Skip to main content

How it works

From sign-in to a connected channel

The authorization flow always starts in Homa CRM and completes on Meta’s own screens. This page walks through what happens at each stage and what you control.

The four steps

  1. 01

    Sign in to Homa CRM

    Start from your existing Homa CRM workspace. Your Homa account determines which tenant the integration belongs to.

  2. 02

    Start a secure Meta authorization flow

    Homa redirects you to Meta’s official authorization screen. You enter your credentials with Meta, never with Homa.

  3. 03

    Select authorized business assets

    On Meta’s screen you choose which Pages, Instagram accounts or WhatsApp Business assets to grant access to.

  4. 04

    Manage connected channels inside Homa

    Return to Homa CRM to see connected assets, review granted permissions and disconnect anything you no longer need.

What happens at each stage

1.Sign in to Homa CRM

You start from your existing Homa CRM workspace. Your Homa account determines which tenant the new connection belongs to, so a connection made from one workspace is never visible to another.

  • Only users with the right role in Homa CRM can start or change a connection.
  • The tenant identity is decided by your Homa session, not by anything in the URL.
  • If you land on the connection page directly, you will be asked to sign in to Homa CRM first.

2.Start a secure Meta authorization flow

The platform builds the authorization request on the server, attaches a single-use state value bound to your session, and redirects you to Meta. From that point you are on Meta’s domain.

  • The requested permission set is limited to the features you are enabling.
  • The state value is validated when you return, which mitigates cross-site request forgery.
  • You can cancel on Meta’s screen at any time and nothing is connected.

3.Select authorized business assets

On Meta’s consent screen you choose which Pages, Instagram professional accounts or WhatsApp Business assets to grant access to. Assets you do not select stay out of scope entirely.

  • You must hold sufficient administrative access on any asset you authorize.
  • Assets that do not meet Meta’s eligibility rules will not appear as selectable.
  • You can return later and authorize additional assets without recreating the connection.

4.Manage connected channels inside Homa

After Meta redirects you back, the platform validates the state value and exchanges the authorization code for a token from server-side code only. Connected assets then appear in Homa CRM.

  • Review which assets are connected and which permission set was granted.
  • Disconnect any asset, which stops further platform access to it.
  • Reconnect when a token expires or a permission is withdrawn.
  • Submit a data deletion request from the public website at any time.

The path data takes

Authorized Meta channels feed the platform, which normalizes events and hands them to the Homa CRM modules your team uses.

Meta business channels

  • Instagram professional
  • Instagram messaging
  • Facebook Pages
  • Messenger
  • WhatsApp Business

Homa Meta Platform

  • OAuth authorization
  • Token vault
  • Webhook receiver
  • Tenant isolation

Homa CRM modules

  • Unified inbox
  • Contacts
  • Automation
  • Reporting
Availability of each channel depends on Meta permissions, approved use cases and application review status.

Start the authorization flow

Review the permission preview on the connection page before you begin, so you know exactly what is being requested.