Browser Extension Privacy Disclosure

How the DownXVideo browser extension handles post URLs, current-page media information, local parsing, downloads, and browser permissions.

Last updated: August 14, 2026

Single purpose

The extension helps users save supported videos, GIFs delivered by X as MP4, and post images from X/Twitter posts that they can already open and that they own or have permission to download. It does not unlock posts, defeat access controls, access direct messages, or provide account-wide or automated bulk collection.

Local parsing and data sent to X

The extension reads the public X/Twitter page locally so it can place a download button on supported videos and post images. After a download click, it requests public information about that post directly from X without sending the user's cookies or account authentication information.

On Chrome and Edge, if the public request cannot identify the media, the extension can use minimal MP4 or original-image information already loaded on the current page. It keeps only the post and media details needed for the clicked item in page memory for up to ten minutes or until the page closes. It does not read request headers, cookies, authentication tokens, passwords, or save the full page response. This information is not sent to DownXVideo.

Firefox uses only public post requests and does not read media information already loaded by the current page. Requests send the public post ID directly to X. They do not send the post URL to DownXVideo or pass through DownXVideo services.

Media downloads

The extension gives the selected source MP4 or original-size JPG, PNG, or WebP URL to the browser's download manager. Media files are downloaded from X media servers to the user's device and are not uploaded to or stored by DownXVideo. Image URLs are limited to the pbs.twimg.com/media/ path so profile images and unrelated page images are excluded.

Browser permissions

Access to pages on x.com and twitter.com is used to add the per-media download button, identify the selected public post, and—on Chrome and Edge—use minimal media information already loaded on that page. activeTab lets the popup show whether the current page is supported and how many media items are loaded. downloads starts the selected source media download and applies the user's relative subfolder or save-picker choice. storage saves quality, filename, download-location behavior, custom subfolder, and button visibility preferences on the current device. Access to X services is used only to request public post and media information. Firefox also declares narrow access to video.twimg.com and pbs.twimg.com/media/ for its Android-native download prompt.

The unreleased Chromium workspace candidate declares https://feedback.downyes.com/* as an optional host permission. It is requested only after a download has failed, the user has opened the local disclosure, and the user deliberately confirms submission. Denying it does not affect downloads. The Firefox package does not declare this optional permission.

The extension does not request notification permission. The browser provides download progress and completion feedback.

Firefox data categories

Mozilla classifies processing the current public post URL as browsingActivity. The URL is processed locally, and the public post ID is sent directly to X only after the user requests a download. The extension does not use optional technical or interaction data.

The Firefox package does not send post URLs, post text, page DOM, images, media metadata, click events, scroll events, download telemetry, or failure telemetry to DownXVideo.

Data not collected

The extension does not request or collect X/Twitter passwords, user cookies, account authentication tokens, private messages, payment information, or the contents of downloaded media files. It does not use the user's login state to make its own authenticated X requests.

Normal downloads do not send post URLs or current-page media information to DownXVideo and do not persist post URLs, post IDs, parser results, browsing history, media URLs, or failure history. Chromium current-page media entries remain only in page memory for up to ten minutes. Quality, filename, download-location behavior, custom subfolder, and button visibility preferences are stored only in browser local storage on the current device.

Optional download-failure feedback (unreleased workspace candidate)

The Chromium workspace source contains an optional DownXVideo report flow at https://feedback.downyes.com/v1/sites/downxvideo-extension/reports. It appears only after a definite failure. The first click opens a local disclosure; a second trusted click is required before the optional host permission is requested and one report is sent. Canceling, denying permission, or a service error sends nothing, queues nothing, and does not affect another download.

A report is rebuilt from a fixed allowlist: platform, extension version, public post ID, media and page categories, a fixed error code and failure stage, evidence route, candidate count, source/status/MIME/size buckets, media ready and DRM state, filename mode, username shape, browser family and major version, operating-system family, and disclosure version. It does not include a full page or media URL, signed CDN URL, username, post text, filename, cookie, header, sign-in information, media, raw exception, or stack trace.

Authorized DownXVideo support staff may review a report the user explicitly submits. Raw reports are deleted after 30 days; deidentified aggregate counts are kept for at most 90 days, and abuse-prevention HMAC keys for at most 24 hours. A report ID and one-time deletion token are shown once and are not stored by the extension. The production feedback service is live, but the updated Chromium candidate, store disclosures, and store submission have not yet been published.

Optional uninstall survey

When the extension is removed, the browser can open https://downxvideo.com/extension/uninstall/. The URL contains only the extension version, browser family, and interface language so the page can show compatible help and localized text. It does not contain an installation ID, device ID, account, post, page, media, or filename identifier.

The survey can be skipped without sending anything. If the user deliberately submits it, the page sends one selected reason, an optional comment of up to 500 characters, extension version, browser family, interface language, and disclosure version to https://feedback.downyes.com/v1/sites/downxvideo-extension/uninstall-surveys. The survey page does not load advertising or analytics scripts and asks users not to include account or private information.

Raw survey entries are deleted after 30 days. Low-cardinality counts grouped by date, reason, extension version, browser family, and language are kept for at most 90 days. The feedback service does not store the source IP in a survey record; it uses a short-lived HMAC-derived abuse-prevention key for at most 24 hours.

Limited use of data

Information received from Chrome APIs is handled in accordance with the Chrome Web Store User Data Policy, including the Limited Use requirements. The extension also follows the applicable Microsoft Edge Add-ons policies and the Mozilla data categories described above.

Data accessed by the extension is used only to provide the user-requested media download functionality and the security and service delivery necessary to operate it. DownXVideo does not sell user data, use it for advertising, use or transfer it to determine creditworthiness or for lending purposes, or use it for any purpose unrelated to the extension's single purpose.

Contact

For extension privacy questions, email [email protected].

For a plain-language review of credential requests, browser permissions, website and extension data paths, and warning signs, use the DownXVideo downloader safety checklist.