Privacy Policy
Hermes Meta MCP Review Console Privacy Policy
Effective date: July 19, 2026
Purpose
This demo app is used to verify Meta API access for a Hermes Meta MCP integration during Meta App Review. It connects to Threads and optional Instagram only when a reviewer or authorized tester starts the OAuth login flow.
Data accessed
Depending on the reviewer-selected login flow, the app may request and display Meta account identifiers, profile names, Threads usernames, linked Instagram Business or Creator account identifiers, and permission proof returned by Meta APIs.
How data is used
Data is used only to demonstrate the requested permissions and to show reviewers that the integration can retrieve IDs and publish a reviewer-approved Threads text post.
Storage
The demo does not keep a durable user database. OAuth access tokens are held in short-lived, HTTP-only session cookies so server endpoints can fetch the reviewer-approved Meta API data. The Clear OAuth Session control removes these cookies.
Sharing
The app does not sell or share reviewer data with third parties. It only sends requests to Meta APIs required for the visible demo workflow.
Deletion
Users can clear the OAuth session from the console. Meta data deletion instructions are available at /data-deletion, and the callback endpoint is /api/data-deletion.
Contact
For review questions, use the contact information provided in the Meta Developer App dashboard submission.