X / Twitter
Requires provider app/review
Identity/read OAuth exists. Production credentials, API credits, and a separate tested write adapter are still required.
- Owner: create a confidential Web App in the X Developer Console; callback:
https://nwsqyuucwzihruszocge.supabase.co/functions/v1/twitter-oauth.
- Posting: add
tweet.write only after the publish adapter exists, then reauthorize.
- Cost: X uses pay-per-use credits.
Instagram
Requires provider app/review
Eligible Business or Creator accounts can publish through Meta. The current MyPersonas flow only pairs the Instagram account linked to a Facebook Page; it does not publish.
- Owner: convert to professional, link the Page, add assets to Meta Business, and complete app review.
- Permission:
instagram_content_publish; comments/insights are separate.
- Official Meta Instagram workspace
Facebook Page
Requires provider app/review
Official automation is for Pages the signed-in member administers—not personal profiles. The current MyPersonas flow only pairs the Page; it does not publish.
- Owner: create the Meta Business app and select the exact Page.
- Permission:
pages_manage_posts for publishing; engagement is separate.
- Official Facebook API workspace
TikTok
Requires provider app/review
Direct Post needs the Content Posting product, video.publish, and TikTok review/audit. Unaudited clients publish privately.
YouTube
Requires provider app/review
Uploads use the YouTube Data API and youtube.upload. Unverified projects are restricted to private uploads.
LinkedIn
Requires provider app/review
Member posting uses Share on LinkedIn. Organization/Page posting needs a qualifying Page role and Community Management access.
- Owner: create the app at LinkedIn Developers and associate the Page.
- Permission:
w_member_social for member posts; the portal's current approved organization scope is authoritative.
Bluesky
Requires connector build
No conventional app review, but MyPersonas still needs a security-complete OAuth connector and AT Protocol publisher.
- Owner: authorize the correct account after client metadata and callback are live.
- MyPersonas: PKCE, PAR, DPoP, refresh rotation, secure keys, record publishing, and revocation.
- Official OAuth guide
Threads
Requires provider app/review
Threads publishing requires a Meta app, its own OAuth connector, review for production users, and threads_content_publish.
Snapchat
Requires provider app/review
The Public Profile API is allowlist-only. Personal Snapchat automation is not supported.
Reddit
Requires provider app/review
Devvit can submit as a user only after a clear, separate owner action. Reddit explicitly disallows unattended user actions.
- Owner: create a Devvit project, request only submit permissions, publish, and complete approval.
- Commercial use: may require a separate Reddit agreement.
- User-action rules