Secure Webhook Encryption

Privacy Policy

Last Updated: July 2026. This policy explains what happens to your Instagram data when you use AutoDM.

Privacy Commitment

We never upload, collect, or store your Instagram password. All credentials and messaging tasks are secured using industry-standard AES-256 encryption. Your DM flows and comments are processed dynamically to ensure complete data compliance.

1.Meta-Compliant Processing

When a webhook event is received from Meta, AutoDM processes it in a secure cloud architecture. Your comment text is matched locally within our workers, and DMs are dispatched immediately via official Graph APIs.

  • Secure token storage: Access tokens are stored using AES-256 encryption at rest.
  • No passive profile scraping: We only read comments and send messages as authorized by your Meta account consent.
  • Data deletion on request: If you disconnect your Instagram account, all associated message logs and tokens are deleted instantly.

2.Information We Process

We store access tokens, campaigns configuration (keywords and auto-responses), and basic automation analytics (DM success rate and trigger count). We never parse private personal DMs or off-platform user profiles.

3.Security Auditing

All actions taken by system administrators or creators are logged in a tamper-resistant Audit Log. Critical security actions (such as plan modifications or token updates) trigger immediate administrative notifications.