# Tamanor > Tamanor is a Social Account Firewall: it monitors comments and reviews across connected social accounts, detects spam, scams and harmful behavior with AI risk detection, and prepares safe moderation actions that a human approves. Read-only by default, multi-tenant with row-level security and a full audit log. Tamanor is read-only by default and never executes a moderation action without human approval. It connects only through official OAuth and never scrapes or stores passwords. ## Capabilities (verified true) - Facebook Page comment monitoring - Facebook comment hiding (human-approved) - Instagram Professional comment monitoring - Google Business review monitoring - Human-approved moderation actions - Human approval workflow - Signed, deduplicated webhooks - Automated monitoring & proposals - Append-only audit log - Multi-tenant workspaces - PostgreSQL row-level security isolation - Role-based access control - AI risk detection & prioritization - Token encryption at rest (production) ## Provider status (single source of truth) - Facebook Page: live_verified (live) — Live read-only comment monitoring is verified. Comment hiding is human-approved and off by default; Tamanor never deletes, replies, likes, bans or reports. - Instagram Business: implementation_complete_verification_pending (verification pending, not live) — Implementation complete — discovery, read-only comment ingestion with pagination and webhooks. Real provider verification via Meta App Review is pending, so Instagram is not yet live. - Google Business Profile: foundation_only (verification pending, not live) — Connector implementation/foundation is ready for approved API access. Real provider verification is pending, so Google Business review monitoring is not yet live. - YouTube: research — Not supported yet — research. Tamanor does not claim YouTube support. - LinkedIn Company Page: research — Not supported yet — research. LinkedIn organic comment access is partner-gated. - TikTok: research — Not supported yet — research. TikTok's comment API is app-review-gated. ## Platform & architecture - [What is Tamanor?](https://tamanor.com/platform/what-is-tamanor): Tamanor is a Social Account Firewall that monitors comments and reviews on connected social accounts, detects risk with AI, and prepares safe moderation actions a human approves. - [How Tamanor works](https://tamanor.com/platform/how-tamanor-works): Tamanor connects via official OAuth, reads comments and reviews on a schedule and via webhooks, classifies risk with AI, and routes proposed actions through a human approval queue. - [Why Tamanor](https://tamanor.com/platform/why-tamanor): Tamanor is built safe-by-default: official OAuth only, read-only by default, human approval before any action, row-level tenant isolation, and a full audit trail. - [Tamanor architecture](https://tamanor.com/platform/architecture): Tamanor is a multi-tenant application with a Next.js web app, a background worker, PostgreSQL with row-level security, and injectable platform connectors that isolate provider network calls from database transactions. - [Tamanor security](https://tamanor.com/platform/security): Tamanor connects only through official OAuth, never scrapes, never stores passwords, keeps tokens server-side and out of logs, and is read-only by default with human approval before any action. - [Row-level security (RLS)](https://tamanor.com/platform/row-level-security): Tamanor enforces tenant isolation at the database level with PostgreSQL row-level security, so a forgotten filter in application code can never leak another tenant's data. - [Audit log](https://tamanor.com/platform/audit-log): Tamanor records every meaningful action — connections, syncs, proposals, approvals and moderation — in an append-only, tenant-scoped audit log that never contains token material. - [Permission model](https://tamanor.com/platform/permission-model): Tamanor separates platform capability (what an account's OAuth grant truly allows) from workspace roles (what a team member is allowed to do), and offers an action only when both permit it. - [Role model](https://tamanor.com/platform/role-model): Tamanor uses role-based access within each workspace so owners, admins, analysts, reviewers and viewers see and do only what their role allows. - [Webhook architecture](https://tamanor.com/platform/webhook-architecture): Tamanor verifies every inbound webhook's signature, routes Facebook and Instagram events through one unified connector, rejects replays, and always resolves the tenant from the connected account — never from the payload. - [Worker architecture](https://tamanor.com/platform/worker-architecture): A separate Tamanor worker runs scheduled read-only monitoring, token-expiry checks and webhook follow-up, each under a trusted tenant context and an account-level lease that prevents overlapping syncs. - [Data protection](https://tamanor.com/platform/data-protection): Tamanor stores only the OAuth tokens and public content needed to protect a brand, isolates it per tenant with row-level security, keeps secrets out of