Cookies are small text files that a website asks your browser to store on your device. Each cookie holds a short string of data — usually an identifier and an expiry date — that the browser sends back to us the next time you load iTweet. On their own, cookies cannot run programs, read your files, or carry viruses. They simply let a stateless technology like the web remember something between page loads.
This policy covers cookies and the family of technologies that behave like them: local storage and IndexedDB (used to cache your feed, profile data, encryption keys and drafts so the app opens instantly and works offline), session storage (temporary state such as an in-progress upload), pixels and SDK identifiers (used to measure whether an ad or a link actually led somewhere), service workers (which power web push notifications and offline caching), and device identifiers supplied by Android or iOS inside the native app. Where the mobile app uses those platform mechanisms instead of browser cookies, the same rules in this policy apply.
We group what we set into four purposes. Strictly necessary cookies keep you signed in, bind your session to your device, protect login and posting endpoints against automated abuse, remember which account is active when you use multi-account switching, and store your cookie choice itself so we do not ask again on every visit. Turning these off is not possible while using iTweet, because the Service cannot authenticate you without them. Preference cookies remember your theme, language, autoplay and data-saver settings, muted conversations, and the last tab you were on. Analytics cookies help us count unique sessions, measure crash rates, see which features are used, and understand how quickly pages load; wherever possible this data is aggregated and truncated so it does not describe an individual. Advertising cookies support frequency capping, measurement of whether a promoted post led to a visit, and limited relevance signals as described in the Privacy Policy. We never place advertising cookies on accounts we believe belong to a minor, and we never use sensitive categories such as health, religion, caste or sexual orientation for ad targeting.
Some cookies are set by us (first-party) and some by providers we rely on, such as our cloud host, payment and billing partners, push notification delivery, and Google integrity or sign-in services (third-party). Third parties may only use the data for the service they provide to us. This policy does not cover cookies set by other websites you reach through a link on iTweet — read their own notices for that.
Cookies last either for the browsing session (deleted when you close the browser) or for a fixed period. Session and authentication cookies are short-lived and rotate; preference and consent records typically last up to twelve months; analytics identifiers are rotated at least annually.