QuickBooks Connector Privacy Notice
Effective date: August 27, 2026
Scope
This notice covers the internal QuickBooks Online connector operated for TB Food Inc. using the Proof Cellars domain. It does not replace the separate privacy policy governing Proof Cellars’ retail website.
Information the connector accesses
With an authorized administrator’s consent, the locally operated MCP connector may access QuickBooks accounting records needed for internal financial review and bookkeeping, including general-ledger accounts and entries, reports, transaction details, vendors, customers, and related business metadata.
The connector is configured to request the QuickBooks accounting scope only. It is not intended to request payment-processing or OpenID profile scopes.
Hosted callback relay
The public site at this domain only relays Intuit’s one-time authorization response to a loopback listener running on the administrator’s computer. It allowlists the authorization code, QuickBooks company identifier, state, and OAuth error fields. It does not exchange the code, store OAuth tokens, receive the Intuit client secret, or access QuickBooks accounting data.
How information is used
- Reconcile sales, deposits, fees, taxes, tips, payroll-related postings, and other accounting activity.
- Investigate discrepancies and prepare or carry out administrator-approved bookkeeping corrections.
- Maintain, secure, troubleshoot, and audit the private integration.
QuickBooks data is not sold, used for advertising, or disclosed for unrelated purposes.
Storage, security, and retention
The local authorization tool stores the client credentials, company identifier, and rotating refresh token in a dedicated local file restricted to the operating-system account that created it. The hosted site does not retain these values. Production operation must also restrict access to the administrator’s computer and the MCP process.
OAuth credentials are retained locally only while the connection is authorized or as required to complete disconnection and security review. Accounting data should be retained only for the internal work that required it and in accordance with TB Food Inc.’s accounting, tax, and legal retention obligations. Revoking the app in QuickBooks invalidates its authorization; the local token file must then be securely removed.
Service providers and disclosure
When an authorized administrator uses the connector through OpenAI Codex, the QuickBooks queries they request and relevant returned accounting data may be processed by OpenAI to provide that internal analysis. The public callback relay is hosted by Vercel and processes only the limited authorization fields described above. The connector also depends on Intuit QuickBooks.
Information may also be disclosed when required by law, to protect the service or its users, or to professional advisers under appropriate confidentiality obligations.
Choices and contact
An authorized administrator can disconnect QuickBooks from this site or revoke access from within QuickBooks. Privacy questions may be submitted through Proof Cellars’ published contact channel.
Changes
Material changes will be posted here with a revised effective date before they apply to live QuickBooks processing.