You can ask Setpilot to permanently delete personal data associated with a Setpilot account or with an Instagram conversation processed through Setpilot. These instructions provide a public request method for data received through Meta products. Disconnecting an integration alone does not submit a deletion request.
1. Submit a deletion request
Email contact@setpilot.net with the subject Setpilot Data Deletion Request.
Use the email address associated with your Setpilot account when possible. If your request concerns an Instagram conversation, you may also contact the business that owns the Instagram account directly.
Authenticated owners can also export project data from Settings, permanently delete a contact from CRM, delete a project from the project selector, or close their Setpilot account from Settings.
2. Information to include
Include only the information needed to locate the relevant data:
- Your Setpilot account email, if you are a customer or user.
- The Setpilot project or business name, if known.
- Your Instagram username.
- The business Instagram account with which you communicated.
- The approximate date of the relevant interaction.
Do not send a password, access token, payment information or a full copy of your conversation.
3. Verification and customer coordination
We may request limited additional information to verify identity and prevent unauthorized deletion.
If the request relates to conversation data controlled by a Setpilot customer, that customer is normally responsible for deciding the request. We may refer the request to the customer and assist it in locating, deleting or de-identifying the relevant data.
4. What happens after a valid request
Depending on the verified request and our data protection role, we permanently delete relevant personal data from active systems. This includes, where linked to the subject: Instagram usernames and external account, conversation, comment and message identifiers; original and internal or translated message bodies; comment entry triggers; conversations, summaries, notes, classifications and CRM records; attachments and delivery queues; AI response runs and runtime checkpoints; Calendly email, phone, invitee or event URLs and encrypted attribution tokens; webhook payloads, metadata, metrics, audit records and scheduling records that can identify the subject.
To prevent an old webhook from recreating deleted data, we may keep a keyed, one-way HMAC value that cannot be used to recover the original Instagram identifier, together with a deletion cutoff time.
5. What may remain and third-party limits
After verified deletion, the following limited records may remain:
- A keyed replay-prevention HMAC value and a minimal de-identified completion record for up to 24 months.
- A keyed do-not-contact HMAC value, only when the person opted out, until that opt-out is withdrawn or the value is no longer needed to honor it.
- Records limited to the category, scope and period required by a concrete legal obligation, documented legal hold or narrow security need.
- Historical recovery copies that are not immediately rewritten by active-system deletion. Applicable deletion and suppression records must be reapplied before restored data resumes ordinary processing.
Meta, Instagram, Calendly, the Setpilot customer or another third party may keep independent copies under their own terms. Setpilot can delete only the copies and resources it controls.
6. Timeframe and status
We complete a valid request without undue delay, with a normal target of 30 days after receiving enough information and completing reasonable verification. If applicable law permits additional time, we will explain the reason and expected timing. Acknowledgment or a pending status means the request was received; it does not mean deletion is already complete.
7. Disconnecting an integration is different
Disconnecting Instagram or Calendly stops new local access and automation, cancels undelivered local work, attempts the supported remote unsubscribe and cryptographically destroys local integration credentials. A remote provider may not always confirm its part of the disconnection.
Disconnection does not delete history already stored and does not by itself start the 90-day commercial-cancellation period. Use a separate deletion request or authenticated deletion operation to remove stored data.
8. More information
For more information about how Setpilot handles personal data, read the Setpilot Privacy Policy.
