Privacy Policy
Last updated: August 19, 2026
This policy covers Instagram API (https://instagramapi.dev), its dashboard, API, and the “IG Quick Facts” Chrome extension (together, the “Service”). It explains what data we collect and why. We built the Service to be pay-per-use with no unnecessary data collection — this page is meant to say plainly what that means.
Information we collect
Account information. When you sign up, our authentication provider (Clerk) collects your email address and, optionally, your name. We store a copy of these against your account record.
API keys. We store a one-way hash of each API key you generate, plus a display prefix and last 4 characters — never the full key in reversible form.
Usage data. For each API request, we log the endpoint called, the parameters you sent (which may include Instagram usernames or other public identifiers you looked up), the response status, credits charged, latency, and a timestamp. This is used for billing, your usage dashboard, and abuse prevention.
Payment information. Credit purchases are processed by Stripe. We never see or store your full card number — only the Stripe checkout session ID and the amount/credits granted.
Waitlist. If you join a waitlist from the site, we store the email address you provide.
The IG Quick Facts Chrome extension
The extension has a narrow, single purpose: showing public Instagram profile statistics for the profile page you have open. It collects and handles two things:
- ▹Your API key— saved locally in your browser via the extension’s
chrome.storage.local. It is only ever sent toapi.instagramapi.devto authenticate your requests. - ▹The Instagram username you’re viewing— when you click “Quick Facts,” the extension sends that username to
api.instagramapi.devto look up the profile’s public statistics.
The extension does not collect your general browsing history, does not run any analytics or tracking scripts, does not inject ads, and does not send data anywhere other than instagramapi.dev’s own API.
How we use data
We use the information above to operate the Service: authenticating requests, metering and billing usage, showing you your own usage/credit history, preventing abuse, and providing customer support. We do not use your data to determine creditworthiness or for lending purposes, and we do not use it for any purpose unrelated to operating the Service.
Data retention
We retain account, API key, and usage records for as long as your account is active, and for a reasonable period after in case you reactivate or for legal/accounting purposes. You can request deletion at any time — see “Your rights” below.
Security
API keys are stored as one-way hashes, not in reversible plaintext. All traffic to the API and dashboard is encrypted in transit (HTTPS). Access to production data is limited to what’s needed to operate the Service.
Your rights
You can view and manage your account data from your dashboard, including revoking API keys. To request a copy or deletion of your data, or ask any question about this policy, email support@mail.instagramapi.dev.
Changes to this policy
If we make material changes to this policy, we’ll update the “Last updated” date above and, where appropriate, notify you by email.
Contact
Questions about this policy or your data: support@mail.instagramapi.dev.