01 Introduction
Welcome to AutoCat ("we," "our," or "us"). We are committed to protecting your privacy and the security of your financial data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our software and integrate it with Intuit QuickBooks Online (the "Service").
By using the Service, you agree to the collection and use of information in accordance with this policy.
02 Information We Collect
A. Account Information
When you register for an account, we collect:
- Name and Email Address — To create your account and communicate with you.
- Authentication Tokens — OAuth tokens from Intuit to securely access your QuickBooks data.
B. QuickBooks Online Data (Financial Data)
Our Service integrates directly with Intuit QuickBooks Online ("QBO"). We only access data that is strictly necessary to provide our transaction recategorization and review features. With your explicit permission, we access:
- Transaction Records — Lists of uncategorized expenses, bank transactions, bills, and journal entries.
- Vendor/Payee Data — Names and details associated with transactions.
- Company Metadata — QBO Company Name and Realm ID (used solely to identify your specific file).
- Attachments — Any receipts or documents attached to transactions (if relevant to the review process).
C. Client Input Data (Magic Links)
When you use our "Magic Link" feature to request information from your clients, we process:
- Client Responses — Answers to transaction queries (e.g., "Business" vs. "Personal").
- Client Identifiers — Email addresses (used solely to deliver the Magic Link).
03 How We Use Your Data
We use the collected information solely for the following purposes:
- Service Provision — To analyze, categorize, and organize financial transactions within the QuickBooks interface.
- Communication — To facilitate requests for information between you and your clients via Magic Links.
- Security — To detect, prevent, and address technical issues and security threats.
- Billing — To process payments and manage subscriptions via our Merchant of Record, Lemon Squeezy.
04 Data Sharing and Disclosure
We do not sell, rent, or trade your personal data or financial data.
We share data only with the following trusted third parties who are essential to the operation of the Service:
05 Data Security
We implement industry-standard technical and organizational measures to protect your data:
Encryption in Transit
All data is transmitted over HTTPS using TLS encryption.
Encryption at Rest
Databases use AES-256 encryption standards where applicable.
Access Control
Sensitive data access is strictly limited to authorized personnel.
06 Data Retention and Deletion
- Retention — Operational data is retained only while your account is active. OAuth tokens are revoked upon disconnection. Backup data, if any, is purged within a commercially reasonable timeframe.
- Deletion — You may request the deletion of your account and associated data at any time by contacting us at tryledgerloop@gmail.com. Upon request, we will delete your account from our systems.
07 Compliance with Intuit Developer Policy
We acknowledge and agree to comply with the Intuit® Agreement and the Intuit App Store Guidelines. We do not:
- Use customer data for any purpose other than providing the features of this App.
- Disclose customer data to any third party for marketing or advertising purposes.
- Access or store customer data longer than necessary for the stated purposes of the App.
08 Contact Us
If you have questions about this Privacy Policy, our data practices, or to exercise your rights, please reach out: