Compliance & Safety•3 min read•Updated May 2026
TL;DR
Yes. ManyReach uses Meta's official Instagram Graph API. We never store your Instagram password. Rate limits are enforced automatically.
Official API only
ManyReach connects through Meta's OAuth flow — the same authorization used by other approved apps. We receive a secure token, not your password.
Official API vs browser bots
- Official API: low ban risk, clear rate limits, no password sharing.
- Browser bots: high risk, violates Instagram ToS, requires your login credentials.
Rate limits and account safety
Instagram allows about 200 DMs per hour via API. ManyReach pauses sends when limits are hit. Most creators never reach this ceiling.
Tips for staying safe
- Vary DM copy across campaigns.
- Do not combine unofficial automation tools with ManyReach.
- Reconnect if Instagram flags unusual activity.