Privacy Policy
Last updated: March 2026
1. Introduction
This Privacy Policy describes how the PCI Meta App Review Demo (“we”, “our”, or “the app”) collects, uses, and protects information when you use our application. We use Facebook Login and the Meta (Facebook) Graph API and Instagram APIs to provide a demo dashboard for Instagram Business and Facebook Page management. By using the app, you agree to this policy.
2. Information We Collect
We collect information that you authorize through Facebook Login and that Meta provides to our app via their APIs:
- Facebook account: Your name, profile picture, and Facebook user ID.
- Facebook Pages: List of Pages you manage, Page names and IDs, and Page access tokens (used only to call Meta APIs on your behalf).
- Instagram Business account: If linked to a Page, we receive your Instagram username, profile picture, and account ID.
- Instagram insights: Account-level metrics (e.g. followers, reach, impressions, engagement) and per-post/per-reel metrics (e.g. reach, impressions, likes, comments, saves) that you see in the dashboard.
- Instagram media: Recent posts and reels (captions, thumbnails, permalinks, timestamps) to display in the dashboard.
- Brand analyses: If you or our systems run brand analyses, results may be stored in our database and shown in the dashboard.
We do not collect data beyond what is necessary to provide the dashboard and related features. We do not access your private messages, friends list, or other data not listed above unless you explicitly use a feature that requires it (and such features would be described in the app).
3. How We Use Your Information
We use the information we receive to:
- Display your connected Facebook and Instagram accounts, Pages, and insights in the demo dashboard.
- Show your recent Instagram posts and reels with their metrics.
- Display brand analysis results stored in our systems.
- Operate and improve the app, and comply with legal obligations.
We do not sell your personal information. We do not use your data for advertising targeting or for purposes unrelated to the app’s functionality without your consent.
4. Data Storage and Security
Access tokens and session data are used server-side to call Meta’s APIs and are not stored longer than necessary for your session. Brand analysis data may be stored in our database to power the “Brand analyses” section of the dashboard. We use industry-standard measures to protect data in transit and at rest. No guarantee can be given against all unauthorized access; we will notify users and regulators as required by law in the event of a breach affecting personal data.
5. Data Sharing
We do not sell or rent your personal information. We may share data only: (a) with Meta as necessary to use their APIs and in accordance with their terms and policies; (b) with service providers who process data on our behalf under strict agreements; (c) when required by law or to protect our rights and safety. Meta’s own data use and sharing are governed by Meta’s Privacy Policy and Platform Terms.
6. Your Rights and Choices
You can:
- Disconnect: Log out of the app to end your session. You can also revoke the app’s access from your Facebook settings (Settings & Privacy → Settings → Apps and Websites).
- Request access or deletion: Contact us (see Section 8) to request access to or deletion of data we hold about you. We will respond in line with applicable law.
- Complain: You have the right to lodge a complaint with a supervisory authority in your country.
7. Children
Our app is not directed at children under 13 (or higher age where required). We do not knowingly collect personal information from children. If you believe we have collected such data, please contact us and we will delete it.
8. Contact Us
For questions about this Privacy Policy or our data practices, please contact us at the email or address you use for your PCI / Meta App Review project. We will respond as soon as practicable.
9. Changes
We may update this Privacy Policy from time to time. The “Last updated” date at the top will be revised when we do. Continued use of the app after changes constitutes acceptance of the updated policy. We encourage you to review this page periodically.