Privacy
Last updated 7 October 2026
OkayPost is a content calendar and approval tool for agencies. This page says, in plain words, what it reads, what it keeps, where, and how to delete it. Questions: okaypostapp@gmail.com.
What we read from your storage
You can connect Google Drive, OneDrive (or SharePoint), Box or Dropbox. OkayPost only reads:
- It lists a folder when someone on your team browses it in OkayPost.
- It downloads a file when you add it to a post as a design, and streams a video when someone plays it.
- It never edits, moves or deletes anything in your storage.
How each one connects:
- Google Drive: you share a folder (or a Shared drive) with OkayPost’s read-only Google account, as a Viewer. It can open only what is shared with it. If you choose “Starting fresh”, OkayPost uses your own Google sign-in, with the narrowest permission Google offers (files the app creates or you pick), to make one folder named “OkayPost” in your Drive and share it with that account. That folder is the only thing it creates.
- OneDrive, Box and Dropbox: you sign in to the service and allow OkayPost to read. These services grant access to the files your account can open, not one folder. OkayPost opens only the files your team browses and adds. Box gives an app downloads only with its “write” permission, so OkayPost asks for it, but it never writes to Box.
For OneDrive, Box and Dropbox we keep the sign-in tokens the service gives us, encrypted, and use them only for the reads above. Disconnect in OkayPost’s Storage window deletes them. You can also remove OkayPost’s access in your Google, Microsoft, Box or Dropbox account settings, or stop sharing the folder.
What we keep
- Your team: names, email addresses and roles, and who is signed in. Sign-in codes are kept only as a one-way hash, and work for 10 minutes.
- Clients: the name, color and logo initials you give each client, and a WhatsApp number if you add one.
- Posts: titles, dates, captions, platforms, status, internal notes and due dates, and which file in your storage each design or video came from.
- Pictures: when you add a design, your browser makes a smaller copy for review (up to 1400 pixels wide) and a thumbnail. We keep those copies, and the copies of earlier versions. The original stays in your storage.
- Videos: we don’t keep a copy. They play from your storage, through our server, when someone watches.
- Feedback: comments, replies, drawings on designs, approvals and requests for changes, from your team and your clients, with the name each person typed.
A client opens a review link without an account: the link itself lets them in, so share it only with that client. Their browser remembers the name they typed and a copy of the calendar, to open faster next time.
If you ask to join the free pilot on our home page, we keep what you typed (your name, your agency, your email and, if you give it, your WhatsApp number) and the date, and email it to the person at OkayPost who will contact you. We send you one email to say we got it; replies to it come to us. We use it only to talk to you about the pilot. Email okaypostapp@gmail.com to have it deleted.
We don’t sell your data and we don’t show ads. Our cookie only keeps you signed in. We count page visits with Cloudflare Web Analytics, which uses no cookies, and never on review links.
Where it is
OkayPost runs on Cloudflare (Cloudflare, Inc. is a US company). Our database is in Europe (Milan), and the picture copies are stored in Eastern Europe. To load pictures quickly, Cloudflare may keep temporary copies in its data centers near the people viewing them, anywhere in the world. Sign-in emails are sent through Cloudflare’s email service. Reading Google Drive goes through Google’s own servers, and the same for Microsoft, Box and Dropbox.
Deleting your data
- Delete a post, a comment or a client in OkayPost and it is removed from our database.
- Copies of pictures (including earlier versions) can stay in our file storage after that. To have everything deleted, including those copies and your team’s accounts, email okaypostapp@gmail.com from the workspace owner’s address. We’ll delete it and tell you when it’s done.
- A client who left feedback can ask the agency, or us, to remove it.
Changes
If this page changes, we’ll update the date at the top, and tell workspace owners by email about anything that changes what we keep or read.