Privacy Policy
Applies to the SnoopInsta iOS app (com.snoopinsta.app)
Effective May 29, 2026
SnoopInsta ("we", "us") operates the SnoopInsta mobile application for iOS. This policy describes what information the app processes, where it is stored, and your choices. It is separate from our website privacy policy at snoopinsta.com/privacy, which covers the web product with email sign-in.
Summary
- No email/password account — identity is an anonymous per-device identifier.
- Optional Instagram login uses Instagram's own page in an in-app browser; session cookies stay on your device (iOS Keychain). We never receive your Instagram password.
- We do not sell your data, run ads, or use cross-app tracking.
- Payments are handled by Apple; we only receive subscription status from Apple.
Who we are
Contact: [email protected]. For data deletion requests, email [email protected] with subject "Delete my iOS data".
Identity and accounts
The iOS app does not require you to create an account with an email address. On first use, the app generates a persistent device identifier stored in the iOS Keychain. Our servers associate that identifier with your watchlist, subscription status, and push notification token. Deleting the app removes the local session; server-side records may remain until you request deletion or we purge inactive data.
Instagram login (optional)
To read follow lists for private accounts you already follow on Instagram, you may sign in to your own Instagram account inside an in-app web view hosted by Apple's WebKit. Authentication happens on Instagram's website; we do not see or store your password.
After login, Instagram session cookies (for example session identifiers and CSRF tokens) are stored only in the device Keychain and in the app's isolated web view storage. They are used solely on your device to request follow-list data from Instagram. They are not transmitted to SnoopInsta servers.
You can remove this session anytime in Settings → Disconnect Instagram.
Information collected on our servers
When you use the app, we may store:
- Device customer ID — anonymous UUID linking your device to tracked profiles and subscription state.
- Tracked profiles — Instagram usernames and profile identifiers you choose to watch, plus follower/following counts and trend snapshots updated periodically.
- Push token — Apple Push Notification service device token, if you opt in, used only to send alerts about new follow activity on accounts you track.
- Subscription status — product identifier, transaction reference, and expiry from Apple in-app purchase verification (not card numbers or Apple ID credentials).
- Alert state — whether push alerts are enabled and pending follow-count signals used for notifications.
Public profile data (third party)
For public Instagram accounts, when you are not using an on-device Instagram session, the app may request a snapshot of who that account follows through a third-party data provider (Apify). That request is made from our servers using the public username only. We do not send your Instagram credentials for this path.
On-device processing
When you are logged into Instagram in the app, follow-list fetching and comparison against your saved baseline run on your device. That activity does not upload your Instagram session to our servers.
Push notifications
If you allow notifications, we send alerts when a tracked account's following count changes (for example, "@username followed someone new"). Alerts do not include the name of the newly followed account unless you unlock the in-app detail with a subscription. You can disable alerts in app Settings or in iOS Settings.
Payments
Subscriptions are sold through Apple's App Store. Apple processes payment. We receive a signed transaction from StoreKit and store subscription status to unlock premium features. Refunds are handled by Apple per their policies.
No ads or tracking
We do not use the iOS App Tracking Transparency framework because we do not track you across other companies' apps or websites for advertising. We do not sell personal information.
Retention and deletion
We retain server-side data while you use the app and for a reasonable period afterward for operations and legal compliance. Free users who have not subscribed may have server-side tracking paused after extended inactivity.
To request deletion of server-side data tied to your device, email [email protected]. Include any context that helps us locate your records (for example, the email address you use to contact us, or approximate install date).
Children
The app is not directed at children under 13, and we do not knowingly collect personal information from children under 13.
Changes
We may update this policy. We will revise the effective date above. Material changes may be communicated in-app or on this page.
Not affiliated with Instagram
SnoopInsta is an independent application and is not affiliated with, endorsed by, or sponsored by Instagram or Meta Platforms, Inc. Instagram is a trademark of Meta Platforms, Inc.