Privacy Policy
Last Updated: May 17, 2026 | Effective Date: May 17, 2026
Encryption Standard
All Meta Access Tokens and database credentials are encrypted at rest with AES-256 grade protection.
Data Retention
Instagram direct message logs are cached for a maximum of 30 days solely for dashboard metrics, then purged.
GDPR & CCPA Compliant
Users retain full rights to request immediate, automated account and conversation history purges.
1. Introduction & Meta API Compliance
Welcome to ilink Chat ("we", "us", or "our"). We provide an artificial intelligence-driven conversation automation software suite designed for Instagram Business and Creator accounts.
To provide these automations, ilink Chat connects securely to the official Meta Graph API and Instagram Graph API. By authorizing your Instagram Business Profile with our platform, you acknowledge and agree to this Privacy Policy. We operate strictly in compliance with the **Meta Platform Terms** and **Meta Developer Policies**.
2. The Scope of Data We Collect
We collect only the minimum necessary data to perform automated message processing and conversation management. This includes:
- Meta Authentication Tokens: Upon authorizing via Facebook Login, we receive short-lived and long-lived Page Access Tokens and User Access Tokens. These allow our server to request and deliver responses to your Instagram direct messages.
- Instagram Account Information: Your Instagram Business page ID, handle, username, biography link, profile picture, and page name.
- Direct Messages & Comments: The text, media metadata, timestamps, and sender ID of messages, mentions, or comments sent by users to your Instagram account. We process this text solely to draft automated AI replies.
- Account Operational Data: Customer name, business email, subscription details, and dashboard analytics (e.g. reply counts, prompt usage).
3. How We Process and Use Your Information
We do not sell, rent, or trade your data to third-party advertisers. Collected data is processed strictly for:
- Providing instant automated replies to inbound direct messages and comments.
- Feeding message context to Secure Large Language Models (LLMs) to formulate accurate, product-specific answers.
- Presenting message histories on your custom dashboard so you can view, edit, or override AI replies.
- Debugging integration connection status and monitoring performance to prevent API rate limit issues.
4. Sharing with Third-Party AI Models
To formulate automated responses, message contents (excluding individual identity profiles where possible) are securely queried to state-of-the-art, enterprise-grade AI models (such as OpenAI, Anthropic, or Google Gemini).
These processors operate under strict commercial APIs which explicitly guarantee that customer inputs **are not used to train** future models, ensuring your commercial knowledge and private messages remain fully confidential.
5. Data Storage and Retention Limits
Under official Meta terms, we are committed to minimizing the storage of private message contents. Conversation logs displayable on your dashboard are maintained for a maximum of **30 days** before being completely removed from our records.
Meta Access Tokens are maintained dynamically for the active duration of your subscription. Upon deleting or disconnecting your account, all tokens are instantly and securely overwritten in our records.
6. GDPR, CCPA, and Consumer Rights
Depending on your location, you may have specific rights regarding your personal data under the European Union General Data Protection Regulation (GDPR) and California Consumer Privacy Act (CCPA). These include:
- The right to request detailed records of the personal data we hold about you.
- The right to demand immediate correction of inaccurate data.
- The right to invoke the **"Right to be Forgotten"** and delete all records.
- The right to request portable transfers of collected information.
To execute any of these rights, please follow our automated data deletion guidelines or submit a request directly on our support dashboard.
7. Policy Revisions
We may periodically update this Privacy Policy to align with new Facebook and Instagram Developer policies or feature expansions. We recommend checking this page periodically. Continued usage of our services after updates are posted constitutes your explicit agreement.