The ten guides · reading order

01What is an AI agent 02Types of AI agents 03AI agent evaluation 04Build flow & sequence 05Agent memory 06Tool use & MCP 07Multi-agent systems 08Agent failure modes 09Cost of running agents 10Agent frameworks

Agent topics

AI agents on the web now Agent as a service Social media and AI-generated content AI replying to comments and messages

Model comparisons

AI agent comparison — coming soon

News

Global AI agent news Singapore agent news

Assessment

Quick readiness check

AiAgentNook

What AiAgentNook is for How guides are made

Can an AI reply for you? Five platforms, five answers

Letting an agent answer your comments and messages is a different question from letting it post. LinkedIn bans it outright. X allows AI reply bots only with prior written approval. TikTok and YouTube build reply automation in themselves, and Meta runs labelled AI personas. In every case the gate is on replies generated fresh — not on automation itself.

Fig. A — the same activity, from banned to shipped as a feature

Posting and replying look like one job. They are governed as two. Posting is publishing, and the rules there are new, written for generative AI, and broadly agreed — we covered them in what each platform allows when AI writes your posts. Replying is contact. The rules for contact are much older than generative AI, and they were built around consent and volume rather than technology.

That is why they are stricter, and why the five platforms below land in five different places.

X: allowed, with a permission slip

X's automation rules, updated April 2026, are unusually generous on the face of it. Their explicit list of things to do includes running "creative campaigns that auto-reply to users who engage with your content" and building "solutions that automatically respond to users in Direct Messages" [1].

Then comes the part almost nobody quotes. On AI-powered replies specifically, X says you may use AI to create reply bots that generate "dynamic, context-aware responses" — but that "the deployment or operation of any AI reply bot requires prior written and explicit approval from X" [1].

Not a guideline. Permission, in writing, in advance.

The consent rules around it are equally specific. An automated reply may only go to someone who has "requested or clearly indicated an intent on X to be contacted by you" — by replying to your post, or messaging you first. And, in a line worth pinning up: "a user following your account is not on its own a sufficient indication of user intent to receive an automated response" [1].

One reply per interaction. An opt-out that works. No unsolicited automated DMs — and being technically able to message someone "does not necessarily mean they have requested or expect to receive automated Direct Messages." Automated likes and automated hiding of replies are banned outright, and automating through the website rather than the API risks permanent suspension.

Following you is not consent. That single line invalidates most reply automation running today.

YouTube: they built it themselves

YouTube's answer is the most interesting, because it is a product rather than a policy. Comment reply suggestions in YouTube Studio "use artificial intelligence (AI) to suggest replies in your own tone and style, based on comments you've made recently on your channel" [2].

The AI drafts. You send. That is the whole design, and it neatly sidesteps every question the other platforms are wrestling with — because a person is still deciding.

Where YouTube draws a hard line is volume. The spam policy prohibits comment spam — repetitive or identical comments posted to drive traffic — and "automated or synthetic mass-production," meaning automated tools or AI used to churn out high volumes of similar content with minimal changes [3]. The Data API can post replies programmatically, so the constraint is not capability. It is repetition.

TikTok: templates, reviewed before they run

TikTok Business Accounts get automatic messages built in: a welcome message, keyword replies, suggested questions and chat prompts. Keyword replies fire on an exact, case-sensitive match, with up to four keywords configured. Automated DMs can also be sent to people who leave comments identified as having high commercial intent [4].

The detail that matters: new or edited automatic messages go through a review process before approval, typically one to five days [4]. So TikTok gates too — just at the level of the template rather than the bot.

Meta: labelled personas

Meta's AI Studio lets a creator build an AI character that answers direct messages and story replies, with every AI reply labelled so followers know what they are talking to — covered in AI agents on the web now. Generative replies are permitted; the condition is that the audience is told, every time.

LinkedIn: no

LinkedIn is the outlier, and the shortest section. Its User Agreement prohibits using bots or other automated methods to access the service, add or download contacts, or send or redirect messages, and automation tools appear on its list of prohibited software [5].

No approval route. No opt-in exemption. The answer is simply no.

The pattern underneath

Fig. B — the gate is not on automation. It is on replies nobody can predict.

