Connectors that need approval
Which integrations require developer registration or app review before they work, and how long each takes.
Most connectors work the moment you paste a credential. A minority do not. The vendor has to approve a developer account, review your app, or grant a production token first, and that can take days or weeks.
Plan around these before you commit to a launch date.
| Connector | What needs approving | Typical wait | Cost |
|---|---|---|---|
| Google Drive | OAuth scope verificationThe broad Drive scopes (drive, drive.readonly, drive.metadata, drive.activity) are Google restricted scopes, which need OAuth app verification plus an annual third-party CASA security assessment from a Google-approved assessor before the app can serve the public. | Google says restricted scope ver… | Verification itself is free |
| Etsy | App reviewWhich gate you hit depends on app type. Etsy's docs say Seller Apps are approved automatically for eligible sellers, but a Personal App "goes through a deeper review process than Seller Apps", and serving sellers at production scale needs a separately reviewed Commercial Access upgrade. | Seller App: Etsy states eligible… | Free |
| YouTube Data | OAuth scope verificationGoogle must verify your OAuth consent screen for the sensitive YouTube scopes before the app can be published beyond test users, and YouTube's API Services team must pass a compliance audit before any quota above the default 10,000 units/day is granted. | OAuth sensitive-scope verificati… | Free |
| Amazon Selling Partner | Developer account approvalAmazon must approve your SP-API developer profile before Login with Amazon credentials return live Selling Partner data. Roles Amazon marks Restricted carry an extra review of your data use and security controls, including an architecture review. | Amazon's only published figure i… | Amazon charges nothing for devel… |
| Gmail | OAuth scope verificationEvery useful Gmail scope is classified restricted (mail.google.com, gmail.readonly, gmail.modify, gmail.compose, gmail.insert, gmail.metadata, gmail.settings.basic, gmail.settings.sharing), so Google must verify your OAuth client before it can leave Testing. Because a connector moves that data through a third-party server, Google additionally requires an annual CASA security assessment by a Google-empanelled assessor. | Google says restricted scope ver… | Google charges nothing for verif… |
| Walmart Marketplace | Seller/marketplace approvalWalmart must approve your Marketplace seller application (or approve your company through the Solution Provider programme) before Seller Center exists for you. The developer docs state plainly that you must 'ensure you are approved to sell your items on Walmart Marketplace' before you can reach the keys. | Walmart publishes no SLA for the… | Free to apply - Walmart charges… |
| App reviewLinkedIn reviews and vets your app for the Community Management API before it can touch organization Pages or member post/profile analytics, and requires a second Standard-tier review before production volumes; only Sign In with LinkedIn and posting to the signed-in member's own feed are self-serve. | not published by LinkedIn | Free | |
| LinkedIn Ads | App reviewLinkedIn must approve your app for the Advertising API (Marketing Developer Platform) before ad account and ad reporting scopes are granted, and a second support-ticket review is needed to move from Development to Standard tier. | not published by LinkedIn | Free |
| Ecwid | Paid plan requiredEcwid exposes its REST API only to stores on a paid plan - the docs state plainly that 'Only stores on paid plans can access API', so a free store cannot use the API no matter how the custom app is configured. There is no review or application for the API itself. | None for the API itself - upgrad… | A paid Ecwid plan (the free plan… |
| Google Calendar | OAuth scope verificationGoogle's Trust and Safety team must verify your OAuth app before it can request the sensitive Calendar scopes (calendar, calendar.events) from users outside your own test list or Workspace organization. | Google states sensitive scope ve… | Free |
| Google Sheets | OAuth scope verificationGoogle Cloud Console labels the spreadsheets and spreadsheets.readonly scopes Sensitive, so Google's Trust and Safety team must verify your OAuth app before those scopes can be granted to users beyond your test list or your own Workspace organization. | Google states sensitive scope ve… | Free |
| YouTube Analytics | OAuth scope verificationGoogle must verify your OAuth consent screen for the sensitive YouTube scopes (youtube.readonly plus yt-analytics.readonly, and yt-analytics-monetary.readonly for revenue data) before the app can serve users outside your own test-user list. | Google states 3-5 business days… | Free |
| YouTube Reporting | OAuth scope verificationGoogle must verify your OAuth consent screen for the sensitive YouTube reporting scopes (yt-analytics.readonly and, for revenue reports, yt-analytics-monetary.readonly) before the app can be used by anyone outside your own test-user list; system-managed revenue reports additionally require YouTube Partner Program content-owner status. | Google states 3-5 business days… | Free |
| App reviewMeta's own access-levels doc states "Business Verification is required to get Advanced Access" and that "in some cases additional App Review on an individual permission and feature basis might be required". Without Advanced Access on the Pages permissions the app only works for people who hold a role on it. | Meta does not publish an SLA for… | No fee | |
| App reviewMeta must grant Advanced Access to the Instagram permissions through App Review, and the owning business must pass Meta Business Verification, before the app can serve any Instagram professional account you do not own. | 2-4 weeks typical end to end | Free (Meta charges nothing for A… | |
| Partner applicationReddit's Data API Terms allow free use only for non-commercial purposes; any commercial use requires Reddit's prior written approval through its Data API access request, and paid commercial access is a signed agreement. | 2-4 weeks for commercial review,… | Free for approved non-commercial… | |
