Meta App Review Ready • GDPR & CCPA Compliant

Privacy Policy

Last Updated: September 4, 2026

1. Overview and Scope

This Privacy Policy describes how Juno ("we", "us", or "our") collects, uses, stores, and protects information when you connect and operate your Instagram Professional Accounts and WhatsApp Business accounts through our automated conversational software platform.

Our software operates strictly via official Meta Graph API endpoints and the Meta WhatsApp Cloud API. We are committed to maintaining the highest standard of security, transparency, and compliance with the Meta Platform Terms and Developer Policies.

2. Information We Collect

In order to provide autonomous conversational services, Juno collects and processes the following categories of data:

  • Connected Account Credentials: Instagram User IDs, Instagram Business Account IDs, WhatsApp Business Phone Numbers, and OAuth 2.0 system access tokens granted during authentication.
  • Message & Comment Content: Inbound direct message text, story mention metadata, public post comments matching configured keyword triggers, and outgoing automated replies.
  • Sender & Commenter Public Profile Data: Public Instagram usernames, names, public profile picture URLs, and WhatsApp phone numbers as transmitted via official Meta Webhooks.
  • Captured Lead Information: Contact emails, phone numbers, and intent tags voluntarily provided by users in the course of conversational qualification.
  • Technical Usage Logs: Webhook delivery receipts, response latency metrics, error event payloads, and API call volumes for debugging and safety rate limiting.

3. Purpose of Data Processing

Juno processes collected data solely for the following legitimate business purposes:

  • Executing automated direct message replies configured by the subscribing business.
  • Detecting post comment triggers and dispatching the designated public reply and private DM opener.
  • Providing a unified dashboard for customer support oversight and 1-click human handoff.
  • Enforcing safety rate limits, quiet hours, and anti-spam controls compliant with Meta API limits.
  • Aggregating non-identifiable daily usage statistics (message counts and resolution percentages).

We never sell, rent, or monetize your customer data, conversation contents, or lead lists to third parties or advertising brokers.

4. Subprocessors & Third-Party Services

We partner with a strictly vetted set of cloud infrastructure providers to deliver our services:

SubprocessorRoleData Location
Meta Platforms, Inc.Official Graph API, Instagram Webhooks & WhatsApp Cloud APIUnited States / Global
Anthropic PBCAI Language Model Text Generation (Zero Training on Customer Prompts)United States
Vercel Inc.Edge Web Application Hosting & Serverless ComputeUnited States / Global CDN

5. Data Storage, Retention & Security

All customer communications are encrypted in transit via Transport Layer Security (TLS 1.3) and encrypted at rest using AES-256 standards. Meta access tokens are stored in hardware-bound credential vaults and are never transmitted to client browsers.

Conversation logs and lead entries are retained for the duration of the active subscription to facilitate the unified inbox and CRM export. Customers may configure custom retention windows (e.g. 30, 60, or 90 days) in dashboard settings.

6. User Rights & Data Deletion (Meta Compliant)

Under GDPR, CCPA, and Meta Platform Terms, every account holder and end-user has the right to access, rectify, or permanently delete their personal data.

To submit an automated data deletion request, please visit our designated User Data Deletion Callback Page. All deletion requests receive an instant confirmation tracking code and are fulfilled within a guaranteed 30-day SLA.

7. Contact Information

If you have any questions, concerns, or requests regarding this Privacy Policy or our Meta Graph API integrations, please contact our Data Protection Officer at:

Juno Compliance & Legal Desk

Email: privacy@thewebvale.com

General Legal: legal@thewebvale.com