Meta Ad Account Ownership vs Access: What Advertisers Should Know
Access lets you do the work. Ownership decides who keeps the asset. How agencies and advertisers should document permissions, onboarding and offboarding.
Most disputes between advertisers and agencies are not about performance. They are about Meta ad account ownership vs access — who owns the asset, who can act on it, and what happens when the relationship ends. Access lets you do work. Ownership decides who keeps the asset. Confusing the two costs teams their pixel history, their Page control and sometimes their campaigns.
Product names and terminology may change. Readers should verify current information through official Meta documentation. AdScale is an independent service provider and is not affiliated with, endorsed by or sponsored by Meta Platforms, Inc.
What Does Ad Account Ownership Mean?
Ownership is a structural question: which business entity holds the ad account inside its business portfolio, and therefore controls the asset relationship — including who may be added, removed or given full control. Ownership is not a button someone clicks in a campaign; it is determined by where the asset sits and what the contract between the parties says.
Two things follow from that. First, an ad account can be owned by the advertiser, by the agency, or by a provider operating advertising infrastructure. Second, whoever owns it can change access for everyone else. That is exactly why the question has to be answered before work starts, not after a disagreement.
What Does Ad Account Access Mean?
- Permissions: the specific set of things an individual or partner is allowed to do on that asset.
- Assigned users: named people with a defined role, not an anonymous shared login.
- Partner access: another business granted a relationship to specific assets in your portfolio.
- Task responsibilities: creating campaigns, managing creative, viewing performance, handling billing — each can be separated.
- Scope: access applies to named assets, and only those.
For how these layers stack inside the wider structure, see Business Manager vs business portfolio vs Business Suite.
Ownership vs Access Comparison
| Question | Ownership | Access |
|---|---|---|
| Who controls the asset relationship? | Defined by the business structure | Permission-based |
| Can it be removed? | Depends on the ownership structure | Generally permission-dependent |
| Does access transfer ownership? | No | No |
| Should it be documented? | Yes | Yes |
| Is login sharing required? | No | No |
Agency Access vs Client Ownership
A healthy default model looks like this:
- The client owns durable assets: Page, pixel, catalog, domain
- The agency receives partner access scoped to named assets
- Permissions are documented, with named administrators on both sides
- Offboarding steps are agreed before the engagement starts
Other commercial models exist and are legitimate — including arrangements where the account itself belongs to an agency or a provider, as described in what a Facebook agency ad account is and how agency ad accounts work. The rule is not "one model is correct"; the rule is that the model must be written down.
Why Personal Login Sharing Is a Risk
- Security: credentials in chat threads outlive the engagement
- Accountability: shared logins destroy the audit trail
- Unauthorized access: anyone with the password is effectively an admin
- Offboarding: removing a person becomes a password reset scramble
- Policy: credential sharing can conflict with platform terms
- Identity confusion: actions cannot be attributed to a real person
The alternative is simple and always available: named users and documented partner relationships.
Questions to Clarify Before Granting Access
- Who owns the business asset?
- Who has full control?
- Who has limited, task-level access?
- Which named people are administrators?
- Which partner organizations have access, and to what?
- How is access revoked, and by whom?
- What happens to access after the contract ends?
- Who maintains recovery information?
- Is two-factor authentication required for everyone?
Onboarding Checklist
- Confirm the owning entity for each asset, in writing
- Create or verify the client's own business structure first
- Add the agency as a partner — never by sharing a personal login
- Grant the minimum permission level that allows the work
- Name administrators and a recovery contact on both sides
- Enable two-factor authentication before any access is granted
- Record the date, scope and approver of every grant
The client onboarding questionnaire template collects most of these answers in one pass.
Offboarding Checklist
- Export reporting and creative assets before access changes
- Confirm which assets remain with the client
- Remove partner access and each named individual
- Rotate any credentials that were ever shared
- Reassign billing and payment methods
- Verify the client still holds full control of durable assets
- Log the offboarding date and who performed it
Access Responsibility Matrix (hypothetical example)
| Person or organization | Owns asset | Full control | Task access | Removal responsibility |
|---|---|---|---|---|
| Client company (example) | Yes | Yes | Yes | Client administrator |
| Agency partner (example) | No | No | Yes | Client administrator |
| Media buyer, agency side (example) | No | No | Yes | Agency administrator |
| Freelancer (example) | No | No | Limited | Agency administrator |
The rows above are hypothetical examples for illustration only.
Managed Access and Commercial Agreements
In a managed service, the provider typically owns the advertising account infrastructure and the advertiser receives scoped access. That is a valid model, provided the agreement states plainly: which entity owns the account, which assets stay with the advertiser, how permissions are granted and revoked, what happens if access is suspended, and what the offboarding path looks like. The terminology side of this is covered in managed Meta account vs managed Meta ad account, and the commercial side on the agency ad account page.
FAQ
Who owns a Facebook ad account by default?
The business entity whose portfolio holds it. That is a structural fact, and it should be reflected in the contract.
Does admin access mean ownership?
No. Full control is a permission level, not a property right.
Can an agency lock a client out of their own ad account?
If the account sits in the agency's structure, the agency controls access. This is precisely why ownership must be agreed in writing beforehand.
Should a client ever share their personal login with an agency?
No. Use named users and partner access instead.
What is partner access?
A relationship in which another business is granted access to specific assets in your portfolio, without joining your organization.
What is the difference between full control and task access?
Full control includes managing settings and people; task access is limited to doing defined work such as campaign management or reporting.
Who should own the pixel?
As a best practice, the advertiser — because its history is a durable business asset.
What happens to campaign data when an agency leaves?
Data tied to client-owned assets stays with the client. Data tied to an agency-owned account may not, so export reporting before offboarding.
Can ownership be transferred?
Asset relationships can be restructured, but the specifics depend on the asset and current platform rules. Plan it as a project, not a click.
How often should permissions be reviewed?
Quarterly, plus immediately after any team or vendor change.
Is two-factor authentication mandatory?
Treat it as mandatory internally for anyone with full control, regardless of platform minimums.
What should be in the contract?
Ownership of each asset class, permission levels, named administrators, notice periods and a written offboarding procedure.
