PantheonGet Early Access

WeChat Official Account: Access, Roles & Permissions

TL;DR

Business presence on WeChat is a registered Official Account tied to a legal entity — a Chinese business license for mainland accounts, and overseas businesses are limited to a single verified Service Account. The permission model is small and fixed: one primary Administrator plus a set of Operators, each bound to a personal WeChat. Verification is the capability gate — a verified Service Account unlocks the advanced API and WeChat Pay; unverified accounts are limited to basic messaging.

On this page

Account types

WeChat splits business presence across two products. The Official Account comes in two flavours — a Subscription Account oriented to publishing (it collapses into a Subscriptions folder) and a Service Account oriented to customer service, payments and commerce (it lands in the main chat list, is capped at ~4 pushes/month, and unlocks WeChat Pay and CRM). Separately, WeChat Work (WeCom) is an enterprise product for internal communication and managed customer relationships.

Ownership is tied to a registered legal entity. Mainland Chinese companies register against a business license (营业执照) and can choose either type; overseas businesses can register only a verified Service Account, are generally capped at one per entity, and pay an annual verification fee of roughly USD 99 (Omnichat, WeChatWiki).

Roles: Administrator + Operators

Within an Official Account the permission model is small and fixed: a single primary Administrator (管理员) plus a set of Operators (运营者), each bound to a personal WeChat account.

Only the Administrator can confirm and add new operators — by having them scan a QR code — while operators can log in and run day-to-day publishing and messaging but cannot manage other users (WeChatWiki). WeCom uses a broader hierarchy, with a super administrator delegating scoped administrator rights across an organizational tree (atSting).

Who holds the API keys

Technical access is held at the account, not the individual. Each Official Account exposes an AppID and AppSecret, and each WeCom application a CorpID, AgentID and Secret, used to authenticate API calls.

A brand can hold these directly, but because the native backend and its documentation are China-centric and largely Chinese-language, overseas brands commonly delegate API setup and operation to an authorized agency or third-party service platform (第三方平台).

Verification is the capability gate

Verification is what unlocks capability. A verified Service Account unlocks the advanced API surface — custom menus, web OAuth, template messages — and is a prerequisite for WeChat Pay and mini-programs, while unverified accounts remain limited to basic messaging (KAWO).

So on WeChat, verification is not just a trust badge — it is the switch that turns on the programmatic feature set a business actually needs.

Frequently asked questions

What is the difference between a WeChat Subscription Account and a Service Account?

A Subscription Account is for publishing content (it sits in a Subscriptions folder and can post frequently). A Service Account is for customer engagement, payments and commerce — it appears in the main chat list, is limited to about four broadcasts a month, and unlocks WeChat Pay and the advanced API. Overseas businesses can only register a Service Account.

Can a foreign company get a WeChat Official Account?

Yes, but only a verified Service Account, using its own overseas registration documents, generally one per entity, with an annual verification fee. WeChat Pay additionally needs a Chinese bank account, and many overseas brands use a local agency to handle setup.

Who can manage a WeChat Official Account?

A single primary Administrator, bound to a personal WeChat, holds full control including the sole ability to add Operators. Operators handle day-to-day publishing and messaging but cannot manage other users.

Related

Business Messaging: Access, Roles & Permissions Across Platforms

Every major messaging platform gates business access differently. The single most important difference is who holds the technical keys: some platforms (Apple, Google RCS, KakaoTalk, Viber) require an approved intermediary you cannot bypass, while others (Telegram, LINE, WhatsApp, Zalo) let a business hold its own API credentials. Role models range from granular named matrices (WhatsApp, LINE, Zalo) to almost none (Telegram, where possessing the token is control). Asian platforms additionally gate account creation on a registered legal entity.

Read →

LINE Official Account: Roles & Permissions

LINE governs business presence through a badge-tiered Official Account (unverified gray / verified blue / premium green). It has an unusually clear, recently-maintained role model — but split across two consoles: a business console (Admin plus Operator variants) for day-to-day work, and a separate developer console (provider and channel roles) for the API. The Messaging API is authenticated with a per-channel access token the account owner mints and revokes.

Read →

KakaoTalk Business Messaging: Access, Roles & Permissions

Business messaging on KakaoTalk runs through a KakaoTalk Channel upgraded to a Business Channel by registering a Korean business license and passing verification. Its defining governance fact is that brands generally cannot self-serve the business-message API — sending requires a Kakao-issued sender key held through a Kakao-authorized agency. Roles split across a channel (Master/Manager) and a developer app (Owner/Editor/Message Editor/Viewer), and messaging splits into transactional AlimTalk and marketing FriendTalk.

Read →

What is a Unified Inbox?

A unified inbox consolidates conversations from multiple communication channels — messengers, email, and more — into a single interface, so you can triage, read, and reply across all of them without switching apps and without losing track of who said what.

Read →

Share this page

Last updated