Linkar Back to app

Linkar / public policy

Privacy policy

Last updated: 20 August 2026

Linkar helps creators and businesses automate specific Instagram comment and direct-message replies. This policy explains what we collect, why we use it, and how you can ask us to delete it.

Information we receive

When you connect an Instagram professional account, we receive the account identifier, username where available, access token, and the Instagram comments, messages, media identifiers, and delivery events needed to run the rules you create. We also receive your workspace details and support messages.

For comment-to-message automations, we store the Instagram-scoped participant identifier, source comment and media identifiers, interaction and delivery timestamps, and the latest follow-status result needed to enforce your configured follow gate and prevent duplicate delivery.

How we use information

We use this information to authenticate your Instagram account, receive official Meta webhooks, evaluate your saved trigger/condition/action rules, send the replies you configured, prevent duplicate delivery, provide support, and keep the service secure. Linkar does not use AI-generated replies in this MVP.

Sharing and processors

We share information only with service providers needed to host the application and with Meta’s APIs when you ask Linkar to send or receive Instagram data. We do not sell personal information or use Instagram content for advertising.

Storage and security

Access tokens are encrypted at rest. Webhook signatures are verified before processing, and event identifiers are deduplicated. No online service can guarantee absolute security; please use a strong account and workspace password and report suspected misuse promptly.

Retention and deletion

We retain workspace configuration and delivery records for as long as needed to provide the service or meet legal obligations. Comment-to-message participant records are automatically deleted 90 days after their automation finishes running (delivered, expired, or failed) or after their messaging window closes without a reply. You can disconnect an Instagram account in the app or request deletion sooner at /data-deletion. Meta data deletion callbacks are handled at /api/meta/data-deletion.

Your choices

You can stop an automation, disconnect your account, request access to information associated with your workspace, or request correction or deletion. Contact [email protected] with your workspace and Instagram username.

Changes

We may update this policy as Linkar changes. We will update the date above and, where appropriate, notify account owners of material changes.

Questions? [email protected]