| AiSensy | App reviewMeta - not AiSensy - must approve the WhatsApp Business Account behind the key: the display name is reviewed, each message template is reviewed, and Facebook Business Manager verification is needed for full access. | AiSensy states "the majority of… | AiSensy's own approval steps are… |
| Razorpay | Seller/marketplace approvalRazorpay only issues working live-mode API keys after its team verifies your KYC and business documents and moves the merchant account to Activated. | Razorpay publishes no standard K… | Free (no activation fee |
| Dodo Payments | Seller/marketplace approvalDodo Payments' compliance team must approve your merchant account (identity, business and bank verification) before live-mode keys can take real payments or pay out. | Docs state typical verification… | Free |
| Google Business Profile | Partner applicationGoogle manually reviews a Business Profile API access request tied to your specific Google Cloud project, and until it is approved the APIs are not even selectable in the Cloud console for your account and the project's quota stays at 0 queries per minute. | Google does not publish a review… | Free |
| Meta Ads | App reviewMeta must grant your app Advanced Access to the ads_management and ads_read permissions through App Review, and your business must pass Meta Business Verification, before the app can touch ad accounts belonging to people who have no role on your app. | Not published by Meta - there is… | Free - Meta charges nothing for… |
| App reviewPinterest must approve your registered app twice: first for Trial access (the app secret is withheld until then), and again for Standard access before Pins and Boards created via the API are visible to anyone but their creator. | Pinterest states approvals "typi… | Free | |
| QuickBooks | App reviewIntuit blocks an app's QuickBooks Online production keys until you complete the app assessment questionnaire in the developer portal and Intuit reviews the answers. | Intuit publishes no review SLA | Free |
| Similarweb | Paid plan requiredSimilarweb only issues working API keys to accounts whose subscription includes API access. Similarweb states that API access comes with its Business and Enterprise plans or as a standalone package, all sold through sales, so a sales conversation and a contract gate the credentials rather than a review queue. | Sales-led: expect days to weeks… | Not published |
| TikTok | App reviewTikTok for Developers must review and approve your app - each product (Login Kit, Display API, Content Posting API) and each scope is granted individually - before the app leaves sandbox and real TikTok users can authorise it. | TikTok's own developer FAQ state… | No fee |
| TikTok Ads | App reviewA TikTok Marketing API app must be submitted to TikTok for Business and approved - the app status has to reach Live - before real advertisers can authorise it and before tokens return live ad account data. | TikTok's developer FAQ is the on… | No fee for the developer app, sa… |
| TikTok Shop | Partner applicationTikTok Shop Partner Center requires a developer application per app, reviewed and approved by TikTok Shop, before the app goes Live and gains access to the products and scopes it requested - the docs are explicit that you do not have API access until the application is approved. | Not published | No fee for Partner Center regist… |
| Trustpilot | Paid plan requiredTrustpilot must enable the paid API module on your Trustpilot for Business account before the Developer Portal will issue a working API key. The docs are explicit: "You must have a Trustpilot for Business account with access to the API module to access Trustpilot API data." | Not published by Trustpilot - th… | Paid |
| Google Ads | Developer token approvalA new developer token is now usually auto-granted Explorer Access, which already reads and writes real advertising accounts but is capped at 2,880 operations per day and blocks planning, account-creation, user-management and billing services. Lifting those limits requires the Google Ads API team to approve a Basic Access application on your manager (MCC) account, and Google still falls back to production-blocked Test Account Access when it cannot review a signup automatically. | Google states the Basic Access r… | Free |
| Acuity Scheduling | Paid plan requiredNo one reviews you, but Acuity (Squarespace Scheduling) only exposes API credentials on the Premium plan - "Custom API and CSS for Developers" is listed as a Premium-tier feature on the Acuity pricing page. | None - credentials appear immedi… | Per acuityscheduling.com/pricing… |
| Ahrefs | Paid plan requiredNo human approval, but Ahrefs only lets workspace owners/admins on a paid Lite plan or higher mint an API v3 key - the free Webmaster Tools tier and the $29 Starter plan cannot use the API at all. | None - the key is issued instant… | Plan prices on ahrefs.com/pricin… |
| AliExpress | Developer account approvalAliExpress Open Platform staff must approve both your developer account and each app's API permission request before an App Key and Secret are issued. | AliExpress does not publish an SLA | Free - registering as a develope… |
| Apollo | Paid plan requiredNobody reviews anything at Apollo - the key is issued instantly - but Apollo gates which API endpoints a key can call by subscription plan. Apollo's docs state plainly that "Access to Apollo API depends on your Apollo plan", and its pricing FAQ lists API access under custom/enterprise plans. | None - the key is generated inst… | Apollo does not publish a per-en… |
| Dropbox Sign | Paid plan requiredProduction (legally binding) signature requests require a paid Dropbox Sign API plan, and any embedded or OAuth integration must additionally pass Dropbox Sign's app approval review before it can leave test mode. | Paid plan: instant on purchase | App approval is free |
