Privacy and Instagram

Instagram Data Deletion

Use these public instructions to disconnect a professional Instagram account from Fader Club and delete retained data associated with the Instagram comment-to-private-reply integration.

Working legal draft · Last updated August 22, 2026. Authenticated Support is the current in-product request channel; Fader Club does not yet publish an unauthenticated privacy-contact channel. Qualified Brazilian counsel must review this process, and the operator's formal identity, privacy contact, and account-recovery escalation path must be published, before commercial launch.

Disconnect Instagram in Fader ClubOpen document

Sign in to the Fader Club account that connected Instagram, open Creator Hub, choose Instagram automatic replies, and select Disconnect. Fader Club immediately blocks new replies and cancels deliveries that have not crossed the provider boundary. It then asks Meta to remove the account's comments subscription. The stored access token, Instagram account ID and username are cleared only after Meta confirms that removal, so an uncertain provider result remains visibly pending instead of being guessed. Once the page shows a confirmed disconnect, select Delete retained data, review the warning, and choose Delete permanently. This cannot be undone. It deletes the saved automations, rule history, delivery records, and aggregate results tied to the disconnected connection; it does not delete the Instagram account or its posts.

Support and account accessOpen document

If you can sign in but the disconnect remains pending, the deletion action fails, or you want a broader account privacy request reviewed, use Fader Club Support and identify the account and Instagram integration concerned with the minimum information needed. The self-service deletion flow requires access to the Fader Club account that owns the connection. Fader Club does not yet publish an unauthenticated privacy-contact channel, so an account-recovery and privacy-escalation path for people who cannot sign in remains a mandatory pre-launch requirement. Never send a password, access token, authentication code, full payment-card data, or an unnecessary identity document.

Instagram data Fader Club handles

The integration stores safe connection metadata such as the professional account ID and username, granted scopes, subscription state and credential-expiry timestamps; the token itself stays in restricted Supabase Vault storage. An automation stores the chosen media ID and type, trigger keywords or exclusions, creator-authored reply, frozen destination, lifecycle state, and aggregate results. A webhook's comment text is matched in memory and is not persisted. Minimal service-only receipts retain provider event, comment, media and message identifiers, timestamps, the selected rule, delivery state and symbolic error classes. Fader Club does not persist the raw webhook body, commenter username, recipient identity, raw IP address, user agent, or provider response body.

What disconnecting removes and stops

A confirmed disconnect permanently cancels the connected account's rules, clears the Instagram account ID, username, scopes and subscription metadata, and deletes the retained Vault credential. It stops future comment processing and private replies. Work not yet sent is cancelled; a request already sent to Meta cannot be recalled and may still complete once. Delete retained data is the separate irreversible step that removes the retained automation records tied to the disconnected connection. Neither action deletes the entire Fader Club account, its purchases, unrelated creator data, the Instagram account, or its posts. Removing Fader Club only in Meta or Instagram may revoke provider access but may not complete the local cleanup, so use the Fader Club flow as well.

Retention after disconnect or a request

If the creator does not use Delete retained data, expired or consumed OAuth state is removed after one day, minimal unmatched comment receipts after eight days, operational event and terminal delivery records once they are at least ninety days old, and anonymous daily aggregate counters after four hundred days. Legacy public redirect compatibility is finite and may remain valid for up to four hundred days; newly sent direct destinations are not click-tracked by Fader Club. The self-service action removes the live retained automation records tied to the disconnected connection instead of waiting for those scheduled windows. Other account records follow the Privacy Policy. Mandatory legal, security, dispute, audit, and backup retention may limit immediate deletion outside the live integration tables, with access restricted when appropriate.

Data already held by Meta or recipients

Fader Club cannot retract a private reply that Instagram already delivered, remove a destination link from a recipient's inbox, or erase records controlled independently by Meta. Use the privacy and account controls provided by Instagram or Meta for provider-side data. A direct destination link opens the creator-selected site without passing through Fader Club's redirect service; an older legacy redirect, when still valid, resolves only to the frozen destination and records aggregate counts without visitor identity.