Comprehensive zero-to-hero manual for developers: From registering Business Portals and creating Developer Apps, to generating Permanent Access Tokens, submitting for App Reviews, configuring Webhooks, and connecting with CtrlTasq.
Direct integration with Meta Graph API for official message templates, green badge support, automated drip triggers, and incoming message webhooks.
Before touching the API, you must have a registered Meta Business Account:
CtrlTasq WhatsApp Gateway), enter your contact email, and select your Meta Business Account.104829102938192) → Copy this.102938475610293) → Copy this.ctrltasq-api-user, Role: Admin → Click Create System User.https://ctrltasq.com/whatsapp/webhookCtrlTasq_Verify_Secure_2026).messages → Click Subscribe.Log in to CtrlTasq → Navigate to WhatsApp Suite > Connect & API Hub (or /whatsapp-business):
When a customer sends a WhatsApp message, the webhook payload is ingested and processed through the following architectural pipeline:
POST /whatsapp/webhook payload parsed for entry[0].changes[0].value.messages[0].phone_number_id is matched against user_social_accounts (or platform_api_config) to identify the specific user tenant.tbl_wa_chatbots (matching exact words, comma-separated triggers, or default catch-all).POST https://graph.facebook.com/v19.0/{PHONE_NUMBER_ID}/messages request is dispatched with the bot's configured reply text, quick-reply buttons, or dynamic links.tbl_wa_messages.tbl_wa_contacts.crm_leads and assigned to the user's active sales pipeline!en_US vs en).WEBHOOK_VERIFY_TOKEN configured in Meta matches the token expected by your server script.Feed publishing, media upload, native scheduling, and insight analytics for Facebook Business Pages and Administered Groups.
| # | Prerequisite | How to verify |
|---|---|---|
| 1 | Facebook Business Page exists | Go to facebook.com/pages — confirm you see at least 1 Page listed. If not, create one at facebook.com/pages/create. |
| 2 | You have Admin/Content access | Open your Page → Settings → Page Access → confirm your account is listed with Full Control or Content creation access. |
| 3 | Meta App Roles (if in Dev Mode) | Go to developers.facebook.com → Your App → App Roles → Roles → ensure your Facebook user account is added as Admin, Developer, or Tester. |
CtrlTasq Social Hub) and link your Business Account.https://ctrltasq.com/social/callbackAlways include auth_type: 'rerequest' in the authorization dialog params. Without this parameter, Meta caches previous grants and silently skips the "Which Pages do you want to use?" dialog on subsequent connections.
auth_type=rerequest or having the user remove the app in Facebook Settings > Business Integrations./social/connect/facebook.Instagram Graph API setup for feed posts, carousel albums, reels, and analytics.
https://ctrltasq.com/social/callback.Publishing to corporate organization feeds, showcase pages, and corporate engagement analytics.
Publishing thought leadership posts, articles, and media to personal LinkedIn member feeds.
https://ctrltasq.com/social/callbackPosting tweets, threads, media attachments, and automated dispatch via X API v2.
https://ctrltasq.com/social/callbackhttps://ctrltasq.comNo approval delay. Direct bot token generation via Telegram BotFather.
@BotFather./newbot.CtrlTasq Notifier) and username ending in bot (e.g. ctrltasq_notifier_bot).7123456789:AAFlxyz.../social, enter the Bot Token and Channel Handle (e.g. @mychannel).Creating pins, syncing boards, media upload, and platform-side scheduling.
https://ctrltasq.com/social/callback.Uploading YouTube Shorts, scheduling video broadcasts, and analytics.
YouTube Data API v3.https://ctrltasq.com/social/callbackPublish local business updates, promotional offers, event announcements, and call-to-action buttons directly to Google Maps and Google Search listings.
Create or select a Google Cloud Project in Google Cloud Console:
CtrlTasq Business Hub) or select an existing project.Set up the consent screen so users and admins can authorize their Google accounts:
CtrlTasq Marketing Automationctrltasq.comGenerate the Client ID and Client Secret for secure OAuth 2.0 handshake:
Web applicationCtrlTasq GMB Web Clienthttps://ctrltasq.com/google-business/callback prevents Apache Mod_Security false-positive blocks.
Save your API keys so users can connect their Google Business Profile seamlessly:
/admin/platform-api).google_my_business./social/createPost), check Google Business, write your update, choose an action button (e.g. Learn More or Call), and click Post Now or Schedule!Business Profile Performance API and My Business Account Management API are enabled in the Google Cloud Console.Snapchat Creative Kit, Bluesky AT Protocol, and Mastodon ActivityPub posting.
https://ctrltasq.com/social/callback.Bluesky generates App Passwords via bsky.app/settings/app-passwords. Mastodon generates user tokens via instance OAuth.