Privacy Policy

Mizkif Global (browser extension) · Last updated 31 August 2026

This policy explains what the Mizkif Global browser extension ("the extension") does with your data. It applies only to the extension, not to the rinaudoglobal.com website or any other service.

What the extension does

The extension lets you earn tickets in Mizkif's game by engaging with his content. It notices when you like, comment on, like a comment under, watch, repost, or send one of his promoted posts and videos on YouTube, TikTok, Instagram, and X (the site at x.com, which also answers to twitter.com), and it tells the game so the action can be credited. The game decides what each action is worth and those rates change from season to season: as of this update, comments earn nothing on any platform. The extension also shows the live poll from Mizkif's Kick stream so you can vote, checks in while that stream is playing so your watch time counts, and notifies you when he goes live or posts. Tickets are credited to the account you link once with "Connect with Kick."

Which sites it runs on

The extension loads on these sites and nowhere else:

On every other site the extension is not loaded at all, so it cannot see the page.

How the repost check works on X

A repost earns tickets only when X itself confirms the repost happened. A button click on its own is not proof, so on x.com and twitter.com the extension watches the requests the X page sends while you use it. Here is the whole of what that means:

It does not read your timeline, your posts, your drafts, your direct messages, or your followers, and it does not read the words you type. This check runs on X only. It does not run on Kick, YouTube, TikTok, Instagram, Facebook, or Reddit, and it does not run on any other site.

What we store

What we send, and to whom

The extension sends your account data to only two servers. It also makes a few read-only requests to YouTube, listed last, which carry nothing about you:

When an engagement is credited, three things go out: which site and which post (its id, the same one you can read in the post's public web address), which action it was (like, comment, comment like, watch, repost, or send), and your account token, so the tickets land on your account. While a video plays, the extension also sends periodic "still watching" signals. Every one of these requests carries the anti-fraud device token, fingerprint, and coarse device traits described in the next section.

What never leaves your browser: the contents of the pages you visit, the text of your comments (we send only that you commented on a given post, never what you wrote), the text of any comment you like or the name of whoever wrote it (we send only that comment's public id, the same id in its own permalink, so the same comment is never paid for twice), your direct messages, your passwords, your browsing history, and anything at all from a site the extension does not run on.

Preventing duplicate accounts and bots

Because tickets have real value, we take basic steps to stop one person from farming them with many fake accounts or bots. With each authenticated request to s2.jsolutions.dev, the extension includes the anti-fraud device token, device fingerprint, and the three coarse device traits described above. The server additionally records a one-way, salted hash of your IP address (your actual IP address is never stored, only a hash that can be compared for a match, not reversed) and the name of the network operator that address belongs to, which tells a home connection apart from a rented server. These signals are used only to group accounts that appear to share a device or network for manual review before payouts. They are never sold, shared with third parties, used for advertising, or used to track your browsing, and they are never shown to other users.

What we do not do

Permissions, and why

Open source

You do not have to take any of this on trust. The extension's code is public and you can read every line of it at github.com/SolutionsCMD/rinaudo-extension. The X repost check is the file content/observe.js.

Your choices

There is no disconnect button in the popup today. To stop the extension, remove it from your browser: that deletes the account token and everything else it stored on your device, and the on-page cards stop appearing. The token stays valid on the server until it is revoked, so if you want it killed as well, email the address below and we will revoke it. You can also switch off any of the notifications and the on-page vote card from the popup at any time, which stops those without removing anything.

Contact

Questions about this policy? Email privacy@rinaudoglobal.com.