Privacy Policy

Last updated: 19 June 2026

This Privacy Policy explains how AlpsIT(“we”, “us”) handles information in connection with the AlpsIT Instagram Feedservice (the “Service”), which connects an Instagram account to a website so its public posts and profile can be displayed there.

1. Information we collect

When an Instagram account is connected to the Service, we collect, via the Instagram API:

  • Instagram account identifiers and profile information you choose to display (such as user ID, username, name, biography, follower/following counts, media count, account type, profile picture and website).
  • Recent media (posts) including captions, media URLs, permalinks, timestamps, and like/comment counts.
  • An access token issued by Instagram so the Service can fetch the above on your behalf.
  • Basic technical and log data (e.g. request timestamps and error messages) used to operate and troubleshoot the Service.

We do not collect your Instagram password, direct messages, or private content.

2. How we use information

  • To retrieve your public profile and posts and make them available to the website(s) you authorised to display your feed.
  • To keep your connection working (refreshing the access token before it expires).
  • To operate, secure, and troubleshoot the Service.

We do not sell your information, and we do not use it for advertising.

3. How we store and protect information

  • Access tokens are encrypted at rest and are never exposed to the websites displaying your feed or to the public.
  • Feed data is cached so that websites display your posts without repeatedly calling Instagram.
  • Data is hosted with our infrastructure providers (Supabase for the database, Vercel for application hosting), which act as processors on our behalf.

4. Sharing of information

We share your public profile and post data only with the website(s) you authorised to display your feed. We use the service providers named above to host and run the Service. We do not otherwise sell or share your information, except where required by law.

5. Data retention and deletion

We keep your data only while your account is connected. You can disconnect at any time, which deletes the stored access token and cached feed data. You may also request deletion of all your data at any time — see our Data Deletion instructions or email privacy@alpsit.com.au.

6. Meta / Instagram Platform

The Service uses the Instagram Platform and is subject to Meta’s Platform Terms and Developer Policies. Your use of Instagram remains governed by Instagram’s own terms and privacy policy.

7. Children

The Service is intended for businesses and is not directed at children under 13.

8. Changes to this policy

We may update this policy from time to time. Material changes will be reflected by the “Last updated” date above.

9. Contact