Start With the Meta Asset Map
A Meta advertising setup is a set of connected assets, permissions, and identities. The Business Portfolio may contain or have access to ad accounts, Facebook Pages, Instagram professional accounts, datasets or pixels, catalogs, domains, apps, WhatsApp assets, people, partners, and finance roles. A restriction or access loss may affect one object without affecting every other object.
Before changing the account structure, record the name and ID of the Business Portfolio, ad account, Page, Instagram account, dataset, catalog, and domain. List every person with full control or partial access, every partner business, the payment method owner, the legal business details shown to Meta, and the person responsible for review requests.
This map answers the question sales language usually avoids: who can remove whom? If the client cannot remove the agency, preserve the data, or see the billing relationship, the client does not have the same control as a client-owned setup.
Client-Owned Ad Account or Provider-Owned Account?
In a client-owned model, the advertiser's Business Portfolio owns or controls the ad account and core assets. The agency is added as a partner or its staff receive only the required permissions. The client keeps direct administrator access and can remove the agency when the engagement ends.
In a provider-owned managed model, the provider's Business Portfolio owns the ad account or controls the billing relationship and grants the client operating access. This can be a deliberate arrangement, but ownership, billing, pixel or dataset sharing, Page and Instagram access, reporting, and termination must be written down.
Neither model changes Meta's Advertising Standards. The commercial decision is about operational control and responsibility, not a promise that one account will receive favorable enforcement.
| Feature | Client-owned Meta setup | Provider-owned managed setup | Notes |
|---|---|---|---|
| Business Portfolio and ad account | Client controls the owning portfolio or direct account and grants scoped partner or user access | Provider controls the owning portfolio or account and grants client operating access | Record the business and ad account IDs |
| Page and Instagram | Client retains ownership and shares only the required advertising or task access | Access may depend on provider-controlled connections or shared assets | Protect primary brand identity |
| Dataset, catalog, and domain | Client-owned assets can be shared to the ad account while remaining portable | Ownership and portability depend on where the assets were created | Audit every connected object |
| Billing | Client payment profile or a separately documented provider billing arrangement | Often provider-funded, prepaid, or invoiced through the provider | Define taxes, credits, refunds, and closeout |
| Restriction review | Client and agency coordinate evidence through the review action Meta displays | Provider may coordinate evidence, but Meta still controls the decision | No account model guarantees reinstatement |
| Offboarding | Client removes partner access while retaining owned assets and history | Transfer or continued access depends on platform capability and contract | Test the exit before launch |
How Should People and Agency Partners Receive Meta Access?
Use Meta's named user and business-partner permissions rather than shared personal logins. For ad accounts outside a Business Portfolio, Meta documents administrator, advertiser, and analyst roles. Inside a Business Portfolio, access is assigned across specific business assets and tasks.
Full control should be rare because it can include settings, access management, billing changes, or the ability to remove other people. Grant campaign, reporting, finance, Page, Instagram, lead, dataset, and catalog permissions separately where the platform allows it. Require two-factor authentication and maintain at least one trusted client administrator who is not employed by the agency.
Review access during onboarding, quarterly, after role changes, and before offboarding. A permission list is an operational control, not paperwork for a folder nobody opens until the founder's profile is compromised.
Do not share personal Facebook credentials
Meta's role system is designed to let people work on advertising without logging in as another person or seeing private profile content that has not been shared with them.
Separate campaign access from full business control
A buyer who needs to create ads does not automatically need access to users, billing, domains, Pages, Instagram settings, catalogs, or every asset in the Business Portfolio.
Who Owns the Page, Instagram Account, Dataset, Domain, and Catalog?
The ad account is only one dependency. Campaigns may rely on a Facebook Page, Instagram identity, dataset or pixel, catalog, verified domain, app, lead forms, custom audiences, and external analytics. If those assets live in the provider's portfolio, switching ad accounts may not preserve the operating system around the campaigns.
