Last Updated: [DATE]
When you create a BackupBuddy account, we collect: your name, email address, business name, and billing information (processed by our payment provider — we do not store full credit card numbers).
When you authorize a connection, BackupBuddy accesses your QBO data through Intuit's API using read-only permissions. The specific data accessed depends on your selections and may include: financial reports (Profit & Loss, Balance Sheet, Trial Balance, General Ledger, etc.), transaction-level detail, customer and vendor records, chart of accounts, and supporting documents (invoices, receipts, bills, and file attachments) associated with transactions. We only access the data you explicitly choose to extract.
We automatically collect: IP address, browser type and version, device information, operating system, pages visited within the Service, timestamps, referral URLs, and error logs. We use this data to operate, maintain, and improve the Service.
We use essential cookies to maintain your session and authentication state. We may use analytics cookies to understand how the Service is used. [PLACEHOLDER: Specify analytics provider if applicable — e.g., Google Analytics, Mixpanel.] You can manage cookie preferences through your browser settings.
We use the information we collect to: provide, operate, and maintain the Service, including extracting and transforming your chosen QBO data and supporting documents into your selected export formats; process payments and manage your subscription; communicate with you about your account, service updates, and support requests; monitor and analyze usage to improve the Service; detect, prevent, and address technical issues, fraud, or security concerns; and comply with legal obligations.
We do not use your QuickBooks financial data or supporting documents for advertising, marketing, profiling, data brokerage, or any purpose other than delivering the Service to you.
We do not sell your personal information or your QuickBooks financial data. We may share information only in the following limited circumstances:
We use third-party service providers to help operate the Service (e.g., cloud hosting on Amazon Web Services, payment processing via [PLACEHOLDER: e.g., Stripe]). These providers access data only as necessary to perform their functions and are contractually obligated to protect it.
Data is exchanged with Intuit as required for API connectivity and authentication. Your use of QBO is governed by Intuit's own terms and privacy statement.
We may disclose information if required by law, regulation, legal process, or governmental request, or to protect the rights, safety, or property of our Company, our users, or the public.
In the event of a merger, acquisition, or sale of assets, your information may be transferred to the successor entity. We will notify you of any such change.
Your data is stored on Amazon Web Services (AWS) infrastructure located in [PLACEHOLDER: AWS region]. Data is encrypted in transit using TLS 1.2 or higher and at rest using AES-256 encryption or equivalent.
We implement commercially reasonable administrative, technical, and physical safeguards to protect your data, including access controls, audit logging, and regular security reviews.
No method of transmission or storage is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.
Account Information is retained for the duration of your active account plus [PLACEHOLDER: e.g., 12 months] after account closure for legal and accounting purposes.
Exported QBO Data and Supporting Documents are retained for the duration of your active subscription plus [PLACEHOLDER: e.g., 30 days] after subscription cancellation or company file disconnection, after which they are permanently deleted.
Technical and Usage Data is retained in aggregate or anonymized form for up to [PLACEHOLDER: e.g., 24 months] for analytics and service improvement.
You may request deletion of your data at any time (see Section 7).
If you are a Canadian resident, you have the right to: access the personal information we hold about you; request correction of inaccurate information; withdraw consent for the collection, use, or disclosure of your personal information (subject to legal or contractual restrictions); and file a complaint with the Office of the Privacy Commissioner of Canada.
To exercise these rights, contact us at [PLACEHOLDER: privacy email].
If you are a resident of California or another US state with applicable privacy legislation (including CCPA/CPRA, Virginia CDPA, Colorado CPA, Connecticut CTDPA, or similar), you have the right to: request details about the personal information we collect and how it is used (Right to Know / Access); request deletion of your personal information, subject to certain exceptions (Right to Delete); we do not sell personal information, so no opt-out is necessary (Right to Opt-Out of Sale); and we will not discriminate against you for exercising your privacy rights (Right to Non-Discrimination).
To exercise these rights, contact us at [PLACEHOLDER: privacy email]. We will verify your identity and respond within the timeframes required by applicable law.
BackupBuddy is a business application and is not directed at individuals under 18. We do not knowingly collect personal information from children.
The Service may contain links to third-party websites or services (e.g., Intuit, payment processors). We are not responsible for the privacy practices of those third parties. We encourage you to review their privacy policies.
If you are located in Canada and your data is processed or stored in the United States (or vice versa), your information may be subject to the laws of the jurisdiction where it is stored. By using the Service, you consent to the transfer and processing of your data as described in this Policy.
[PLACEHOLDER: If you anticipate EU/UK users, add GDPR-specific disclosures and consider a Data Processing Addendum.]
We may update this Privacy Policy from time to time. We will notify you of material changes by email or in-app notice at least [PLACEHOLDER: e.g., 30 days] before the changes take effect. The "Last Updated" date at the top reflects the most recent revision.
If you have questions about this Privacy Policy or wish to exercise any of your rights:
[LEGAL ENTITY NAME]
[Mailing Address]
Email: [PLACEHOLDER: privacy email]