What This Update Actually Is
Social tokens expire. It's just how OAuth works. When that happens in HubSpot, you have to reconnect the social account to restore publishing access.
The problem was what happened next. Every time you reconnected, HubSpot silently reset your Account Access setting to 'Everyone.' That meant any access restrictions you'd set before, say, limiting a LinkedIn company page to only the social media team, were gone. Wiped. Back to default.
As of July 6, 2026, HubSpot looks up your previous Account Access setting when you reconnect and restores it automatically. If it's a brand-new channel being connected for the first time, it still defaults to 'Everyone.' But for any account that's been in your portal before, your settings come back with it.
Why HubSpot Shipped This
Account Access controls which humans in your HubSpot portal can see and publish from a connected social account. For most portals with multiple team members, that's not a 'set once and forget it' decision. It's a deliberate governance choice.
We've seen this pattern repeatedly across portal audits: a social token expires, a marketing manager reconnects the account quickly before a scheduled campaign goes out, and nobody notices that access quietly opened up to every seat in the portal. Sometimes for weeks.
The internal frustration is real. You set up your access controls carefully. You do the right thing. And then a routine maintenance task undoes all of it without warning. HubSpot shipped this fix because that behavior was a trust problem, not just an inconvenience.
How to Use It Step by Step
There's nothing new to configure. The behavior is automatic. But here's the full flow so you know exactly what to expect.
- Navigate to Marketing, then Social, then Settings in your HubSpot portal.
- Find the social account showing an expired token warning. Click Reconnect.
- Complete the OAuth authorization flow on the social platform (LinkedIn, Facebook, Instagram, etc.).
- Return to HubSpot. Your previous Account Access setting will be restored automatically.
- Confirm the setting by clicking into the reconnected account and reviewing the Account Access field. It should match what you had before.
One thing worth doing right now: if you've reconnected any social accounts in the past and never checked access settings afterward, go do that audit today. Any accounts reconnected before this fix shipped may still be sitting at 'Everyone.'
What It Touches in Your HubSpot Strategy
This update lives inside Marketing Hub's social publishing tools, but the ripple effect is a governance and ops story.
Account Access settings determine which humans can schedule, publish, and monitor from each connected profile. That matters in four specific areas.
- Brand safety: Restrict publishing access to trained social team members so that only the right humans touch brand accounts.
- Agency and contractor workflows: Limit client-owned social accounts so agency staff can't accidentally publish from accounts outside their scope.
- Multi-brand portals: Segment access by brand or division so the wrong team doesn't cross-publish to the wrong account.
- Compliance environments: Some industries require documented control over who can post on behalf of the organization. A silent reset to 'Everyone' breaks that control.
Key Takeaway
If you're running a multi-brand portal or managing social on behalf of clients, this fix removes a real governance gap. Social account access settings now survive the token expiration cycle without manual intervention.
If you're doing a broader review of your portal's settings and permissions, this is a good moment to run through your whole social setup. A solid portal audit checklist will catch the kinds of quiet setting drifts that accumulate over time. Check out The Complete HubSpot Portal Audit Checklist for a structured way to review every corner of your portal.
This update pairs well with HubSpot's broader push toward more intentional social publishing. If you haven't looked at the Social Content Agent beta yet, that's the AI-assisted drafting tool that pulls from your CRM to write on-brand posts. Combine smarter drafting with tighter access controls and your social operation gets much more defensible.
Key Takeaway
This is a quiet fix with a loud impact on portal hygiene. Governance settings should be sticky by default. Now they are.
Who Should Care Most
Not every HubSpot update affects every portal equally. This one has a specific profile.
- Marketing ops leaders and HubSpot admins who own portal governance and have set custom access rules for social accounts.
- Agencies managing client portals where the client owns the social credentials but the agency manages publishing.
- Multi-location or multi-brand businesses running several social profiles from one HubSpot portal.
- Regulated industries (finance, healthcare, legal) where documented access control is a compliance requirement, not just a preference.
If you're a solo marketer running one brand's social from a single seat, this change is invisible to you. But if there are multiple humans in your portal with varying levels of social access, this matters every time a token expires.
George's Take
I want to be direct: this isn't a flashy update. It's not AI, it's not a new report, it's not a workflow superpower. But in my experience working through portal after portal, the updates that quietly protect your settings and your processes are the ones that save the most cleanup time over a year. A social token expiring is a normal, expected event. Your governance settings breaking because of it is not. HubSpot made the right call here. Small fix, real protection.
“The best portal maintenance is the kind you don't have to do. When HubSpot preserves your settings automatically, that's one less thing you have to audit after every routine task.”
Ready to Tighten Up Your HubSpot Portal?
Updates like this one are a good reminder that portal hygiene is ongoing, not a one-time project. If your team wants a fresh set of eyes on your social setup, your access settings, and the rest of your Marketing Hub configuration, Sidekick Strategies can help. Book a strategy call and let's make sure your HubSpot portal is set up to flourish, not just function.
Frequently Asked Questions
What does HubSpot's social account reconnection update do?
When you reconnect a social account after its OAuth token expires, HubSpot now automatically restores your previous Account Access setting instead of resetting it to 'Everyone.' This prevents unintended access from being granted to all portal users during routine reconnections. The fix is available for Marketing Hub Professional and Enterprise.
What is the Account Access setting in HubSpot social?
Account Access controls which humans in your HubSpot portal can view and publish from a specific connected social account. You can restrict it to certain users or teams instead of letting everyone in the portal use it. It's a governance setting inside Marketing Hub's social publishing tools.
Does this update affect new social accounts connected for the first time?
No. If you're connecting a brand-new social account that has never been in your HubSpot portal before, it still defaults to 'Everyone' for Account Access. The preservation behavior only applies to accounts that were previously connected and already had a custom access setting saved.
Who gets access to this social reconnection fix?
This update is available to HubSpot Marketing Hub Professional and Enterprise customers. It's not available on Free or Starter tiers. If you're on Professional or Enterprise and use connected social accounts, the behavior is automatic. No configuration is required to enable it.
What should I do if I reconnected social accounts before this fix shipped?
Go to Marketing, then Social, then Settings in your HubSpot portal and review the Account Access field for each connected account. Any account reconnected before July 6, 2026 may still show 'Everyone' if the reset happened during a previous reconnection. Update those settings manually to restore your intended access rules.
Why does a social account token expire in HubSpot?
Social platforms like LinkedIn, Facebook, and Instagram use OAuth tokens that have a set expiration window, typically 60 to 90 days depending on the platform. When the token expires, HubSpot loses permission to publish on your behalf until you re-authenticate. This is a platform-level requirement, not a HubSpot limitation.




