Data deletion request

Last updated: June 16, 2026

Document version: 2026-06-16.

Summary

This page describes how to request deletion of the personal data stored by replibo, in compliance with the Brazilian General Data Protection Law (LGPD, Law 13.709/2018) and Meta's Data Deletion requirements for apps using the Instagram Graph API.

We honor any valid request within 30 days (Meta deadline) or 15 calendar days (LGPD art. 19, §1º deadline), whichever is shorter. There is no cost and no need to justify the request.

1. Delete data from your replibo account

If you are a replibo customer and want to delete all your data:

  1. Sign in at https://app.replibo.com/login.
  2. Open Settings from the side menu (or the "More" tab on mobile).
  3. Scroll to the "Delete my account" card and click Delete account.
  4. Confirm the deletion. From that moment:
    • Your session is terminated and login is blocked immediately;
    • Instagram access tokens are revoked and deleted;
    • Your rules, comments, replies, purchases and profile data are anonymized within 30 days (some financial records may be retained for the legal period required by Brazilian tax law and the Consumer Code, art. 26 CDC, without any direct personal identifier).

2. Delete data by email

If you no longer have access to the account, or prefer to make a written request, email us at privacy@replibo.com with:

  • The email registered with replibo;
  • Optionally, the Instagram username (@) of the accounts you connected: this speeds up locating your data.

We respond within 15 calendar days (LGPD art. 19, §1º) confirming the deletion or explaining, in plain language, any specific legal impediment (e.g. a tax retention duty over payment receipts); in which case we keep only the strict minimum required, anonymizing everything else.

3. Delete data via Meta's Data Deletion flow

If you revoked replibo's access from Instagram's settings (or Meta itself triggered the deletion flow), we receive a notification on the Data Deletion Callback endpoint registered in the Meta App Dashboard.

We honor those requests within 30 days and expose the processing status at the public URL below (no personal data: just a status of "received", "processing" or "completed"):

https://api.replibo.com/auth/instagram/data-deletion/status?code=<code>

The code parameter is the unique token that Meta generates and sends to you when you trigger the request. Just paste the URL into your browser.

4. What gets deleted

The deletion covers all personal data we process, including:

  • replibo account: name, email, password hash;
  • Connected Instagram professional accounts: access tokens (encrypted at rest), Instagram Business Account ID, username, profile picture, refresh history;
  • Comments and replies: text, author, attached media, send status, timestamps;
  • Settings: rules created, notification preferences, auto-recharge opt-in;
  • Financial history: partially preserved in anonymized form for the statutory tax retention period (5 years from the operation date, under LGPD art. 16, Brazilian Tax Code art. 174 and Consumer Code art. 26).

5. More information

This page is a simplified path for the deletion operation. For a detailed explanation of how we process data, the legal bases and the list of sub-processors, see the full Privacy Policy.

The data protection officer (LGPD art. 41) can be reached at privacy@replibo.com.