logs, and cleans up short-lived onboarding data automatically. - [Privacy](https://tamanor.com/platform/privacy): Tamanor processes public social content and OAuth tokens for the sole purpose of protecting the connected brand, with tenant isolation, secret scrubbing and no selling of data. - [Encryption](https://tamanor.com/platform/encryption): Tamanor encrypts OAuth tokens at rest in production and blocks storing plaintext tokens in production, so credentials are protected even at the database layer. - [AI moderation](https://tamanor.com/platform/ai-moderation): Tamanor's AI classifies each comment and review for risk and category, combining brand rules with AI analysis, then proposes actions for a human to approve — it never moderates automatically. - [Automation](https://tamanor.com/platform/automation): Tamanor automates monitoring, risk detection and action preparation, but keeps execution human-approved: automation creates proposals, it never executes moderation on its own. - [Proposal engine](https://tamanor.com/platform/proposal-engine): For high-risk items, Tamanor prepares a proposed moderation action with context and routes it to the approval queue; it proposes but never executes automatically. - [Roadmap](https://tamanor.com/platform/roadmap): Facebook Page comment monitoring is verified live. Instagram is implementation-complete but verification-pending (Meta App Review). Google Business is a foundation pending approved API access. YouTube, LinkedIn and TikTok are research — not supported. ## Features - [Comment & review monitoring](https://tamanor.com/features/comment-monitoring): Tamanor continuously reads comments and reviews on connected accounts, deduplicates them, and classifies each for risk so nothing important is missed. - [Reputation analytics](https://tamanor.com/features/reputation-analytics): Tamanor turns monitored comments and reviews into reputation analytics — risk levels, categories and trends — so a brand can see its exposure at a glance. - [Actor risk](https://tamanor.com/features/actor-risk): Tamanor tracks repeated risky behavior from the same author across a brand's content, so persistent bad actors stand out rather than being judged one comment at a time. - [Action queue](https://tamanor.com/features/action-queue): The Tamanor action queue holds proposed moderation actions for human review; nothing runs on a platform until a reviewer approves it. - [Approval workflow](https://tamanor.com/features/approval-workflow): Tamanor's approval workflow keeps a human in control: proposed actions are approved or rejected by an authorized role before anything touches a platform, with every step audited. - [Auto-protection policies](https://tamanor.com/features/auto-protection): Auto-protection policies let a brand define, per category, when Tamanor should prepare a protective action — still routed through human approval, never auto-executed. - [Control center](https://tamanor.com/features/control-center): The Tamanor control center is where a brand configures rules, categories and protection settings that drive monitoring and proposals. - [Unified inbox](https://tamanor.com/features/unified-inbox): Tamanor brings comments and reviews from connected accounts into one inbox, so teams triage risk across platforms in a single view. - [AI risk detection](https://tamanor.com/features/ai-risk-detection): Tamanor classifies each comment and review with a hybrid of brand rules and AI analysis, producing a risk level, categories and sentiment used for prioritization and proposals. ## Integrations - [Facebook Page integration](https://tamanor.com/integrations/facebook): Tamanor connects Facebook Pages via official OAuth to monitor comments, detect risk, and hide harmful comments after human approval — the only live moderation action today. - [Instagram integration](https://tamanor.com/integrations/instagram): Tamanor's Instagram Professional connector is implementation-complete — discovery through the linked Facebook Page, read-only comment ingestion with pagination and webhooks. Real provider verification via Meta App Review is pending, so it is not yet live. - [Google Business integration](https://tamanor.com/integrations/google-business): Tamanor's Google Business Profile connector is a foundation ready for approved API access — it reads reviewer, rating and text. Real provider verification is pending, so review monitoring is not yet live. - [YouTube integration (planned)](https://tamanor.com/integrations/youtube): A YouTube connector is planned. Tamanor does not yet claim YouTube support; comment monitoring will be enabled only once it is built and verified. - [LinkedIn integration (planned)](https://tamanor.com/integrations/linkedin): A LinkedIn Company Page connector is planned. LinkedIn's API access for organic comments is partner-gated, so Tamanor advertises no LinkedIn capabilities until access is verified. - [TikTok integration (planned)](https://tamanor.com/integrations/tiktok): A TikTok connector is planned. Comment read/moderation via the official API is app-review-gated, so Tamanor