Limited Use Policy
This Limited Use Policy specifically explains how Connekit uses data obtained through the Instagram Graph API, in compliance with Meta's Platform Terms and the platform's Limited Use policy.
1. What data we obtain via the Instagram Graph API
When a Creator connects a professional Instagram account, through explicit OAuth authorization, Connekit obtains:
- Public profile information (username, photo, bio, follower count);
- Content metrics for the Creator's own posts (reach, engagement, views, likes, comments, saves, shares);
- Aggregated demographic data about the Creator's audience, when made available by the API.
2. How we use this data
We use data obtained via the Instagram Graph API solely to display metrics, profile, and content on the Media Kit of the very Creator who authorized the connection — the page they control and choose to publish.
We never combine one Creator's data with another account's data to generate market comparisons, rankings, or aggregated data products across third-party accounts.
3. What we do not do with this data
- We do not sell data obtained via the Instagram Graph API to third parties;
- We do not share this data with data brokers or for third-party advertising purposes;
- We do not use this data to train machine learning or artificial intelligence models unrelated to the Creator's own Media Kit;
- We do not use this data for any purpose other than displaying the Media Kit of the Creator who authorized the connection;
- We do not transfer this data to third parties except for the subprocessors necessary to operate the Platform, listed on our Subprocessors page, under contractual confidentiality obligations.
4. Limited retention
We keep data obtained via the Instagram Graph API only while the Creator's connection remains active.
When the Creator disconnects Instagram from the Media Kit editor, or removes Connekit's access directly in Instagram's settings (which triggers our deauthorization endpoint, POST /api/meta/deauthorize), we immediately invalidate and delete the stored access token.
When Meta forwards a formal data deletion request (POST /api/meta/data-deletion) or the Creator requests it directly, we permanently delete the profile, metrics, and cached content obtained via the API for that account, as detailed on our Data Deletion page.
5. Compliance with Meta's Platform Terms
This policy exists to fulfill the Limited Use requirements of Meta's Platform Terms applicable to data obtained via the Instagram Graph API. In the event of a conflict between this page and Meta's Platform Terms, Meta's Platform Terms prevail with respect to Connekit's obligations to Meta.
6. Contact
Questions about this policy can be sent to hello@connekit.me.