Review access
Use the production URL and credentials included in the private reviewer-instructions field. UGCFlow does not publish credentials on this public page. The supplied account must have access to Social accounts, approved test content, and the provider connection being reviewed.
End-to-end review steps
- 1Open the production login URL and use the reviewer credentials supplied privately in the review submission.
- 2Open Social accounts and choose the provider being reviewed.
- 3Read the displayed data-purpose disclosure, then continue to the provider consent screen.
- 4Confirm that the consent screen shows the same app identity and scopes listed in this guide.
- 5Return to UGCFlow and confirm that the connected account identity and connected status are visible.
- 6Open an approved video, choose Publish, select the connected account, and review the provider-specific options.
- 7Choose the safest review visibility offered by the provider, confirm the publication, and inspect its resulting status.
- 8Return to Social accounts and disconnect the provider to verify credential removal and revocation controls.
Requested scopes and functionality
YouTube
Data requested
Channel identifier, channel name, and metadata or status for videos uploaded through UGCFlow.
youtube.upload · youtube.readonly
Why UGCFlow uses it
Identify the channel selected by the user, upload a user-selected video, and show the resulting publication status.
User control
Every upload starts from an explicit publish action. New review uploads default to Private, and the connection can be removed at any time.
Meta
Data requested
Instagram professional account identifier, username, profile details, and publishing authorization.
instagram_business_basic · instagram_business_content_publish
Why UGCFlow uses it
Show the connected professional account and publish a user-selected video as an Instagram Reel.
User control
The user chooses the content and whether the Reel is shared to the profile feed before publishing.
Threads
Meta
Data requested
Threads account identifier, username, basic profile details, and publishing authorization.
threads_basic · threads_content_publish
Why UGCFlow uses it
Show the connected Threads account and publish a user-selected video thread.
User control
The user initiates each publication and chooses who can reply before the post is queued.
TikTok
TikTok
Data requested
Open ID, display name, username, basic profile details, and Direct Post authorization.
user.info.basic · user.info.profile · video.publish
Why UGCFlow uses it
Identify the selected TikTok account and Direct Post a user-selected video.
User control
The user chooses an account-supported privacy level and interaction settings before each post. UGCFlow does not post in the background without a user action.
Expected provider-specific result
YouTube
The reviewer sees channel identity, selects title/category/audience and Private visibility, then observes the uploaded video publication status.
The reviewer connects a professional account, chooses whether to share the Reel to the profile feed, and confirms a user-selected video publication.
Threads
The reviewer connects a Threads account, chooses who can reply, and confirms a user-selected video thread publication.
TikTok
The reviewer connects TikTok, sees account-supported privacy and interaction controls, and confirms a Direct Post using video.publish.
Demo video checklist
- Record at 1280×720 or higher and keep the browser address bar visible.
- Show the production UGCFlow brand, the complete provider consent screen, and every requested scope in English.
- Show the connected identity, the exact feature that uses each scope, the explicit publish action, and the resulting publication status.
- Show disconnect and deletion controls. Use a clean test account and do not expose passwords, access tokens, client secrets, or personal messages.
- Record separate focused evidence when different permissions support materially different provider flows.
Support during review
If a reviewer cannot access a step or a supplied test account, contact support@prepiko.ai and include the provider, review case, and failing step. Do not send provider client secrets or OAuth tokens by email.