START TINY
Privacy policy
Effective September 7, 2026
This notice explains how Start tiny processes information when you connect X, set up your product, discover public conversations, or generate AI reply drafts.
Information we process
We store your connected X account identifier and username, authorization tokens, product website and description, audience settings, keywords, agent settings, selected public posts and author details, reply drafts, usage counts, and support requests. Tokens are encrypted in our database and are not included in client-side responses.
Drafts include your direct product URL. We do not measure visits to that destination. Legacy redirect links remain functional and record request timestamps with common bot filtering; no visitor IP address is intentionally stored in those records. Cloudflare and X may process network information under their own privacy notices.
How information is used
We use this information to authenticate your account, find relevant conversations and product mentions, generate reply drafts, enforce usage limits, show analytics, provide support, and protect the service. Public post text and the product context you provide are sent to BytePlus ModelArk for inference.
Service providers
Cloudflare provides hosting and database storage. BytePlus provides AI inference. X provides sign-in and public content access. These providers may process information outside your country. We do not sell your connected account credentials or customer data.
When enabled, Grow or Die receives anonymous page visits, product actions (such as website analysis, checkout, viewing opportunities and copying replies), verified initial payment confirmations, and server-side AI usage measurements, including model names, token counts, request outcomes and opaque account identifiers. We do not send model prompts, generated replies or X authorization tokens to Grow or Die. Browser analytics uses a random visitor identifier and session identifier, query-free page paths and referrer origins. We retain those anonymous identifiers with a checkout to measure whether the same visitor completes a real payment, even if the browser is closed. Complimentary activation is recorded separately from paid conversion.
Cookies and browser storage
Essential HttpOnly cookies keep you signed in and protect the X authorization flow. A temporary authorization record links sign-in to the browser that started it. Product details may be held temporarily in session storage while you finish sign-in.
Retention and controls
Lemon Squeezy processes subscription payments. We store subscription identifiers, plan, payment status and renewal dates to activate and operate your bot. Card details are handled by Lemon Squeezy and its payment providers and are not stored by Start tiny. Operational bot activity is retained for seven days to explain searches and drafts in your dashboard.
Conversation and click records are retained for up to 90 days; your plan controls the history visible in the dashboard. Expired authorization handoffs are cleaned up by the scheduled service. Account and product settings remain while your account is active. Usage counts may remain as operational records. You can pause scanning or disconnect X in your dashboard. You can also revoke Start tiny directly in X’s Connected apps settings.
Access and deletion requests
Use the Help & privacy form in your dashboard to request access, correction, or deletion of your information, or to report a privacy concern. Disconnecting X stops future account access but does not remove posts already published on X; manage those posts directly on X.
Changes
We will update this page when our data practices change. Material changes will be reflected in the effective date and communicated through the service where appropriate.
Continue to Start tiny →