Step-by-step guide
Last updated: August 2026
Have these ready — it's what onboarding stalls on:
Grant the minimum the work needs. On Meta Ads, the levels are:
| Access level / role | What it can do |
|---|---|
| Partner — standard access | Lets the agency manage the assigned assets (run ads, edit campaigns) without controlling your Business Portfolio. |
| Partner — admin/full control | Full control of the specific assets you assign. Grant only when the agency needs to manage settings, not just run ads. |
| Employee vs Admin (if adding people, not a partner) | Employee = access to assigned assets only. Admin = full control of the whole Business Portfolio. Prefer partner access over adding individuals. |
About 3–5 minutes on your side, then the agency accepts from their Business Portfolio (a few clicks). Access is usually live within minutes of them accepting.
Open Business Settings → Partners → Add → Give a partner access to your assets and grant the access — a few minutes.
Accept and confirm from their side, then start work.
Access is granted when:
The most common problems and how to fix them:
You added the partner at business level but didn't assign specific assets. Go back to Partners → select the agency → assign the ad account, Page and Pixel individually.
Double-check the 16-digit ID (not the ad account ID). Confirm the agency sent their Business Portfolio ID from Business info, not a personal profile ID.
A known intermittent Meta bug. Wait a few minutes, refresh, try assigning one asset at a time; if it persists, try a different browser or clear cache.
The agency hasn't accepted yet. Someone with Admin access on their Business Portfolio must approve the partnership from their side.
You never share your Facebook password. Meta's partner system means the agency works from their own Business Portfolio, your 2FA keeps protecting your account, and you stay the owner of every Page, ad account and Pixel. Remove the partnership anytime and their access ends immediately — no password change, no cleanup.
Everything above is why agencies switch to a single link. HandItSafe requests exactly this Meta Ads access for you — the client approves through Meta Ads's official process in about three minutes, no password shared, and keeps a panel to remove it anytime. When the engagement ends, removing access is one tap with a full log.
FAQ
No. Meta's partner system was built so agencies never need a login. You're added as a partner business, and the client's 2FA keeps protecting their account.
Because they log in as the client from a new location and Meta's anti-fraud AI flags it. Partner access avoids this entirely — you're never logging in as them.
Yes, in two clicks from Business Settings → Partners. With HandItSafe they also get a panel that shows every partner and a one-tap remove.
Always partner access for an agency. Adding individual people ties access to a person who may leave the agency, creating a ghost admin. Partner access is business-to-business and cleaner to remove.
Often yes. Ad-account access doesn't automatically include the Pixel/dataset. Assign the Pixel as its own asset, or use one link that requests all assets together.
Keep reading
HandItSafe requests exactly this access in one link. No passwords. Your client keeps a panel to remove it anytime.