Privacy Policy
Overview
NovLabs is a developer application created and operated by a single individual for personal use. It connects to the operator's own Instagram and Threads accounts through Meta's Graph API. The application is not offered to the public, does not accept external sign-ups, and has no users other than its operator.
Data accessed via Meta APIs
With the operator's explicit authorization, NovLabs may access the following data belonging to the operator's own Instagram and/or Threads account, as permitted by the scopes granted in the Meta Developer Dashboard:
- Basic profile information — user ID, username, display name, and profile picture associated with the authorized account.
- Content — a list of the operator's own posts, reels, stories, and replies, including captions, media URLs, timestamps, and associated metadata.
- Engagement and insights — likes, comments, saves, shares, impressions, reach, and other analytics metrics reported by the Instagram Graph and Threads APIs for the operator's own content.
- Messages and mentions — direct messages, comment threads, and replies received by the operator's account where the corresponding
manage_messages,manage_comments, ormanage_repliesscopes are granted. - Account metadata — account type, verification status, and business/creator category if applicable.
NovLabs does not access the private data of any other Meta user. API calls that return information about other accounts are limited to what Meta's Graph API surfaces publicly for content the operator has interacted with (for example, a commenter's public username on the operator's own post).
How the data is used
Data retrieved from Meta's APIs is used solely by the operator for personal purposes, including:
- Reviewing and managing the operator's own Instagram and Threads content.
- Analyzing engagement and performance metrics for the operator's own posts.
- Responding to comments, replies, and direct messages received by the operator's account.
- Scheduling or publishing content to the operator's own account.
The application does not use the data for advertising, user profiling, automated decision-making, or any commercial purpose beyond the operator's own account management.
Storage and retention
Access tokens, cached API responses, and any downloaded media are stored locally on the operator's own device in private application storage. There is no shared database, no cloud-hosted user store, and no data retention policy beyond the operator's own needs.
The operator can delete all stored data at any time by:
- Clearing the application's local cache or deleting the local database file, and
- Revoking the app's access from Instagram or Threads via Settings → Apps and Websites in the corresponding Meta app, or from the Business Integrations section of the Facebook account settings.
Security
The operator treats access tokens and API secrets as sensitive credentials: they are stored locally and are not committed to version control, embedded in client-side code, or exposed in public repositories. Standard HTTPS transport is used for all communication with Meta's APIs.
Children's privacy
NovLabs is a personal tool and is not directed at children. It does not knowingly collect personal information from children. The operator's own account may be owned by an adult, and the application does not process data from users Meta identifies as under the applicable age of consent.
Changes to this policy
This privacy policy may be updated if the application's data access changes materially. The updated policy will be posted at the same URL, and the "Last updated" date at the top of this page will be revised accordingly.
Contact
For questions about this policy, or to request deletion of any data associated with the NovLabs application, contact the operator at kolzazanovikov@gmail.com.