of account information through our contact page; transaction records may need to be retained for legal or dispute-resolution purposes.

Contact us about privacy or account deletion