@shalien @pixelfed its opt-in, and we use fine grained oauth scopes to ensure we can't read DMs or other data.
How isn't that privacy compatible?
You literally have to connect your Mastodon account first, and if someone else does that has your account included, you can access the collection of who you follow from a web browser without any auth.