10xSTATION
Messaging integration

Messenger, Instagram & WhatsApp messaging integration

Connect your Facebook Page, the Instagram professional account linked to it, and your WhatsApp Business number to your own customer inbox or CRM. Messages your customers send on Messenger, Instagram Direct and WhatsApp arrive where your team already works, and your staff reply from there.

The service is operated by GainWells Global Sdn. Bhd., a company registered in Malaysia, using Meta’s official Messenger Platform, Instagram messaging and WhatsApp Business Platform APIs.

Your customers

Message your Page on Messenger, your Instagram account in Direct, or your number on WhatsApp

10xstation

Verifies each event from Meta and delivers it securely

Your inbox or CRM

Your staff read the conversation and reply from one place

Customer messages sent to your Facebook Page, Instagram account or WhatsApp number are received by 10xstation, verified, and delivered to your own inbox. Replies travel back the same way.
Who it is for

Built for businesses that talk to customers on Meta

Businesses with their own inbox or CRM

You already manage customer conversations in your own system and want Messenger, Instagram and WhatsApp messages to arrive there too, instead of in separate apps.

Teams that share customer conversations

Several staff members answer enquiries. Each conversation is visible to your authorised team, who reply from the same place they handle everything else.

Service and education providers

Businesses such as online schools and service providers whose customers get in touch through Facebook, Instagram or WhatsApp before they enrol or book.

How onboarding works

How your channels get connected

You never share a password with us. Access is granted through Meta’s own sign-in screens, and you choose exactly which Pages, WhatsApp Business Accounts and numbers to share.

Facebook Page and Instagram

  1. Step 1: We set up your workspace

    10xstation staff create a workspace for your business on our platform.

  2. Step 2: You receive a secure connect link

    We send you a single-use link. It can only be used once and expires after 7 days.

  3. Step 3: A Page admin opens the link

    The link must be opened by someone who is an admin of your Facebook Page. The page explains exactly what will be shared before anything happens.

  4. Step 4: Continue with Facebook

    Click "Continue with Facebook" and sign in with Facebook Login for Business. Facebook lets you choose which Pages and business assets to grant to 10xstation.

  5. Step 5: Choose the Page to connect

    Pick the Page you want to connect. The Instagram professional account linked to that Page is detected automatically.

  6. Step 6: Allow access to Instagram messages

    In the Instagram app, the account owner goes to Settings → Messages and story replies → Message controls → Connected tools and turns on "Allow access to messages".

  7. Step 7: Start replying from your inbox

    New messages to your Page and Instagram account are delivered to your inbox, and your staff reply from there.

WhatsApp Business number

  1. Step 1: Start the WhatsApp connection

    In your 10xstation account, go to Connections and choose to connect a WhatsApp number. This opens Meta’s WhatsApp Embedded Signup in a Facebook pop-up.

  2. Step 2: Choose your business and number

    Sign in with Facebook, select or create your business portfolio and WhatsApp Business Account, and choose one of the two options below.

  3. Step 3: Option A: the number you already use

    Connect the number you use in the WhatsApp Business app (coexistence). You keep using the app on your phone, and the same number also works through 10xstation.

  4. Step 4: Option B: a new number for the API

    Register a new number during signup that is used only through the API.

  5. Step 5: Add a payment method in WhatsApp Manager

    Meta charges your business directly for WhatsApp messages, so you add your own payment method in WhatsApp Manager. These charges are separate from your 10xstation subscription.

  6. Step 6: Start replying from your inbox

    WhatsApp messages to your number are delivered to your inbox alongside Messenger and Instagram, and your staff reply from there.

Scheduled posts and stories

Once your Page is connected, your team can write a post or story once and schedule it for your Facebook Page, your Instagram account, or both. 10xstation publishes it at the time you chose and shows the result and a link to the live post. Posts can be text, links, photos, several photos (a carousel on Instagram) or a video; stories are one photo or video. You can cancel a scheduled post at any time before it goes out.

WhatsApp Coexistence

Coexistence is Meta’s option for connecting a number you already use in the WhatsApp Business app. The number keeps working in the app on your phone and, at the same time, through 10xstation, so your team can answer from your inbox while you still reply from your phone when you need to.

What syncs

  • Your WhatsApp Business app keeps working on your phone, on the same number.
  • During connection you can choose to share your WhatsApp contacts and up to 180 days of chat history. We import only the last 90 days of that history into your inbox, in line with our retention period.
  • Messages you send from the WhatsApp Business app are synced into your inbox, so your team sees the whole conversation.

Limitations set by WhatsApp

  • Group chats, broadcast lists, and disappearing and view-once messages are not supported through the API. They keep working in the app but do not appear in your inbox.
  • WhatsApp limits coexistence numbers to 20 messages per second sent through the API.

WhatsApp messaging rules

You can reply freely within 24 hours of a customer’s last message. After that, or to start a conversation, only message templates approved by Meta can be sent, and you must have the person’s opt-in to receive WhatsApp messages from your business. You also need to follow the WhatsApp Business Messaging Policy and the WhatsApp Commerce Policy.

WhatsApp message charges

Meta charges your business directly for WhatsApp messages under Meta’s own pricing, using the payment method you add in WhatsApp Manager. These charges are separate from your 10xstation subscription. 10xstation does not bill them or add any mark-up.