Keep brand identity and first-party data assets under the advertiser's control where possible, then share the minimum required access. Record whether the dataset can be shared with another ad account, who can edit events or aggregated event settings, who can connect the Instagram account, who controls lead access, and how catalogs or product feeds are maintained.
Before offboarding, export campaign and reporting data, verify client administrator access, transfer creative source files, revoke unused partner access, and confirm that the remaining assets still have valid people, billing, and integrations.
Need a scoped account-operations decision?
Bring ownership, access, billing, verification, and current platform context. The eligibility check below is the decision path; neither this page nor a specialist conversation guarantees account access or a platform outcome.
Talk to a SpecialistHow Meta Ad Account Billing and Finance Access Should Work
Billing may use a client payment method, a provider payment method, invoicing, prepaid funding, or another approved arrangement. The account owner and billing party are not always the same, so both must be named.
Document who can view payment methods, edit billing details, add funds, receive invoices, download receipts, dispute charges, and close the account. Align legal business name, tax information, address, currency, and payment responsibility. If the provider invoices the client, reconcile the invoice against Meta spend by account and date and define how credits, refunds, failed payments, and unused funds are handled.
A payment failure can be a billing problem, a security signal, or part of a broader account review. Do not treat a new card as a universal fix without reading the exact notice and checking who owns the payment profile.
What Does Meta Business Verification Prove?
Meta may request business records to verify an organization and protect against unauthorized payment activity. Verification can help establish identity and association with the business, but it does not certify every advertisement, guarantee higher limits, or override a restriction caused by policy, security, billing, or connected assets.
Keep the legal business name, address, phone, website, domain, tax details, and submitted records consistent. Use clear, current, unaltered documents. Review unknown administrators, former staff, partner businesses, active sessions, apps, payment methods, and unexpected changes before submitting a restriction review.
Treat unsolicited support messages as a phishing risk. Navigate directly to Meta's official business surfaces rather than clicking account-recovery links sent by unknown contacts.
How Meta Advertising Restrictions and Review Actually Work
Meta says restrictions may be associated with severe or repeated policy violations, attempts to evade review or enforcement, inauthentic user accounts, or business assets connected to abusive assets. The review surface may identify an ad account, user, Page, or Business Account rather than the object the team first suspects.
Open Account Quality or the review action shown in Business Support Home, preserve the exact wording and affected IDs, secure access, and audit the ads, landing pages, business information, billing, and connected assets relevant to the notice. Correct the underlying issue before requesting review. Do not create replacement accounts or identities to bypass an unresolved restriction.
Meta publishes guidance about typical review timing, but it also says reviews may take longer. Operational planning should therefore use a status and evidence log rather than promising a restoration date.
Meta Agency Onboarding and Offboarding Checklist
Before campaigns move, agree on the owner and administrator for every asset, the exact partner or user roles, billing responsibility, Page and Instagram access, dataset sharing, catalog ownership, domain verification, lead access, reporting exports, support channel, and incident owner. Capture the current state before changing it.
During offboarding, remove the agency partner only after confirming replacement administrators, campaign exports, creative files, reporting access, Page and Instagram continuity, dataset and catalog access, outstanding balances, invoice records, and integrations. Revoke former staff and unused apps. Record the final state and the date each access path was removed.
The correct setup is the one that can be explained, audited, and unwound. A configuration that works only while one salesperson remembers how it was provisioned is not enterprise infrastructure.
When Does Managed Meta Account Operations Fit?
Managed operations may fit teams with meaningful Meta spend, multiple brands or agencies, complex finance controls, frequent asset changes, sensitive access requirements, or a need for one accountable owner during restrictions. It does not fit a business seeking permission to run prohibited ads, hide the real advertiser, avoid verification, or create replacement accounts after enforcement.
Bring the Business Portfolio ID, ad account ID, Page and Instagram ownership, dataset and catalog ownership, current administrators, partner businesses, monthly spend, billing model, verification state, and any restriction notice to the eligibility review. The useful outcome is a concrete operating recommendation, including ‘keep the client-owned account and clean up access’ when a provider-owned account adds no value.