Comprehensive documentation of how GoTyps collects, stores, secures, and manages user data.
| Data Type | Source | Purpose | Retention |
|---|---|---|---|
| Instagram User ID | Graph API | Account identification and linking to GoTyps user profile | Duration of account connection |
| Username | Graph API | Display in creator dashboard and campaign submissions | Duration of account connection |
| Post Engagement Metrics | Graph API | Campaign tier verification and reward calculation | 90 days after campaign ends |
| OAuth Access Token | Meta OAuth Flow | Secure API access for reading engagement metrics | Refreshed every 60 days, deleted immediately on disconnect |
| Post Media ID | Graph API / Creator Submission | Unique identification of Instagram posts for campaign matching | Duration of campaign + 90 days |
| Account Type | Graph API | Verify account eligibility (personal vs. business) | Duration of account connection |
GoTyps implements industry best practices for OAuth token security:
Users can request data deletion through multiple channels:
All deletion requests are processed within 30 days as required by GDPR. Users receive confirmation email upon completion.
Full compliance with EU General Data Protection Regulation
Adherence to all Meta Platform Policies and Developer Agreement
Hosted on SOC 2 certified infrastructure (Supabase/AWS)