advertises no TikTok capabilities until it is proven. ## Comparisons - [Tamanor vs. manual moderation](https://tamanor.com/compare/manual-moderation): How a centralized, audited, rule-consistent firewall compares with checking each platform by hand. A workflow comparison — no numeric time-savings are claimed. - [Tamanor vs. separate per-platform tools](https://tamanor.com/compare/separate-social-tools): How a provider-neutral model with shared risk rules and one audit compares with stitching together separate per-platform interfaces. A workflow comparison. - [Tamanor vs. autonomous AI moderation](https://tamanor.com/compare/autonomous-ai-moderation): Tamanor is human-in-the-loop, not autonomous: AI detects and proposes, rules and capability gates apply, and a human approves before any action. Execution is fail-closed. - [Tamanor vs. separate Facebook/Instagram/Google interfaces](https://tamanor.com/compare/unified-brand-inbox): How one normalized inbox for comments and reviews compares with separate provider interfaces — with honest per-provider capability limits and truthful connector states. - [Reputation management platform checklist](https://tamanor.com/compare/reputation-management-platform-checklist): A neutral buyer's checklist for evaluating any reputation/moderation platform, with Tamanor's honest status per item — including what is not yet done. ## Security - [Tenant isolation](https://tamanor.com/security/tenant-isolation): Tamanor scopes every session and query to one active tenant, layering application permission checks over database row-level security, with system and runtime database access kept separate. - [Row-level security](https://tamanor.com/security/row-level-security): Tamanor runs tenant queries through a non-superuser role with FORCE row-level security and a transaction-local tenant context — defense in depth beneath application checks. - [Authentication & sessions](https://tamanor.com/security/authentication): Tamanor uses opaque sessions with the token hashed in the database, supporting revocation, expiration and logout invalidation. - [Provider tokens](https://tamanor.com/security/provider-tokens): OAuth provider tokens are encrypted at rest, removed locally on disconnect, and revoked at the provider on a best-effort basis; key rotation is a remaining roadmap gap. - [Audit logging](https://tamanor.com/security/audit-logging): Tamanor writes an append-only, tenant-scoped audit log; actor references use a SetNull lifecycle so history survives user removal, and tokens are never logged. - [Data integrity](https://tamanor.com/security/data-integrity): Tamanor persists content and reputation atomically, ingests idempotently, uses account-level leases, and enforces referential integrity to prevent orphaned records. - [Webhook security](https://tamanor.com/security/webhook-security): Tamanor verifies webhook signatures, deduplicates replays, derives the tenant from the connected account (never the payload), and stores invalid webhooks only for audit — never processing them. - [Responsible AI](https://tamanor.com/security/responsible-ai): Tamanor's AI is human-in-the-loop: it detects and proposes under brand rules and provider capability gates, with an approval step and fail-closed execution — never unbounded autonomy. - [Security disclosure](https://tamanor.com/security/disclosure): How to report a security concern to Tamanor. Reports reach the team through the contact channel; a dedicated security address is configurable before production. ## Documentation - [Getting started](https://tamanor.com/docs/getting-started): Connect a Facebook Page or Instagram Professional account through official OAuth, let Tamanor monitor comments, and approve proposed actions from the queue. - [Connect a Facebook Page](https://tamanor.com/docs/connect-facebook): Connect a Facebook Page through Meta's official OAuth so Tamanor can monitor comments and, after approval, hide harmful ones. - [Connect an Instagram account](https://tamanor.com/docs/connect-instagram): Connect an Instagram Professional account through its linked Facebook Page via official OAuth so Tamanor can monitor its comments (read-only). - [Roles & permissions](https://tamanor.com/docs/roles-and-permissions): Understand Tamanor's workspace roles and how platform permission plus role permission together decide what actions are available. - [Webhooks](https://tamanor.com/docs/webhooks): Tamanor verifies webhook signatures, deduplicates deliveries, routes Facebook and Instagram events through one connector, and resolves the tenant from the connected account. - [Security overview](https://tamanor.com/docs/security-overview): A concise technical overview of Tamanor's security posture: OAuth only, read-only by default, encrypted tokens, row-level tenant isolation, and an append-only audit log. ## Machine-readable - [ai-index.json](https://tamanor.com/ai-index.json) - [capabilities.json](https://tamanor.com/capabilities.json) - [entity-map.json](https://tamanor.com/entity-map.json) - [llms-full.txt](https://tamanor.com/llms-full.txt) Last updated: 2026-07-13