OkPilot Worker App Privacy Policy
Last updated: September 1, 2026
This policy covers the OkPilot Worker mobile app — the app field workers use on iOS and Android (package ai.okpilot.worker). It is separate from the OkPilot website privacy policy, which covers okpilot.ai, cookies, and marketing.
If you want your worker account and data deleted, use the account deletion request page.
Contents
- Who controls your data
- What the app collects
- What the app does not collect
- Location, in detail
- Camera and photos
- Your phone number and sign-in
- Who your data is shared with
- Service providers
- How long data is kept
- Your rights and deletion
- Security
- Age requirement
- International transfers
- Changes to this policy
- Contact
1. Who controls your data
The OkPilot Worker app is workforce software. You almost certainly did not sign up for it yourself — your employer did, and they created your worker account.
That matters for privacy law, so we will be plain about it:
- Your employer is the data controller. They decide what work you are assigned, what proof you must capture, and how long your records are kept. They own the employment relationship and the operational record.
- OkPilot is the data processor. We run the software on your employer's behalf and act on their instructions. We do not use your work data for our own purposes, and we never sell it.
In practice this means some requests — for example, deleting your account — need your employer's action as well as ours. Our deletion request page contacts both of us at once so you do not have to chase anyone.
OkPilot is a product of Telyport Technologies Private Limited, Aerospace Park, 12186 Bagaluru, Karnataka 562149, India.
2. What the app collects
Everything in this table is something the app actually does. Each row corresponds to a real permission and a real call in the shipped build.
| Data | When | Why |
|---|---|---|
| Phone number | At sign-in | It is your identity in the app. Verified by Firebase Authentication (see §6). |
| Precise location, including in the background | Only while you are on duty | So your operator can assign you work, confirm you arrived at a stop, and give the person expecting you an accurate ETA. See §4. |
| Photos you capture | When a job requires proof | Proof of completion, attached to that job. Taken with the camera or chosen from your photo library. |
| Your work record — jobs assigned, statuses, timestamps, earnings and scorecard figures | As you work | Running the operation, paying you, and the audit trail your employer is required to keep. |
| Name and worker profile | Created by your employer | Identifying you to your operator and to the people you are sent to. |
| Sign-in token and offline job cache | Continuously | Kept on your device only — in the system keychain / encrypted preferences and a local database — so you stay signed in and can keep working through a dead zone. This never leaves your phone. |
| Network connectivity state | Continuously | To queue your work when you are offline and send it when you reconnect. On-device only. |
The app talks to exactly two places on the internet: the OkPilot backend, and Firebase Authentication for phone verification. Nothing else.
3. What the app does not collect
This list is as important as the one above, and it is equally literal:
- No advertising, and no advertising identifiers. There are no ads in the app and no ad SDK in it.
- No analytics or usage tracking. There is no analytics SDK of any kind — no Google Analytics, no Firebase Analytics, no third-party product analytics.
- No crash or diagnostics reporting. App logs are written to the device's own developer log and are not transmitted anywhere.
- No contacts, no calendar, no microphone, no health data, no files beyond the proof photos you choose.
- No recording of your phone calls. Tapping a phone number opens your phone's own dialer; the call itself is between you and them.
- No tracking across other apps or websites.
- We do not sell your personal information, and we do not share it for advertising.
4. Location, in detail
Location is the most sensitive thing the app handles, so here is exactly how it behaves.
When it is collected
Your location is collected only while you are on duty. Going on duty is an explicit action you take in the app. Collection starts when you go on duty and stops when you go off duty — not before, not after, and never when you are not working.
Why it runs in the background
Field work means driving with the phone in a mount or in your pocket and the screen off. If location only worked with the app open on screen, your operator would lose you the moment you started driving, and the person waiting for you would get a stale ETA. That is why the app requests background (Android: "Allow all the time" / iOS: "Always") location and shows a persistent notification while it is active.
What it is used for
- Assigning you the jobs that are actually near you.
- Confirming you arrived at a stop, so a job can be completed.
- Giving the recipient a live ETA while their job is active.
Your position is not used to score you on anything you have not been told about, and it is not retained as a movement history beyond the operational record described in §9.
How to turn it off
Go off duty in the app and collection stops. You can also revoke the permission at any time in Settings → Apps → OkPilot Worker → Permissions (Android) or Settings → OkPilot Worker → Location (iOS). The app will still run, but you will not be able to go on duty or receive work, because your operator cannot dispatch to a worker they cannot locate.
5. Camera and photos
Some jobs require a proof photo before you can mark them complete — a parcel at a door, a finished repair, a signed form. The app opens your camera, or lets you pick an existing photo, only at that moment.