| eBay | Partner applicationeBay's Buy APIs are partner-only: production access must be applied for through the eBay Partner Network and cleared by eBay's Application Growth Check, and every production keyset must first clear the mandatory Marketplace Account Deletion/Closure notification step. | Account-deletion compliance step… | Free - registering for the eBay… |
| Help Scout | Paid plan requiredHelp Scout excludes API and integration access from its Free plan, so the account must be on a paid Standard plan or higher before any credentials return data - no human review is involved. | Immediate once the account is on… | Standard plan is USD 25 per user… |
| Kajabi | Paid plan requiredKajabi gates the Public API behind billing: the docs state it "is included with the Pro Plan" and is "also available as a $25/mo add-on". | Immediate once the plan or add-o… | Included on the Pro plan |
| Later Influence | Partner applicationLater's own team must provision Reporting API credentials for your Later Influence instance; there is no self-serve console that issues a clientId/clientSecret. | not published | Not published |
| Mixpanel | Paid plan requiredNo one reviews anything, but Mixpanel's Query API (funnels, insights, segmentation, retention, profile event activity) is sold only with the Growth or Enterprise plan - a Free-plan project cannot call it however valid the service account is. | None - upgrading is self-serve i… | Mixpanel does not publish a flat… |
| Okendo | Paid plan requiredOkendo gates Merchant API credentials behind plan entitlement: API access is included on the Advanced plan and above, and is sold as a paid add-on on the lower tiers. There is no application, review, or developer programme - only a billing entitlement. | No review queue - access is live… | Okendo does not publish fixed pl… |
| OtterlyAI | Paid plan requiredOtterlyAI only lets accounts on the Standard, Premium, or Custom/Enterprise plan create an API key - the entry-level Lite plan has no API at all. There is no review or application, only the plan gate. | None - a key is generated instan… | Otterly's public pricing page li… |
| PandaDoc | Paid plan requiredA PandaDoc Production API key must be activated by PandaDoc's own team via Sales, Support or your CSM, and the developer docs state it requires an active Enterprise plan; only the Sandbox key is self-serve. | Not published | Sandbox key free |
| Semrush | Paid plan requiredSemrush gates the standard Analytics/Projects API behind its top subscription tier, and API calls additionally consume API unit packages that must be purchased separately from the plan. | Instant once the qualifying plan… | Plan naming is in flux: develope… |
| SendFox | Paid plan requiredSendFox only issues personal access tokens on a paid plan; sendfox.com/pricing lists the Free plan as 'No API access' and the paid Lifetime and Pro plans as 'Full API access'. There is no application and no review. | Instant once on a paid plan | Any paid SendFox plan qualifies… |
| Setmore | Partner applicationSetmore has no self-service API console. You must hold a Setmore Pro account and email api@setmore.com with your use case; Setmore's team reviews the request and responds with next steps before any credentials exist. | Not published | Setmore Pro is required |
| Squarespace | Paid plan requiredSquarespace only exposes the Developer API Keys screen on qualifying paid site plans, so Squarespace's own billing tier, not a review, gates whether a working Commerce API key can exist at all. | Immediate once the site is on a… | The site plan itself |
| SurveyMonkey | Paid plan requiredA SurveyMonkey app runs in draft mode for only 90 days; to keep it alive for your own team you must deploy it as a private app, and SurveyMonkey's help centre states an Enterprise plan is required to deploy a private app. A public app - one any SurveyMonkey account can connect - must additionally be reviewed and approved by SurveyMonkey. | None to start (draft app credent… | No fee for the developer app or… |
| tawk.to | Partner applicationtawk.to's REST API is not self-serve: it is available by request only, and you must be approved through tawk.to's REST API Beta access request form before the REST API Keys screen appears in your account. | Not published | No charge is stated |
| Xero | App reviewXero issues OAuth 2.0 client credentials instantly and an uncertified app can read and write real organisation data on day one - but it is hard-capped at 25 connected tenants (5 on the free Starter tier), and Xero must formally certify the app against published checkpoints before it can pass that cap, list on the Xero App Store, or move to the paid Plus tier and above. | Xero publishes no SLA for certif… | Applying for certification is free |
| DocuSign | App reviewDocusign must approve your integration key for production through the Go-Live process in Apps & Keys before it can touch a real Docusign account. | Instant for integrations that pa… | Free to apply, but the productio… |
What the categories mean
Developer token approval. The vendor issues a token immediately, but it only reaches test data until they approve production access. Google Ads works this way.
App review. You submit the app for human review before it can request the permissions you need. Common on the social platforms.
Developer account approval. You must be accepted into a developer or partner programme before any credential exists at all.
OAuth scope verification. The credential works, but the vendor restricts the sensitive scopes until your app passes verification. Some restricted scopes require a paid third-party security assessment.
Seller or marketplace approval. Tied to your selling account rather than your app.
Paid plan required. No review, but the API is not available on lower tiers.
Working while you wait
Several gated connectors let you build against test or sandbox data immediately. Where that is possible, the connector's own page says so under Works meanwhile.
Start the approval application first, then set up everything else while it is in the queue. The application is almost always the long pole.