Privacy Policy
Last updated: March 20, 2026
1. Introduction
My Auto DM (“we”, “our”, or “us”) operates the My Auto DM platform, a social media automation service that lets you connect your Instagram account and automatically respond to messages and comments.
This Privacy Policy explains what data we collect, why we collect it, how we use it, and your rights regarding your data. By using our service, you agree to the practices described here.
For questions, contact us at: dhananjay.singh011@gmail.com
2. Data We Collect
2.1 Account Information
When you sign up, we collect your email address and optionally your name. This is stored in our authentication system and used to identify your account.
2.2 Instagram / Meta Platform Data
When you connect your Instagram Business account, we receive and store:
- Your Instagram access token (OAuth credential used to interact with the Meta Graph API on your behalf)
- Your Instagram Business Account ID and username
- Your profile picture URL and follower count (displayed in the dashboard)
- A webhook secret for verifying incoming events from Meta
We do not store your Meta password or any data beyond what is necessary to operate automations on your connected accounts.
2.3 Messages and Comments
When a message or comment is received on your connected account, our webhook pipeline receives the content and stores it in your inbox so you can review it. This includes the sender’s name/ID and the message or comment text.
2.4 Contact Data
We store a contact record for each unique person who interacts with your connected accounts. Contact records include: the platform user ID, display name, and any tags you assign. We do not collect email addresses or phone numbers of your contacts.
2.5 Automation Rules
Automation rules you create (triggers, conditions, actions) are stored in our database and associated with your account.
2.6 Usage and Log Data
We maintain webhook processing logs and outbound action logs for debugging and auditing purposes. These logs may include message IDs, timestamps, and automation outcomes.
3. How We Use Your Data
- Delivering the service: To send automated replies and perform actions (tagging contacts, triggering webhooks) on your behalf based on your configured automations.
- Displaying your inbox: To show you incoming messages and comments in your dashboard.
- Account management: To authenticate you and manage your subscription or plan.
- Security and debugging: To detect and prevent fraud, fix bugs, and improve reliability.
- Communications: To send you service-related emails (e.g., account confirmation, critical alerts). We do not send marketing emails without your consent.
4. Data Sharing
We do not sell your data. We share data only in the following circumstances:
- Meta Platforms, Inc.: When you trigger an automated reply or action, we call the Meta Graph API using your access token. This is necessary to deliver the service.
- Third-party webhook URLs you configure:If you set up a “trigger webhook” action pointing to an external URL, we will POST event data to that URL as instructed by you.
- Infrastructure providers: We use third-party service providers for hosting, database storage, and background processing. These providers process data on our behalf under their own data protection agreements.
- Legal requirements: We may disclose data if required by law, court order, or to protect our rights or the rights of others.
5. Meta Platform Policy Compliance
My Auto DM connects to Instagram via the Instagram Business Login flow and is subject to Meta’s Platform Terms and Developer Policies. No Facebook account or Facebook Page is required. We request the following Instagram permissions:
instagram_business_basic— to access your Instagram Business Account info (ID, username, profile picture, follower count)instagram_business_manage_messages— to read and reply to Instagram DMsinstagram_business_manage_comments— to read and reply to Instagram comments
Data obtained from Meta APIs is used only to provide the automation service to the account owner. We do not use Meta data for advertising, profiling, or any purpose beyond what is described in this policy.
6. Data Retention
- Account data: Retained until you delete your account.
- Messages and contacts: Retained while your account is active. You may delete individual conversations from your dashboard.
- OAuth tokens: Retained until you disconnect the platform connection or delete your account. Tokens are invalidated at Meta when you revoke access.
- Webhook logs: Retained for 90 days for debugging purposes.
7. Your Rights and Choices
You have the right to:
- Access: Request a copy of the personal data we hold about you.
- Correction: Request that we correct inaccurate data.
- Deletion: You can permanently delete your account and all associated data directly from your account settings (Danger zone → Delete account). Alternatively, email us and we will process the deletion manually.
- Disconnect Instagram: You can disconnect your Instagram connection from your dashboard at any time. This revokes our ability to act on your behalf.
- Withdraw consent via Meta: You can also revoke our app’s access directly from your Instagram App Permissions.
To exercise these rights, email us at: dhananjay.singh011@gmail.com
8. Security
We implement industry-standard security practices: HTTPS encryption in transit, encrypted storage of access tokens, row-level security (RLS) on our database so each tenant can only access their own data, and HMAC signature verification on all incoming webhooks.
No system is perfectly secure. If you believe your account has been compromised, contact us immediately at dhananjay.singh011@gmail.com.
9. Children’s Privacy
My Auto DM is not directed at children under 13. We do not knowingly collect personal information from children. If you believe a child has provided us their information, please contact us and we will delete it promptly.
10. Changes to This Policy
We may update this policy from time to time. When we do, we will update the “Last updated” date at the top of this page. Continued use of the service after changes constitutes acceptance of the updated policy.
11. Contact Us
If you have questions about this Privacy Policy or your data, please contact:
My Auto DM
Email: dhananjay.singh011@gmail.com