Claim your free space
Docs

Sharing an app: viewers, editors and public links

You can share an app with a person by the email they sign in with, as a viewer or an editor, or make it public so anyone with the link can use it. The three differ in one way that matters more than the labels suggest: an editor's changes run in your browser when you open the app, so an editor is trusted as much as you are, while a viewer and the public can only look. This page says exactly what each gets.

Owner, editor, viewer

What each role can do
ViewerEditorOwner
Use the live app and read its recordsYesYesYes
Add and change records, run actions, talk to the assistantNoYesYes
Change the app: source, screen, settings; apply versionsNoYesYes
Archive, delete, back up and restore the appNoNoYes
Invite people, change roles, make the app publicNoNoYes
Connect an outside AI tool to the kaddyNoNoYes

A role is decided on every request, on the server, and applies to everything: the screen, the Data view, and the addresses an app's screen reads records from. There is no way for an app's own screen to grant, check, or bypass a role; access is a setting on the app, not a feature the app implements.

What a viewer sees

A viewer opens the app and nothing else: no conversation column and no gear menu, because everything behind the gear is builder work. They can read every record the app holds, including records its screens do not happen to display, since the app's lists read the same tables. Nothing a viewer does changes what anyone else sees.

Viewer is the default when you invite someone, and it is the right role for anyone you would not hand your account to.

Why an editor is trusted like you

An editor can do what you do day to day: change records, run actions, talk to the assistant, change the screen and apply versions. Two consequences follow. The assistant's work spends your kaddy's allowance, because collaboration is shared spend. And an editor writes the app's code, which runs in your browser with your session when you open the app, so an editor could in principle do anything you can. That is not something a setting can soften; it is what editing means. Invite an editor you trust as much as yourself.

What only the owner can do

Archiving an app pauses it: it leaves the sidebar and its scheduled runs stop, and it can be brought back. Deleting is a second step that is only offered for an archived app; it takes a final backup first, which is kept for thirty days. Backups, restores, the sharing settings themselves, and connecting an outside AI tool to your kaddy are the owner's alone, because their reach is the app's existence rather than its contents.

Sharing an app shares that app. Your other apps, their records and their assistants' memories are untouched, and an editor of one app sees nothing of another. A person you share with sees "Shared with you" as their home screen in your kaddy, listing only what you have shared.

Before you share

Open the Data view and read what the tables actually hold, not what the screen shows; that is what a viewer or the public can read. Decide whether the person needs to change anything, and if not, leave them a viewer. If you make an app public, prefer one that holds no one's personal details, and remember that changing the setting back stops future reads but cannot recall what was already seen.

Keep reading

Docs

What Kaddy apps can do

The capabilities of a Kaddy app in one place: records, screens, actions, an assistant with memory and voice, connections, sharing, versions, and backups.

Docs

What a Kaddy app is made of

The parts of every Kaddy app: its records, its screen, and its assistant; the two conversations you have with it; and how a change is previewed, applied, and undone.

Try an idea
in Kaddy.

Claim your free space