Privacy Policy
Last updated: July 12, 2026
Obaket (the “App”) is a client for browsing and transferring cloud object storage — such as Amazon S3, Cloudflare R2, Dropbox, Google Drive, and PikPak (WebDAV) — from a single macOS app. This policy explains what information the App handles and how it is protected.
Your data never reaches the developer
The App has no server operated by the developer. The App communicates only with the cloud storage endpoints you configure, and your credentials and files are never sent to or collected by the developer. The App does not perform analytics, tracking, advertising, or send any usage statistics.
1. Information We Handle
1.1 Credentials (connection credentials)
- Credentials used to connect to cloud storage — such as access keys / secret keys, OAuth tokens, and WebDAV usernames and passwords — are stored only in the macOS Keychain on your Mac.
- These credentials are never sent to the developer or any other third party. They are used solely to connect to your cloud services.
1.2 Settings and Cache Stored Locally
- Connection settings: connection name, endpoint, region, bucket, and other connection metadata (excluding credentials).
- Listing metadata cache: metadata such as file names, sizes, and modification dates used to speed up display (this does not include the contents of files themselves).
- App state: preferences such as window and tab state, display mode, the last location you opened, and folder access permissions (security-scoped bookmarks).
- Temporary files: temporary files downloaded for previewing or “Open with another app” (created in the system’s temporary area and automatically deleted when no longer needed).
All of these are stored only on your Mac and are never transmitted externally.
1.3 Files in the Cloud
- In response to your actions (browsing, previewing, uploading, downloading, renaming, deleting, and so on), files and their metadata are exchanged directly between your Mac and your own cloud account.
- This communication never passes through any server operated by the developer.
1.4 Access to Google Drive
- When you connect Google Drive, the App accesses the Google Drive API through Google OAuth, with permission granted by you from your own Google Account.
- The scope requested is either a read-only scope (
drive.readonly) used to list, preview, and download files and folders, or a write scope (drive) that additionally allows upload, creation, rename, move, copy, and delete (moving to trash). You choose which scope to grant when you connect.
- Data obtained from Google Drive (file contents and metadata such as file names and folder structure) is used solely to carry out the actions you perform within the App. It is never sent to the developer’s servers, used for advertising or analytics, or shared with any third party other than you.
- The App’s use and transfer of information received from Google APIs to any other app adheres to the Google API Services User Data Policy, including the Limited Use requirements (https://developers.google.com/terms/api-services-user-data-policy).
2. Communication Destinations
The App communicates only with the following destinations:
- The cloud storage endpoints you configure (such as Amazon S3 / Cloudflare R2 / Dropbox / Google Drive / PikPak WebDAV). All communication is over HTTPS.
- When you use Dropbox, authentication is performed with Dropbox’s authentication servers via OAuth using your own account.
- When you use Google Drive, authentication is performed with Google’s authentication servers (
accounts.google.com / oauth2.googleapis.com) and the Google Drive API (www.googleapis.com) via OAuth using your own account.
No transmissions are made to any destination other than the above.
3. Third-Party Disclosure and Tracking
The App never sells, rents, or shares your information with third parties. The App does not:
- Use analytics tools
- Track user behavior
- Integrate with advertising networks
- Automatically send crash data or usage statistics
4. Data Storage and Security
- Credentials are stored in the macOS Keychain and protected by the operating system’s security mechanisms.
- The App runs within the macOS App Sandbox environment.
- Communication with cloud storage is performed over HTTPS (an encrypted connection).
- The App does not encrypt user data with its own encryption (transport encryption is provided by each cloud service’s HTTPS).
5. Data Deletion
- Deleting a connection: when you delete a connection in the App, the corresponding credentials are also removed from the Keychain.
- Clearing the cache: you can clear the metadata cache from the settings screen.
- Deleting the App: when you uninstall the App, the settings and cache it stored locally are deleted.
Your files in cloud storage are not deleted when you uninstall the App. Manage them on each cloud service as needed.
6. About Third-Party Services
The App connects to external cloud storage services that you have contracted with yourself. The App is an independent third-party client and is not affiliated with, sponsored by, or endorsed by Amazon Web Services, Cloudflare, Dropbox, Google, or PikPak. Amazon S3, Cloudflare R2, Dropbox, Google Drive, and PikPak are trademarks of their respective owners. For how each service handles your data, please review that service’s own privacy policy (for Google, see the Google Privacy Policy).
7. Children’s Privacy
The App is not intended for children under the age of 13. The App does not collect personal information for the developer.
8. Changes to This Policy
This policy may be changed without notice due to legal changes or the addition of app features. When there are significant changes, we will announce them in the app’s update notes or on this page.
9. Contact
Related pages: Terms of Service · Obaket page · 日本語
← Back to the Obaket page