An ad account audit starts with ownership, not campaigns. When agency relationships end badly, the costliest outcome is rarely a bad bid strategy. It’s a client who loses the account, its conversion history, and its audiences, then has to rebuild from zero.
This guide is the first step in the Ad Account Audit series. Once access is settled, the audit continues with Google Ads and Meta Ads.
Why Ownership Comes First
The value of an ad account goes beyond the campaigns inside it. An account accumulates conversion history, audience lists, and learning data in its bidding strategies over months or years. If another party controls that account, all of it can become inaccessible the moment the relationship ends.
Before making any changes based on audit findings, it must be clear who has the authority to modify the account, and whether that authority could be lost.
Google Ads Access Levels
Google’s access levels documentation defines five levels:
| Access level | What it allows |
|---|---|
| Admin | Manages campaigns, billing, user access, and product links, and completes advertiser verification |
| Standard | Edits campaigns, runs reports, and views billing, but can’t manage user access |
| Read-only | Views campaigns, reports, and billing information, with no edits |
| Billing | Manages payment methods and payments |
| Email-only | Receives notifications and reports, with no account visibility |
Only Admin users can grant access, change access levels, or cancel invitations. The client should always hold at least one Admin seat on a company email address, and ideally two. Google Ads access and payments profile access are managed separately, so who owns the billing relationship is a separate check.
Manager account link versus direct user
Agencies typically connect to client accounts through their own manager account (MCC). This connection gives the agency access but does not transfer account ownership to them. However, if the account was created inside the agency’s manager account and the client has no direct Admin users, the client cannot access the account once the link is removed.
Google’s documentation also notes that Google Ads account access and payment profile access are managed separately. A person can be an Admin on an account but only have Email-only access on the payment profile. Who receives invoices must therefore be checked independently.
Meta Business Portfolio Ownership
In Meta, ad accounts, Pages, Pixels, and catalogs belong to a business portfolio. Meta’s permissions documentation describes admins, who control the whole business, and employees, who work only on assigned assets. Finance analyst and finance editor roles cover billing visibility and edits.
The distinction that matters is whether an asset is owned by a portfolio or merely shared with it.
The Pixel or dataset deserves special attention. Even when the ad account belongs to the client, a Pixel created in the agency’s portfolio holds years of event data and custom audiences that may leave with the agency.
Connected Assets Are Part of the Audit
An ad account does not operate in isolation. The ownership of the following assets must receive the same scrutiny:
- GA4 property: The account owner should be the client’s Google account, since Google Ads links run through it.
- Google Tag Manager container: Conversion tags live here, and the container should have a client-side administrator.
- Merchant Center: Product feeds and Shopping campaigns connect here for e-commerce accounts.
- Search Console: Organic visibility data and site verification live here.
- Domain and DNS: Meta domain verification and Search Console domain properties are verified through DNS records.
Put It in the Contract
Most ownership disputes are avoidable if roles are agreed before work starts. Three clauses cover most of the risk:
| Clause | What it says |
|---|---|
| Asset ownership | All ad accounts, Pixels, analytics properties, and tag containers are created in or transferred to client-owned accounts. |
| Minimum client access | The client keeps Admin-level access on every platform throughout the engagement. |
| Offboarding | At the end of the engagement, the agency removes its access within an agreed period and hands over documentation of campaign structure, naming conventions, and tracking setup. |
Day-One Order
- Inventory every account, property, and container across Google Ads, Meta, GA4, GTM, Merchant Center, and Search Console.
- Verify ownership and confirm the client holds the highest access level on each.
- Fix access by adding missing client admins and removing former staff and agencies.
- Snapshot the baseline by exporting the last 90 days of key metrics and campaign settings before any changes.
- Start the audit only after the baseline exists.
Skipping the snapshot is the most common mistake. Without it, no one can show whether the audit’s changes improved anything.
Summary
Ownership comes before optimization. In Google Ads, only Admins can grant access, so the client needs its own Admin seats. In Meta, ad accounts and Pixels should belong to the client’s business portfolio, with agencies connected as partners. Connected assets need the same check, contract terms prevent disputes, and a baseline snapshot makes audit results measurable.