Why assets become disconnected
BrandBastion connects to social platforms through permissions and authentication tokens issued by the social network.
If a social media platform expires or invalidates a token, removes a required permission, or can no longer verify the user who authorized the connection, the asset may need to be reconnected.
Common causes include:
Permissions changed or removed: The user who authorized the asset loses the native permissions required to manage it.
Connecting user removed: The user who originally connected the asset leaves the business, is removed from the social account, or loses access to the relevant Page, business, organization, or channel.
BrandBastion access revoked: Someone removes or changes BrandBastion’s authorization in the social network’s connected apps or integration settings.
Authentication expires: Some networks issue tokens or permissions with fixed lifespans and periodically require renewed authorization.
Password or security changes: Depending on the network, password changes, account recovery, suspicious-login detection, or other security events can invalidate existing authorization.
Account or ownership changes: Changes to Page ownership, linked accounts, business integrations, roles, or other account configuration can affect existing permissions.
Native account restrictions: If the social account is suspended, disabled, restricted, or otherwise unavailable through the network’s API, its connection can be affected.
Platform or API changes: Social networks regularly update APIs, permissions, authorization requirements, and security policies. In some cases, an existing connection must be authorized again.
Platform-specific causes
Facebook and Instagram
Facebook and Instagram connections depend on Meta permissions, business access, and the user who authorized the integration.
An asset may require reconnection when:
The authorizing user loses the required access to the Facebook Page or business asset.
The user is removed from the relevant Meta business or Page.
BrandBastion’s permissions are changed or revoked in Meta.
The user grants only some of the permissions required by the integration.
The relationship between an Instagram professional account and its associated Meta assets changes.
Meta invalidates the existing authentication following a security or account event.
A required Meta permission expires or is no longer available.
Because Facebook and Instagram assets can share the same Meta authorization path, a change to the authorizing user’s access can affect multiple connected assets.
💡 Tip: When investigating a Meta disconnection, check both the asset itself and the permissions of the user or business account that granted BrandBastion access.
LinkedIn connections can require periodic reauthorization, even when no permissions have been manually changed.
An asset may require reconnection when:
The authorization or refresh token expires.
The connecting user loses the required role on a LinkedIn Page.
The connecting user is removed from the Page.
The user revokes the application’s access.
LinkedIn revokes a token for technical, security, or policy reasons.
TikTok
TikTok uses short-lived access tokens alongside longer-lived refresh tokens.
An asset may require reconnection when:
The user revokes BrandBastion’s authorization.
The longer-lived refresh authorization expires.
Required scopes or permissions change.
TikTok invalidates the existing authorization.
The TikTok account itself becomes unavailable or restricted.
📌 Note: A short-lived access token expiring does not necessarily mean the asset disconnects. These tokens can normally be refreshed automatically while the underlying authorization remains valid.
YouTube
YouTube authorization is managed through the connected Google Account and Google’s OAuth system.
An asset may require reconnection when:
The user revokes access to the integration.
The refresh token expires or is invalidated.
The Google Account is deleted or disabled.
A Google Workspace administrator introduces a policy that prevents the required access.
Google invalidates authorization following a security or account event.
Time-limited access granted by the user expires.
X
X connections can be interrupted when the authorization granted to BrandBastion is no longer valid.
This can happen when:
The user explicitly revokes the application’s access from X.
An access or refresh token is revoked.
X suspends or restricts the application or applicable access.
The authorization no longer includes the required permissions or scopes.
Threads
Threads uses Meta’s authorization infrastructure but has its own access-token lifecycle.
An asset may require reconnection when:
Its long-lived authorization can no longer be refreshed.
A required Threads permission expires.
The user revokes authorization.
Required permissions are no longer granted.
How to reduce avoidable disconnections
Not every disconnection can be prevented. Teams can, however, reduce those caused by permission, ownership, and account-management changes.
Meta: grant access through Meta Business Suite
For Facebook and Instagram, we recommend granting BrandBastion access through Meta Business Suite rather than relying on an individual user’s access wherever possible.
This creates a more stable access setup and reduces dependency on a single employee or agency user who may later leave the business or have their permissions changed.
Follow the setup in Granting BrandBastion access via Meta Business Suite.
When managing Meta assets:
Keep BrandBastion’s required business and asset permissions active.
Check BrandBastion access before removing users, agencies, or partners from the Meta business.
Avoid revoking BrandBastion from Business Integrations unless you intend to remove the connection.
After changing Page ownership, business portfolios, Instagram associations, or asset permissions, verify that BrandBastion still has the required access.
💡 Tip: If your Meta setup currently depends on an individual user, moving access to the recommended Meta Business Suite setup can reduce avoidable disruption when team members change.
Other platforms
For LinkedIn, TikTok, YouTube, X, and Threads:
Keep the authorizing user assigned the required native roles and permissions.
Check connected integrations before removing an employee or agency partner.
Do not revoke BrandBastion’s access from the social platform unless you intend to disconnect it.
Complete platform reauthorization requests when required.
After major ownership, security, or permission changes, verify that connected assets remain active in BrandBastion.
How to Reconnect Disconnected Assets
If an asset becomes disconnected, reconnect it in BrandBastion with a user who has the required permissions on the specific social platform.
For step-by-step instructions, see Reconnect Expired or Expiring Assets.
