Privacy Policy
Effective Date & Last Updated: October 7, 2026
1. Introduction & Overview
Welcome to InstaManager (imanager.developerchowk.com, "the Application", "the Service", "we", "us", or "our"). InstaManager is a social media management and scheduling web application developed by DeveloperChowk.
We are committed to protecting the privacy and security of your personal data. This Privacy Policy details how we collect, store, access, process, transfer, and protect information when you use our platform, including integrations with Google APIs (Google Drive) and Meta Graph APIs (Instagram & Facebook).
InstaManager's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy , including the Limited Use requirements.
Specifically:
- Strict Purpose Limitation: We only access, use, and process Google user data (Google Drive files and folders) to provide user-facing features—specifically allowing you to view, select, and schedule your own media files for publishing to Instagram.
- No Advertising or Market Research: Google user data is never used, sold, transferred, or disclosed for serving advertisements, retargeting, data brokeraging, or personalized advertising.
- No AI Model Training: Google user data is not used to train, retrain, or improve generalized AI or machine learning models.
- No Human Access: No humans (including InstaManager personnel) will read your Google Drive files unless you give explicit permission for troubleshooting, it is necessary for security purposes, or it is required by law.
2Information We Collect & Permissions Requested
A. User Account Information
When you register on InstaManager, we collect:
- Your full name and email address.
- Cryptographically hashed password (salted using bcrypt; plain text passwords are never stored or seen by us).
- Account preferences and workspace configuration settings.
B. Google Drive API Data & Scopes
When you voluntarily connect your Google Drive account, we request OAuth 2.0 authorization for the following scopes:
https://www.googleapis.com/auth/drive.readonlyorhttps://www.googleapis.com/auth/drive.file: Used strictly to list files (images and video assets), view thumbnail previews, retrieve file metadata (filename, MIME type, file size, creation timestamp), and stream media when you schedule a post to Instagram.- OAuth Tokens: We securely store encrypted OAuth access and refresh tokens in your tenant's isolated database record.
C. Meta / Instagram Graph API Data
When you connect your Instagram Professional (Business or Creator) account via official Meta OAuth:
- Instagram Account ID, username, profile picture, account category, and connected Facebook Page ID.
- Media insights, reach, engagement metrics, likes, and comment counts for analytics display.
- Direct messages (only if automated inbox responses are enabled by you in Settings).
- Page access tokens (encrypted at rest using AES-256-GCM).
3How We Use Your Information
All data collected is used exclusively for providing and operating InstaManager functionality:
Instagram Post & Reel Scheduling
Publishing photos, carousels, and Reels to your Instagram accounts at your chosen date and time via the official Meta Content Publishing API.
Google Drive Asset Streaming
Allowing you to browse folders and stream media files directly from Google Drive during publishing without storing permanent duplicate copies on external servers.
Analytics & Performance Insights
Aggregating engagement, impressions, followers growth, and top-performing posts to display in your analytics dashboard.
Direct Message Automation
Processing incoming DMs according to your custom trigger keywords and sending instant automated replies if configured.
4Third-Party Data Sharing & Transfers
We do NOT sell, rent, lease, or monetize your personal information or Google user data under any circumstances.
Information is only transferred to external service providers strictly necessary to deliver the application services:
- Meta Platforms, Inc. (Instagram Graph API): Media URLs, captions, and scheduling commands are sent to Meta's servers solely to execute your scheduled posts.
- Google LLC (Google Drive API): Authentication tokens and requests to list folder items or fetch media streams.
- Infrastructure Hosting (Render / MongoDB Atlas): Secure cloud hosting, encrypted database storage, and HTTPS TLS transmission.
5Data Security & Encryption Standard
We implement comprehensive technical and administrative security measures to protect your data against unauthorized access, loss, alteration, or disclosure:
- Encryption at Rest: All OAuth tokens (Google refresh tokens, Meta long-lived access tokens) and sensitive credentials are encrypted at rest using industry-standard AES-256-GCM authenticated encryption.
- Encryption in Transit: All communications between your client browser, our backend, and third-party APIs (Google and Meta) are enforced over secure HTTPS / TLS 1.3.
- Multi-Tenant Isolation: Data from different user accounts is strictly segregated with isolated query filtering.
6Data Retention, Revocation & Deletion Rights
You maintain complete control over your data, connected integrations, and stored assets:
Revoking Google Account Access:
You can disconnect your Google Drive at any time in the Settings page of InstaManager. Alternatively, you can revoke access directly through Google's security dashboard: Google Account Permissions .
Permanent Data Deletion:
You can request immediate and permanent deletion of your account and all associated tokens, credentials, and scheduling data by visiting our dedicated User Data Deletion Request Page or by emailing us at [email protected].
7Children's Privacy
InstaManager is not directed toward children under 13 years of age (or under 16 in the European Union). We do not knowingly collect or solicit personal data from children. If we become aware that a child has provided us with personal data, we will take immediate steps to delete such information.
8Changes to this Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our legal obligations, features, or integration policies. When updates occur, we will update the "Effective Date & Last Updated" timestamp at the top of this page. Continued use of InstaManager after modifications constitutes acceptance of the updated policy.
9Developer & Contact Information
If you have any questions, concerns, or requests regarding this Privacy Policy, your personal data, or our integration with Google APIs and Meta Graph APIs, please contact our team:
Application: InstaManager
Developer / Company: DeveloperChowk
Website: https://imanager.developerchowk.com
Support & Privacy Email: [email protected]
© 2026 InstaManager by DeveloperChowk. All rights reserved.