Short answer: it depends on your contract, so write it down before the first account is made. A common and creator-friendly default is that accounts built on the creator's name and face belong to the creator, with the agency given documented access to manage them. Two-factor should be tied to something the owner controls, and there should be a written handover plan for when the relationship ends. This page is not legal advice; ask a lawyer where you operate.
Decide ownership per account
| Account type | Common default | Why |
|---|---|---|
| Main page in the creator's name | Creator owns | It is their identity and audience |
| Niche page featuring the creator | Agree in writing | Built with agency effort on the creator's image |
| Agency brand page (no creator identity) | Agency owns | The agency's own brand |
| Backup page for a creator | Same as the main page | It exists to protect the creator's presence |
Whatever you agree, platforms generally expect accounts to represent who they say they are. A page built on a creator's identity that the agency keeps after the creator leaves raises impersonation problems; TikTok, for example, does not allow "pretending to be someone else" without clearly stating an account is a fan or parody account (TikTok guidelines, archived copy, as of 17 September 2026).
Access setup
- Email: an address the owner controls. For creator-owned accounts, the creator's own address, or a dedicated one whose password the creator holds.
- Two-factor: turned on for every account. Use an authenticator or number the owner controls; agency staff get access through a documented process, not a copy of the codes on personal phones.
- Passwords: in a shared password manager with per-person access, never in chat threads.
- Devices: agency phones are labeled and listed; see phone setup per model.
- Access log: who has access to which account, since when.
| Record per account | Example |
|---|---|
| Handle | @example.maya.fit |
| Platform | TikTok |
| Owner | Model A |
| Login email owner | Model A |
| 2FA method and holder | Authenticator, Model A |
| Agency staff with access | Operator 2 |
| Phone | Phone 1 |
| Bio link | example-landing.com/maya?src=tt-fit |
Handover when a model leaves
- Pause all scheduled posts and warm-ups for that model's accounts.
- Export the approval record, content folders and traffic sheet the creator is entitled to under your agreement.
- Change passwords and let the owner reset two-factor to their own device.
- Sign the accounts out of agency phones and remove them from your posting tool.
- Remove agency-held links or change them to what the creator wants.
- Revoke staff access in the password manager.
- Confirm in writing that the handover is complete.
Never lock a creator out of an account in their own name, and never keep posting as them after they leave.
Why this matters for operations
Clear ownership makes daily work simpler: operators know which accounts they may touch, and the content approval record (see content approval) shows what the creator agreed to. It also keeps backups honest; see backup accounts.
Where Farmero fits
Farmero runs on your Mac and your own iPhones, and nothing leaves the Mac except clips (when it uses the cloud fallback) and a licence check with the machine id. Logins stay in the apps on the phones. How accounts are added to phones in the first place, which is what you reverse at handover, is in add accounts.
FAQ
Can an agency own a model's Instagram?
It depends on your contract and local law. A creator-friendly default is that accounts in the creator's name belong to the creator; agree it in writing first.
Who should hold the two-factor codes?
The account owner. Staff access should go through a documented, revocable process.
What if a model leaves mid-campaign?
Pause scheduled posts first, then follow the handover checklist. Do not keep posting on their accounts.
Is this legal advice?
No. Contracts and rights vary by country; talk to a lawyer.
