Privacy & Security FAQ

Privacy & Security

Kavero is built to give you control over your image generation workflow without asking for unnecessary access.

Drive access

Kavero uses limited drive.file access and does not request broad Drive browsing access.

API keys

Full provider keys are kept out of the browser and used only by server-side generation requests.

Is my API key safe?

Yes. Kavero stores your provider API keys securely using server-side secret storage. Your full key is never exposed in the browser.

Inside the app, we only show a short key hint so you can recognize which key is connected. The full key is only read by Kavero's server when it is needed to send a generation request to your selected provider.

Can Kavero see my entire Google Drive?

No. Kavero uses limited Google Drive access through Google's drive.file permission.

This means Kavero is designed to work with files it creates or files you explicitly connect through the app. For generated images, Kavero creates a dedicated folder called Kavero Generated Images and stores your generated files there.

Kavero does not request broad access to browse your entire Google Drive.

What data does Kavero store?

Kavero stores only the information needed to run your workspace, including your account details, plan status, connection metadata, prompt templates, generation history, gallery records, and Google Drive file IDs used by your Gallery.

Sensitive secrets, such as full API keys and Google refresh tokens, are stored separately through secure server-side secret storage.

Who owns the images I generate?

You own the images you generate, subject to the terms of the image provider you use.

Kavero does not own the image models. It acts as an interface between you and the provider you connect, such as Google Gemini. When you generate an image, your prompt, settings, and reference images are sent to that provider using your own API key.

What information is sent to image providers?

When you generate an image, Kavero sends the information required to complete that request. This may include your prompt, selected settings, and any reference images you upload.

Provider behavior is controlled by that provider's own API terms, privacy policies, and data handling rules.

What happens if I disconnect Google Drive?

When you disconnect Google Drive, Kavero attempts to revoke its access and marks the connection as disconnected.

You can still generate images without Google Drive connected, but they may not be saved to your Gallery or backed up to Drive until you reconnect.

Can I use Kavero without Google Drive?

Yes. Google Drive is used for saving generated images and metadata to your connected Drive folder.

If Drive is not connected, Kavero can still return generated images during your session, but Gallery saving may be limited.