Connect accounts here. Messages, tokens, translations, preferences, audit history and backups remain on this computer; Cloudflare receives access and login metadata only.
The whole product changes immediately and remembers your choice on this device.
New here? 🧭 Open the Guide — a separate program that speaks each step and waits until you say “proceed”.
Setup verifies itself first. Each step below only unlocks when every check here passes — so a problem is caught at its source, never three steps later.
The owner's main computer opens normally. A new computer, phone or tablet signs in with these simple details—or scans the short-lived QR code shown by the 📱 button inside TUTELA CRAWLit.
Simple rule: one memorable username and at least eight characters. The password is never placed inside the QR code. A QR pairing code expires after ten minutes and works once.
Engine 211 starts in the safest mode: only this Mac can reach it. The owner may explicitly allow a paired phone or tablet on the same trusted Wi-Fi.
Engine 211 stores CRAWLit records inside an encrypted APFS vault whose separate key is held by macOS Keychain. Before the first migration it creates and verifies an encrypted recovery point, compares every copied file against a SHA-256 manifest, mounts and checks the final vault, and only then removes the redundant plaintext tree.
Create a dated, versioned copy of CRAWLit’s local records and connection settings. When the save window opens, choose the USB key or other removable drive. The saved copy is read back and checked against its SHA-256 fingerprint before success is shown.
Research complete; implementation is not enabled. The safe route is a dedicated local TUTELA Companion: pair by QR, use an encrypted local Wi-Fi connection, and request Contacts, SMS and Calls separately so each refusal stays grey and genuinely off.
Android does not grant those permissions merely because a phone is paired. SMS and call-log access also requires a restricted-permission declaration and platform review. No ADB, developer mode, private WhatsApp storage or unsupported call-audio capture will be used.
Watches your real inboxes — incoming mail appears in TUTELA CRAWLit as messages. Add as many inboxes as you like, one at a time. iCloud: server imap.mail.me.com, port 993, and an app-specific password from account.apple.com (Sign-In & Security → App-Specific Passwords). Gmail: imap.gmail.com + an app password from your Google account.
From your Meta developer app (developers.facebook.com → App settings → Basic). Redirects to use on Meta's side: and
For Instagram, don't use this card. Meta retired the old Instagram login here. Use the Instagram — direct card below, or the browser add-on route (same as Facebook) — ask David.
1 · Open the Graph API Explorer ↗ (Meta's own tool). 2 · On the right, under Meta App, choose TUTELA CRAWLit Pages. 3 · Press Add a Permission and tick pages_show_list, pages_read_engagement, pages_read_user_content and pages_manage_metadata. 4 · Press Generate Access Token and approve with your Facebook login. On the “what you allow” screen you MUST tick your Page — if you skip that, the token arrives with no Page attached and nothing appears. This is the step that is usually missed. 5 · Copy the long token and paste it below — your Page connects instantly, its recent posts are filled in, and comments are checked every 2 minutes.
CRAWLit content stays on this computer. Messages, contacts, account tokens, translations, preferences, audit history and backups are not sent through a public tunnel. Cloudflare is limited to access and login metadata outside this local application.
The modern way: your Instagram professional account (Business or Creator) connects directly — no Facebook Page needed. Switch your account to professional in the Instagram app first: Settings → Account type and tools → Switch to professional account.
developers.facebook.com → TUTELA CRAWLit Pages → Use cases → Add use cases → Instagram. Then open its Customize and switch on instagram_business_basic, instagram_business_manage_messages and instagram_business_manage_comments. Its Instagram app ID and Instagram app secret go in the two boxes below — these are NOT the same as the Facebook ones.
In the same Instagram settings, under Business login settings, paste this into Valid OAuth Redirect URIs:
Scan this with your phone's camera. Instagram opens on the phone, you press Allow, and it connects — nothing else to type.
Same Meta app — add the “Threads API” use case, then the same two codes.
From developer.x.com (OAuth 2.0, type Web App). Real-time search needs a paid X plan.