The photo is attached to that specific job and sent to your employer. It is stored in encrypted object storage. The app does not scan, index, or upload anything else from your photo library.
6. Your phone number and sign-in
You sign in with your phone number. Verification is handled by Firebase Authentication, a Google service, which confirms the number belongs to you — either by a one-time code, or on some Android devices by checking the SIM in the phone directly, without sending an SMS.
Google processes your phone number and basic device signals to perform that check and to prevent abuse, under Google's privacy policy. Once verified, OkPilot issues its own session token to your device; that token is what the app uses from then on.
On iOS, if silent verification is not available, Firebase may briefly open a verification page in your browser and return you to the app.
7. Who your data is shared with
- Your employer (the operator or dispatcher running your jobs) sees your work record, your on-duty location, and your proof photos. This is the purpose of the product.
- The person expecting you — a customer, patient, or client — may see your first name and your live position and ETA while their job is active, through a tracking link. They do not see your phone number, your history, or your location at any other time.
- Service providers who run infrastructure on our behalf, listed in §8. They act on our instructions and may not use your data for their own purposes.
- Legal requirements — if we are legally compelled to disclose information, or must do so to protect someone's safety or our legal rights.
- A business transfer — if OkPilot is acquired or merged, data may transfer as part of that transaction. You would be notified.
That is the complete list. Your data is not shared with advertisers, data brokers, or anyone else.
8. Service providers
We use these providers to run the service. We update this list when it changes.
| Provider | What it does |
|---|---|
| Google (Firebase Authentication) | Verifies your phone number at sign-in |
| Fly.io | Runs the OkPilot backend servers |
| Neon | Hosts the database holding your work record |
| Cloudflare R2 | Stores proof photos |
| Upstash | Caching and real-time updates |
| Mapbox | Turns addresses into coordinates and calculates routes and ETAs. Called by our servers, not by the app. |
| Resend | Sends transactional email, including deletion-request notifications |
9. How long data is kept
- Your account is kept while you work for an employer using OkPilot.
- Location points are kept as part of the record of the job they belong to, so a completed job can be audited or disputed. They are not kept as a standalone movement history.
- Proof photos are kept for as long as your employer's retention policy requires, because they are the evidence a job was completed.
- Job and audit records are retained by your employer for the period their own legal, tax, and dispute obligations require.
When data is no longer needed, it is deleted or irreversibly anonymised.
10. Your rights and deletion
Depending on where you live, you may have the right to access your data, correct it, delete it, object to processing, or receive a copy in a portable form. We honour these requests regardless of where you are.
To request deletion of your account and data, use the account deletion request page. You do not need the app installed to use it. That form notifies both your employer and OkPilot at the same time, and you receive a copy of the request.
Two honest caveats, so nothing is a surprise:
- Because your employer is the controller, some records — completed jobs, proof photos, payment records — may have to be retained by them to meet legal, tax, or dispute obligations even after your personal account is deleted. Where that applies, we disassociate the records from you rather than keeping them under your name.
- Deleting your account ends your access to the app. If you still work for that employer, talk to them first.
For any other privacy request, email hello@okpilot.ai. We respond within 30 days.
11. Security
- All traffic between the app and our servers is encrypted with TLS.
- Your session token is held in the device's secure keychain (iOS) or encrypted preferences (Android), not in ordinary app storage.
- Personal fields such as phone numbers and addresses are encrypted in our database.
- Each employer's data is isolated from every other employer's at the database level.
- Operator actions on your record are written to an append-only audit log.
No system is perfectly secure, but we would rather tell you what we actually do than make a vague promise.
12. Age requirement
OkPilot Worker is workplace software for adults in paid work. It is not directed at children, and we do not knowingly collect data from anyone under 18. If you believe a minor has an account, contact hello@okpilot.ai and we will remove it.
13. International transfers
OkPilot is operated from India and runs on infrastructure in the United States and other regions. Your data may be processed in countries other than the one you live in. Where the law requires a transfer mechanism — such as the EU Standard Contractual Clauses — we put one in place with the provider concerned.
14. Changes to this policy
If we change what the app collects or who it is shared with, we update this page and the "Last updated" date above, and we describe the change rather than quietly editing the text. Material changes are announced in the app.
15. Contact
- Privacy requests: hello@okpilot.ai
- Account deletion: okpilot.ai/account-deletion/
- Anything else: hello@okpilot.ai
Registered entity: Telyport Technologies Private Limited
Aerospace Park, 12186 Bagaluru
Karnataka 562149, India