Facebook Page integration
Using Meta's official APIs and only the permissions granted by the authorized account holder, Moveez can identify managed Pages, subscribe the connected Page to supported webhook events, read Page content and engagement, review user comments, prepare or perform approved replies and moderation, manage user-initiated Page conversations, and support approved Page publishing workflows.
Facebook permissions
- pages_show_list — identify the Facebook Pages the authorized account holder can manage;
- pages_manage_metadata — connect the Page to the application's supported webhook events;
- pages_read_engagement and pages_read_user_content — display Page content and user engagement needed for review;
- pages_manage_engagement — carry out approved comment replies or moderation actions;
- pages_messaging — receive and respond to user-initiated Page conversations within Meta's applicable rules;
- pages_manage_posts — support approved Page publishing operations where enabled;
- business_management — identify and connect business assets when required by the configured Meta business authorization flow.
Instagram professional account integration
For an expressly connected Instagram professional account, Moveez may read the account's basic identity, prepare and publish approved organic content, surface supported comments or mentions, and manage supported messages voluntarily sent to the account. Access is limited to the Instagram permissions approved by Meta and granted by the account holder.
Instagram permissions
- instagram_business_basic — identify the connected professional account;
- instagram_business_content_publish — support approved organic content publishing;
- instagram_business_manage_comments — review and manage supported comments;
- instagram_business_manage_messages — manage supported, user-initiated Instagram conversations.
Messaging safeguards
Moveez does not initiate unsolicited conversations, send bulk messages or use conversations for unrelated advertising. Replies are limited to supported, user-initiated interactions, authorized accounts, applicable messaging windows and platform policies. Suggested replies may be AI-assisted, but sensitive actions remain subject to configured operator review.
Data controls
OAuth credentials are stored in restricted server-side storage. Webhook signatures are verified and access is limited to the permissions needed for the enabled workflow. Details are provided in the privacy policy. Account holders and affected users can follow the data deletion instructions.