Authentication: Instagram API with Instagram Login. The Facebook Login for Business adapter is retained so existing Page-linked connections keep refreshing, publishing and disconnecting, but it is not offered for new connections.
Access path: Meta App Review plus business verification for advanced access
Callback: https://publishlyapi.com/integrations/social/instagram, https://publishlyapi.com/integrations/social/instagram-standalone, https://publishlyapi.com/oauth/instagram/callback
Canonical callback for new connections: https://publishlyapi.com/oauth/instagram/callback
Requested permissions: instagram_business_basic, instagram_business_content_publish, instagram_business_manage_comments, instagram_business_manage_messages, instagram_business_manage_insights
Legacy Facebook Login for Business — existing connections only, not requested in this submission: instagram_basic, pages_show_list, pages_read_engagement, business_management, instagram_content_publish, instagram_manage_comments, instagram_manage_messages, instagram_manage_insights, pages_manage_metadata. Not requested at authorization unless a deployment explicitly sets META_ALLOW_FACEBOOK_LINKED_INSTAGRAM.
Why: instagram_business_basic identifies the professional account the user chose so the connection is bound to a verified Instagram identity and the username is shown before publishing. instagram_business_content_publish creates the media container and publishes the user's own scheduled post, then reads back the resulting media id and permalink to confirm it is live. instagram_business_manage_comments reads the comments on that media and posts the replies the user writes in Publishly. instagram_business_manage_messages reads the conversations the account has received so the user can answer them in Publishly, and sends those replies within the window Instagram allows. instagram_business_manage_insights reads the account and post metrics Publishly displays back to the user who owns them.
Evidence path: Sign in to the reviewer workspace, connect a reviewer-owned professional Instagram account through the Instagram Login screen and confirm the connected username matches. Upload original test media, add a caption, publish, open the delivery receipt showing the returned media id and permalink, and open the live media URL. Open the inbox to show the comments on that media and post a reply. Send a direct message to the connected account from a second Instagram account, show it arriving in the inbox, and reply to it. Open analytics to show the account and post insights. Then disconnect the connection and confirm the credential is removed. The deployment must run with INSTAGRAM_LOGIN_ENGAGEMENT=true so the consent screen presents all five permissions.
Current limitation: Only Instagram professional (Business or Creator) accounts can be connected. Publishly publishes only content the user created or scheduled in the product, and replies only to comments and messages that account actually received. Direct message replies are sent only inside the response window Instagram permits; outside it Publishly disables the reply rather than attempting a send. Publishly does not read or write anything on Facebook Pages.
Official references: reference 1 / reference 2 / reference 3 / reference 4 / reference 5 / reference 6