Homeprivacy

privacy

Last Updated: May 19, 2025

1. Introduction

Palette-Tech.io (“we,” “us,” or “our”) operates an AI-powered platform for intelligent management and automation of Instagram Direct Messages (DMs), order tracking, and sales analytics, designed to support businesses Protecting your privacy is a core priority. This Privacy Policy explains what information we collect, how we use it, and your rights regarding your data.

By registering for or using Palette-Tech.io (“Service”), you agree to the terms outlined in this Privacy Policy and consent to the collection and use of your data as described herein.


2. Information We Collect

A. User Account Data

  • Registration details: name, email address
  • Instagram account information: Instagram user ID, username, business account status

B. Instagram API Data

When you connect your Instagram Professional account via OAuth, we collect:

  • Access Token with permissions/scopes: instagram_basic, instagram_manage_messages
  • Profile metadata: username, business account ID
  • Direct Messages (DMs) content and metadata: message text, timestamps, sender and recipient IDs

C. Order and Sales Data

  • Product orders, quantities, order statuses, inventory information

D. Technical and Usage Data

  • Access timestamps, API request logs
  • Cookies used for authentication

3. How We Use Your Information

Core Service Delivery

  • Access and reply to your Instagram DMs through our AI chatbot to provide customer engagement and sales assistance
  • Record and update order status and inventory levels within your dashboard

Analytics and Reporting

  • Generate sales, messaging, and engagement reports to help improve your business insights

Compliance and Security

  • Enforce Instagram’s messaging policies, including the 24-hour messaging window and rate limits

4. Data Retention & Minimization

  • DMs and related metadata are retained up to 30 days after the last interaction, then deleted or anonymized
  • Order and sales data are retained for up to 5 years to comply with legal and tax obligations, then anonymized
  • We only collect data necessary to deliver and improve the Service

5. Sharing and Disclosure

We do not sell or rent your personal data. We may share your data only with:

  • Meta Platforms, Inc., to perform API requests and comply with their policies
  • Legal authorities, if required by law, subpoena, or valid governmental request

6. Third-Party Platforms

Messages and data shared through Instagram’s API are also stored on Instagram’s servers and governed by Instagram’s own Terms of Service and Privacy Policy. For more details, see:

If you revoke Palette-Tech.io’s access via your Instagram settings, we will delete or anonymize your related data within 30 days.


7. Security Measures

  • All data transmitted is encrypted using HTTPS
  • Access Tokens and sensitive data are encrypted when stored
  • Role-based access controls limit data access to authorized team members only
  • Regular security audits and infrastructure protections (firewalls, monitoring) are in place

8. Your Rights and Choices

You have the following rights regarding your personal data:

  • Access & Portability: Request a copy of your data
  • Correction: Request correction of inaccurate or incomplete data
  • Erasure: Request deletion of DMs and profile data, except order data required by law, which will be anonymized
  • Restriction & Objection: Limit or object to certain processing activities
  • Withdrawal of Consent: Disconnect your Instagram account or revoke permissions at any time

To exercise these rights, please contact us at:
privacy@palette-tech.io


9. Cookies and Tracking

We use cookies and similar technologies to:

  • Authenticate user sessions
  • Remember user preferences

You may disable cookies in your browser, but some platform features may not work properly without them.


10. Contact Us

For questions or concerns about this Privacy Policy or to submit data protection requests, contact:
support@palette-tech.io