What we access and why

Only the permissions needed to deliver your messages

We request the following Meta permissions. Each one is used for the purpose described and nothing else.

PermissionWhat we use it for
pages_show_listList the Pages you granted, so you can choose which one to connect.
pages_manage_metadataSubscribe the chosen Page to our webhooks so new messages are delivered, and unsubscribe it when you disconnect.
pages_messagingReceive Messenger conversations and send your business’s replies.
pages_read_engagementRead the Page name and the linked Instagram account when you connect, and read back the link of a post we published for you.
pages_manage_postsPublish the posts and stories your team writes and schedules in 10xstation to your Page, at the time you chose. Nothing is posted that your team did not write.
business_managementRequired by Meta alongside the Page and WhatsApp permissions. We use it only to read the business portfolio ID the connection belongs to and the assets you granted.
instagram_basicRead the linked Instagram professional account’s ID and username, so we can show which account is connected.
instagram_manage_messagesReceive Instagram Direct messages and send your business’s replies.
instagram_content_publishPublish the photos, videos, carousels and stories your team schedules in 10xstation to your Instagram professional account.
whatsapp_business_managementRead your WhatsApp Business Account and phone number details, subscribe the account to our webhooks, manage your message templates, and, for numbers you already use in the WhatsApp Business app, start the contact and chat history sync you chose to share.
whatsapp_business_messagingReceive WhatsApp messages and send your business’s replies and template messages.

Data we process

We process this data solely to deliver messages between your business and your customers: forwarding incoming messages to your system, sending your replies, and showing conversations to your authorised staff.

Connection data

Page ID and name, Instagram professional account ID and username, your business portfolio ID, WhatsApp Business Account ID, phone number ID, display phone number and verified business name, and access tokens.

Conversation data

Page-scoped IDs (PSID), Instagram-scoped IDs (IGSID) and WhatsApp business-scoped user IDs (BSUID) of people who message you, their WhatsApp phone number when WhatsApp provides it, message text, attachment links and their type, media shared on WhatsApp (images, audio, video, documents, stickers, locations and contacts), delivery and read statuses, reactions, timestamps, button tap (postback) payloads, and the messages your business sends.

Profile data

Where Meta permits it, the name or username and profile picture URL of the person messaging you, or their WhatsApp profile name and username if they use one. Used only to label the conversation in your inbox.

WhatsApp Business app data

For numbers you already use in the WhatsApp Business app: contact names from the app’s address book (synced once and again when they change) and the chat history you choose to share, of which we import the last 90 days.

Message templates

The WhatsApp message templates your business creates: name, category, language, content and Meta’s approval status.

Scheduled posts

The posts and stories your team schedules: text, link, uploaded photos and videos, publish time, and the post ID and link Meta returns once published.

What we never do

Your conversations are not our product

The integration exists to move messages between you and your customers. We do not use the access you grant for anything else.

  • We never message anyone without your business’s instruction.
  • We never post anything to your Page or Instagram account that your team did not write and schedule.
  • We never read or manage your ads.
  • We never access Page insights.
  • We never read personal Facebook profiles.
  • We never sell any data.
  • We never use your customers’ data for our own marketing.
  • We never use messages for advertising or profiling.
  • We never use messages to train AI models.
  • We never share conversations with anyone other than the business that owns the Page, account or number, apart from the service providers that host the service.
Security

How we protect your connection

Encrypted in transit and at rest

All traffic uses HTTPS/TLS. Access tokens are encrypted at rest with AES-256-GCM.

Verified webhooks

Every webhook from Meta is checked against its X-Hub-Signature-256 signature before we process it.

Signed deliveries

Every delivery to your system is signed with HMAC-SHA256 using a secret unique to your business.

Per-client API keys

Calls from your system to 10xstation are authenticated with keys and signatures issued to your business only.

Individual staff accounts

Our staff console requires individual accounts with hashed passwords. Access follows least privilege.

No message content in logs

Message content is never written to application logs.

Disconnecting and data deletion

You can switch it off at any time

Disconnecting

  • Ask us at hello@10xstation.com, or use Disconnect in your 10xstation console.
  • Or remove the app yourself in Facebook Settings → Business Integrations, or in Meta Business Suite → Business settings → Integrations → Connected apps.
  • For WhatsApp, you can also remove 10xstation in Meta Business Suite → Settings → Integrations, or in WhatsApp Manager → Partners. Disconnecting a WhatsApp number deletes our access tokens for it.
  • When Meta tells us the app has been removed, we stop processing and delete the access tokens.

Retention and deletion

  • Access tokens are kept only while the Page or WhatsApp number is connected and are deleted immediately on disconnection, when the service ends, or on a deletion request.
  • Messages, attachment links and profile names and pictures held by 10xstation are deleted automatically 90 days after they were received or sent. Your business keeps its own copy in its inbox.
  • WhatsApp media files are not stored by 10xstation. They are fetched from Meta only when an authorised user or your system requests them.
  • Contacts synced from the WhatsApp Business app are kept until the number is disconnected or 90 days after they were last updated. Message templates are kept while the number is connected.
  • You can request deletion at any time. See data deletion instructions.
Get In Touch

Questions about
connecting your channels?

Tell us which channels you want to connect and where your team answers customers today. We reply within one business day.