DynamoDM

Privacy Policy

Last updated: June 2026

1. Information We Collect

We collect information you provide directly: name, email, Instagram Business Account data (username, profile, followers count), automation rules you create, and payment information processed by Razorpay. We also collect usage data such as DM logs, analytics events, and lead capture data generated by your automations.

2. How We Use Your Information

We use your information to provide, maintain, and improve our services; process transactions; send transactional emails; provide customer support; monitor and analyze usage patterns; and comply with legal obligations. We do not sell your personal information to third parties.

3. Instagram & Meta Data

When you connect your Instagram account, we receive and store your Instagram Business Account ID, access token (encrypted at rest), username, and profile information. We use this solely to send DMs on your behalf as configured by your automation rules. We comply with all Meta Platform Terms and Instagram API policies.

4. Data Security

We implement industry-standard security measures including AES-256-GCM encryption for stored access tokens, HMAC signature verification for webhooks, JWT-based authentication, HTTPS enforcement, and rate limiting. However, no method of transmission over the Internet is 100% secure.

5. Data Retention

We retain your account data for as long as your account is active. Analytics events are retained for up to 1 year. DM logs are retained for 90 days. You may request deletion of your data at any time by contacting us.

6. Your Rights

You have the right to access, update, or delete your personal information; export your data (leads, DM logs); disconnect your Instagram account at any time; close your account; and opt out of marketing communications.

7. Contact Us

If you have questions about this Privacy Policy, please contact us at privacy@dynamodm.io.