TUTELA CRAWLit sends you an email for each alert. iCloud sending: smtp.mail.me.com port 587 + the same kind of app-specific password.
Use the official WhatsApp Business QR to work in WhatsApp's real full window. The separate Business Platform fields below remain available for an approved Meta business integration, but inbound Business Platform webhooks are not activated in this local-only candidate.
Shows the notifications you see in the Facebook app — comments, reactions, mentions, tags. Facebook has locked out every other method, so this uses a tiny browser add-on that reads your notifications from your own logged-in Facebook tab and passes them here. It only reads — never posts, likes or clicks.
1 · In Chrome open chrome://extensions and turn on Developer mode (switch, top right).
2 · Press Load unpacked and pick this exact folder — it was installed with TUTELA CRAWLit, you do not need to download anything:
…
3 · Open Facebook, go to your Notifications (the bell, or facebook.com/notifications), and pin that tab.
That's it — your Facebook notifications now appear in your feed within a minute and update live while the tab is open. Nothing leaves this computer.
Shows the direct messages and mentions you see in the Instagram app — each conversation as name → message. Instagram does not let any app read a personal inbox, so this uses a tiny browser add-on that reads your own logged-in Instagram tab and passes what it sees here. It only reads — never posts, likes, follows or messages.
1 · In Chrome open chrome://extensions and turn on Developer mode (switch, top right).
2 · Press Load unpacked and pick this exact folder — it was installed with TUTELA CRAWLit:
…
3 · Open instagram.com/direct/inbox and pin that tab.
Your messages appear in your feed within a minute and update live while that tab is open. Nothing leaves this computer.
This reads the WhatsApp on your phone. It links to your account the same way WhatsApp Web does — you scan a code once, your phone carries on exactly as before, and messages people send you appear in your TUTELA CRAWLit feed.
Read this before switching it on. It uses an unofficial library, which is against WhatsApp's terms. Punishment, if it comes, falls on the phone number — not on this app. Passively reading your own messages is far lower risk than bulk sending, which is what WhatsApp actually polices, but it is not zero. This is your choice for your number. It ships switched off, and you should not switch it on for a client unless they have decided this for themselves.
Create a real Teams meeting link from the TUTELA CRAWLit top menu. Choose from the owner's current Mac/iCloud Contacts, linked WhatsApp identities and connected email correspondents. When a connected platform makes a person available through account activity, TUTELA CRAWLit matches that identity to an authorised callable contact. Review whether each person receives the link by email or WhatsApp, then confirm once.
Open the Microsoft Entra admin centre → App registrations → New registration. Use a work or school Microsoft 365 account. Under Authentication, add this exact Web redirect address:
Under API permissions, add Microsoft Graph delegated permissions User.Read and OnlineMeetings.ReadWrite. The sign-in also asks for offline access so the connection can renew safely.
In the app, use the three separate top buttons: ☎ Phone, ◉ WhatsApp and T Teams. Each opens its own floating search window inside TUTELA CRAWLit.
WhatsApp calls need no setup here. TUTELA CRAWLit opens the selected person in the official WhatsApp app, where the client presses WhatsApp's own phone or camera button. There is no Twilio account, sender approval or extra calling payment for that route.
This optional Twilio section is only for ordinary telephone calls that the client wants to make and receive inside TUTELA CRAWLit. Skip the entire section when the client uses WhatsApp calling.
Only when ordinary phone calls must stay inside TUTELA CRAWLit: in Twilio, create a Voice API key and a TwiML App, then buy or move in the telephone number the client will use.
Set the phone number's incoming voice webhook to:
Set the TwiML App's Voice request URL to the call-control address below. This controls optional ordinary phone calls started inside TUTELA CRAWLit.
The first accepted voice call asks for microphone access. A connected face/video provider asks for camera and microphone access and places the user's live preview in the call window.
Cross-component transfer is disabled for this isolated CRAWLit test. All personal CRAWLit functions remain available, but messages cannot be sent into projects, tasks or another component.