Sandbox configuration
Presence only — secret values are never sent to this screen
- Client key
- missingTIKTOK_SANDBOX_CLIENT_KEY
- Client secret
- missingTIKTOK_SANDBOX_CLIENT_SECRET
- Redirect URI
- https://social.appetitethinklabs.com/api/social/callback/tiktokusing documented default — set TIKTOK_SANDBOX_REDIRECT_URI to override
- Expected scopes
- user.info.basic, video.upload
- Missing
- TIKTOK_SANDBOX_CLIENT_KEY, TIKTOK_SANDBOX_CLIENT_SECRET
Callback route health
A bare GET returns a harmless diagnostic, never an error
- Callback path
- /api/social/callback/tiktok
- Canonical URL
- https://social.appetitethinklabs.com/api/social/callback/tiktok
- Last check
- not checked
- Direct Post
- disabled in V1
- Posting mode
- TikTok Sandbox cannot publish publicly. Content Posting API in V1 sends media to the creator's TikTok inbox as a draft, which the creator must finish and post manually. No publish action is simulated.
Production credentials
Kept entirely separate from sandbox — not used in V1
- TIKTOK_CLIENT_KEY
- missingTIKTOK_CLIENT_KEY
- TIKTOK_CLIENT_SECRET
- missingTIKTOK_CLIENT_SECRET
- TIKTOK_REDIRECT_URI
- missingTIKTOK_REDIRECT_URI
TikTok connections
Real connections only — nothing simulated
No TikTok accounts connected
A connection appears here only after a real Login Kit handshake and server-side token exchange complete.
Recent TikTok events
Server-side audit trail (no secrets)
- warnoauth.connect.requestedConnect blocked: TikTok credentials missing9/7/2026, 1:43:34 AM
- erroroauth.callback.rejectedmalformed_state9/7/2026, 1:43:34 AM