LeadExpert App Review Notes
Purpose: LeadExpert helps authorized Facebook Page owners send one Messenger private reply to eligible comments on their own connected Page posts/Reels, then lets the person continue only if they respond in Messenger.
Requested permissions and exact use
- pages_show_list: show and verify the list of Pages the logged-in user manages so they can choose which Page to connect.
- pages_manage_metadata: subscribe the selected Page to Page webhooks and verify webhook/settings access for comment events.
- pages_read_engagement: read the connected Page’s own recent posts/Reels and comments to detect configured keywords or eligible comment events.
- pages_messaging: send the allowed Messenger private reply tied to a Page comment and access Page conversation capability when the user initiates Messenger contact.
Compliance boundaries
- The app stores tokens server-side only.
- The app does not ask for pages_manage_posts, pages_manage_engagement, pages_read_user_content, ads permissions, Instagram permissions, or personal profile automation permissions.
- The app does not publish, edit, delete, like, or comment on Facebook content.
- The app sends only private replies to Page comments using Messenger Platform private reply behavior; it does not cold-DM followers or message personal profiles.
- Default setup starts safely in dry-run until the Page owner explicitly enables live replies.
Reviewer test path
- Open /connect and click Continue with Facebook.
- Grant the requested Page permissions and select a Page you manage.
- Create the local LeadExpert login after Facebook redirects back.
- Open the dashboard, verify the connected Page, configure a keyword and message, then keep dry-run or enable live for a controlled test Page.
- Comment the configured keyword on a Page post/Reel; the app records the event and sends one allowed private reply if live mode is enabled.