Read the five together and the line stops looking arbitrary. TikTok is relaxed about auto-reply because its version is keyword matching: fixed text, reviewable before it ever runs. X is relaxed about scripted replies too, and reserves its approval requirement for bots that generate responses dynamically. YouTube's own AI feature keeps a human in the send loop. Meta permits generation but demands a label on every message.

What platforms are gating is not automation. It is unpredictability — a reply that nobody, including the account owner, can read before it goes out.

That is the same distinction our types guide draws between a workflow and an agent: whether the path is fixed in advance or decided in the moment. Platform policy has arrived at the same boundary from a completely different direction.

The rule that sits over all of them

For anyone with an audience in the EU, Article 50 of the AI Act adds a duty the platforms do not: a system designed to interact with a person must make clear that the person is dealing with an AI, at the latest at the first interaction [6].

Posting triggers the media-marking half of Article 50. Replying triggers this half — and it is a lower bar to cross, because it applies to every conversation, not just to synthetic images and video.

What this means if an agent replies for you

Five things an agent with reply permissions has to handle. Posting needed four; replying needs more, because consent is now involved.

Consent, tracked per person. X's standard is specific and per-recipient: did this individual opt in, and can they opt out? That is state your agent has to keep.

Disclosure at first contact. Required in the EU, and the norm Meta enforces through labels. Cheapest to build in at the start of a conversation.

Volume discipline. One reply per interaction on X. No repetitive mass replies on YouTube. Most reply automation fails here rather than on any AI-specific rule.

Platform-by-platform behaviour. The same agent cannot behave identically on LinkedIn and TikTok. One of them forbids the thing the other ships as a feature.

An approval mode. Given where the platforms are comfortable, being able to run in draft-and-approve rather than full auto is not a limitation. It is the mode most of them were designed around.

The tools in this category cluster on one side of that list, and the giveaway is which platforms they connect to. Kadres, the agent we build, connects to Instagram, TikTok, Facebook and YouTube. In the terms of the diagram above, that is Meta, TikTok and YouTube: the three platforms that permit automated replying without a permission step. Not X, where an AI reply bot needs written approval first. Not LinkedIn, where it is banned outright.

That pattern is not modesty, and it is not specific to us. The two platforms with the hardest rules are the two this whole category has quietly skipped — so a tool promising you coverage everywhere is worth a direct question about how it handles those two.

The same caution applies to the first two requirements on the list. Consent tracked per person, and disclosure worded for each platform, still sit with the account owner rather than the software — ours included. A reply agent can hold the send button. It cannot tell you whether the person on the other end agreed to be messaged.

an old telephone switchboard, its panel crowded with patch wires
Plate — before automation, someone decided which connections went through Photo — Dave Meckler, Unsplash

Sources

  1. X — Automation rules, updated April 2026 (AI reply bots require prior written approval; opt-in; one reply per interaction; automated likes prohibited)
  2. YouTube Help — “Use comment reply suggestions” (AI suggestions in your own tone and style)
  3. YouTube Help — Spam policy (comment spam; automated or synthetic mass-production)
  4. TikTok for Business — “About automatic messages for TikTok accounts” (keyword replies, exact match; 1–5 day review)
  5. LinkedIn — Prohibited software and extensions / User Agreement (no bots to send or redirect messages)
  6. European Commission — FAQ: transparency obligations under Article 50 of the AI Act (disclosure at first interaction)

Frequently asked questions

Can I use AI to reply to comments and DMs?

It depends entirely on the platform. Meta and TikTok build the feature themselves. YouTube offers AI reply suggestions that you send yourself. X allows AI reply bots but requires prior written approval. LinkedIn prohibits bots that send or redirect messages altogether.

Do I need permission to run an AI reply bot on X?

Yes. X's automation rules state that deploying or operating any AI reply bot requires prior written and explicit approval from X. Automated replies are also limited to people who have opted in, and following your account does not count as opting in.

Do I have to tell people they are talking to an AI?

In the EU, yes. Article 50 of the AI Act requires that a system designed to interact with a person makes clear it is an AI, at the latest at the first interaction. Meta labels AI Studio replies. Elsewhere it is generally covered by rules against deception rather than an explicit labelling duty.

Why are the rules for replying stricter than for posting?

Posting is publishing; replying is contact. The rules governing contact are older than generative AI and are built around consent and volume rather than technology. What platforms gate is unpredictability: templated auto-replies are widely permitted, while replies generated freshly each time attract approval requirements or labels.