Instagram Shopping Legal addendum · Legal version v1 · Last updated: July 13, 2026
Instagram Shopping / Meta Graph API Compliance
Last updated: August 24, 2026
This addendum summarizes AtlasCore alignment with Meta Platform Terms, Instagram Platform Policy, and Graph API developer requirements for connected Instagram Shopping / Meta Commerce accounts.
Independent application status
AtlasCore is an independent software application. Instagram, Meta, and related marks are trademarks of Meta Platforms, Inc. or its affiliates. AtlasCore is not sponsored, endorsed, or affiliated with Meta.
Permitted SaaS sync operations
AtlasCore accesses Meta Graph API endpoints only after explicit merchant authorization. Permitted operations include:
- Catalog sync: product catalog metadata for dashboard visibility, and seller-initiated `items_batch` CREATE / UPDATE / DELETE when the stored grant includes `catalog_management`
- Order ingest: Meta Commerce order id, status, date, item counts, and operational totals — not buyer or shipping fields
- Inventory: catalog availability may be included on seller-initiated catalog batch writes; Instagram inventory quantity PUTs are not invoked under the current grant
AtlasCore does not scrape Instagram or Facebook interfaces, harvest public profiles at scale, or access data outside granted OAuth scopes.
Rate limits & API discipline
- AtlasCore respects Meta Graph API rate limits and implements backoff on throttled responses
- Sync and webhook processing are deduplicated per connected business account
- Data deletion and deauthorize callbacks are handled per Meta Platform requirements
Credential security & prohibited practices
- Token encryption: OAuth access tokens are encrypted at rest (AES-256-GCM)
- Transport: Production traffic uses TLS 1.2+ (HTTPS)
- Webhook verification: Inbound Meta webhooks are signature-verified before processing
- Tenant isolation: Each seller links their own Meta business account; cross-user access is denied
- Prohibited: screen scraping, credential sharing, re-identifying users for unrelated purposes, or reselling Graph API data
Meta data deletion requests are fulfilled via our platform callback; status is reported at Instagram Deletion Status.
Seller controls
- Disconnect Instagram Shopping in AtlasCore to stop sync and purge stored credentials
- Remove AtlasCore integrations in Meta Business Settings as needed
- Contact privacy@atlascore-market.com for data subject requests
See our Privacy Policy and Disconnect Marketplace guide.