MatnBot Meta app review
ITBeep operates MatnBot as a workspace platform for customer-authorized WhatsApp Cloud API support and automation. This public review reference does not expose app secrets, access tokens, business IDs, phone-number IDs, provider message IDs, or internal workspace IDs.
Required Public URLs
Privacy Policy
Public privacy policy for account, workspace, bot, Meta, and WhatsApp data.
Terms of Service
Customer responsibilities, acceptable use, AI operation, and connected-channel terms.
Data Deletion Instructions
Public deletion request flow and Meta callback status behavior.
WhatsApp Product Page
Reviewer-facing overview of the WhatsApp Cloud API automation workflow.
App Icon
1024 x 1024 MatnBot application icon for Meta app settings.
Requested Meta Capabilities
whatsapp_business_managementidentifies and manages only the WhatsApp Business assets that a customer authorizes through Embedded Signup.whatsapp_business_messagingsends customer-requested WhatsApp messages and processes message and delivery webhooks for connected phone numbers.public_profileis used only as part of Meta authorization for Embedded Signup. MatnBot account sign-in uses its own email and password authentication.
Reviewer Flow
- Open https://matnbot.com/login and sign in with the reviewer credentials supplied in the App Review submission.
- Open Dashboard, then Settings, Channels, and WhatsApp.
- A workspace Owner or Admin starts Meta Embedded Signup and authorizes a WhatsApp Business account and phone number.
- Bind the connected phone to a MatnBot bot and choose HumanOnly, Copilot, or controlled Autonomous operation.
- Send an inbound WhatsApp message to open the service window, then use Send test or the operator console to verify delivery.
Safety Boundaries
MatnBot keeps provider tokens server-side, redacts sensitive diagnostics, verifies workspace roles before channel changes, and supports AI-only, AI-assisted, and human-only operation. The AI cannot override deterministic channel gates such as consent, authorization, policy, billing, privacy, kill-switch, and human takeover controls.
Data Handling
Customer access tokens are stored only in the encrypted server-side credential vault. MatnBot verifies workspace roles before channel changes, validates Meta webhook requests, limits diagnostic exports, and provides public deauthorization and data-deletion handling.