Privacy policy

Last updated 24 September 2026. TestedOK is in beta; this policy will change as the product does, and the date above will move when it does.

This is written to be read. If anything here is unclear, write to hello@testedok.dev and we will answer and, where needed, fix the wording.

Who we are

TestedOK is run by Shashi Kumar P (referred to as "we"). We provide a service that runs plain-English UI tests on mobile apps. The controller of the data described here is us; you can reach us at hello@testedok.dev.

What we collect and why

Account data. Your email address and name when you sign up (or those Google gives us when you sign in with Google), and a hashed password if you use one. We use them to sign you in, to send you the verification and reset emails you asked for, and to reach you about the service. We do not sell them and do not send marketing without asking.

Runs. When you run a flow, the TestedOK command-line tool sends our API, for each step, the accessibility tree of the app's current screen (the labels, roles, values and positions of its controls, and the visible text), the flow you wrote, and what happened so far. For each distinct screen it also uploads a picture of the screen at screen-point resolution and the tree. When a step needs a second opinion, a screenshot of that step goes to a vision model. If you use --video, a recording of the device is uploaded. This is the service: it is how a run is decided and how the run page shows you what happened.

What we do not collect. Your app's source code. Your device. Screens you have told us not to picture: a project can turn screenshots off, after which runs send steps and timings and no pictures or trees. Secrets: a value you store as a secret is typed into the app by the tool on your machine and is masked in every tree, picture and log before it leaves it. Shared secrets are stored encrypted with a key we hold and are readable only by your own tool at the moment of typing.

Fixtures. If you use them: test-account usernames (passwords encrypted as above), the addresses of temporary inboxes we create for a run and the mail that arrives at them, and the environments and vars your runs report (names and plain values, never secrets).

Usage. We use PostHog, proxied through our own domain, to count page views and understand which parts of the product are used. It runs only after you accept the banner. Page addresses are stripped of tokens and codes before they are recorded. On the API we record errors with the run they belong to, and nothing else.

Where it is processed

Our API and dashboard run on Cloudflare Workers. Data is stored in Postgres on Neon (United States) and pictures and videos in Cloudflare R2. Model calls go to TypeSafe and Anthropic; they receive the accessibility trees and, for escalated steps, screenshots, and neither is permitted to train on them. Email is sent through Resend.

How long we keep it

Run pictures and videos are deleted 30 days after the run. Temporary inboxes and their mail are deleted a day after they expire (two hours after creation). Run records (steps, verdicts, timings) are kept while your account exists so your history and flakiness data work. Account data is kept while your account exists.

Your choices

You can delete your account from the dashboard (Account → Delete account). That deletes your account, every project you own with all of its runs, pictures, videos, secrets, accounts and inboxes, and removes you from projects you belong to. It is immediate and cannot be undone. You can also ask us at hello@testedok.dev to delete or export what we hold about you, and we will within 30 days.

Analytics is opt-in (the banner) and you can decline it with no loss of function.

Children

TestedOK is for developers and is not directed at anyone under 16.

Changes

We will change this policy as the product changes and note the date at the top. If a change reduces your rights, we will email account holders first.