Privacy Policy
Effective Date: October 2026 • Version 2.0
Our Commitment to Your Privacy & Accounting Data Security:
StockSlip strictly adheres to the Intuit Developer Data Protection & Privacy Guidelines. We never sell, rent, trade, or monetize any customer accounting records, personal data, or transaction details under any circumstances.
1. Information We Collect
When you use StockSlip or connect your Intuit QuickBooks Online accounting account via OAuth 2.0, we collect only the minimum necessary data to fulfill picking list and picking operations:
- Sales Orders, Invoices, and Sales Receipts (transaction numbers, dates, payment status, terms, and total amounts).
- Customer shipping addresses, billing addresses, customer company names, email addresses, and phone numbers.
- Line item details including product SKU, item title, item description, quantity ordered, unit of measure (UOM), and price.
- Warehouse attributes and custom fields (e.g. Bin/Shelf locations, Lot numbers, Serial numbers, Weight, Barcodes, and custom attributes).
- User account details (name, business email, encrypted password).
- Organization settings (company name, warehouse address, phone number, and uploaded company logo for template headers).
- Custom template design configurations and layout preferences.
2. How We Use Your Information
We use your information exclusively for the following operational purposes:
- Generating, formatting, and printing warehouse picking slips, pick lists, and shipping documents.
- Synchronizing real-time order status and transaction updates from QuickBooks Online.
- Authenticating users and enforcing strict multi-tenant access controls.
- Providing technical customer support and system reliability notifications.
We do not use your financial or customer data for automated advertising, marketing profiling, or credit evaluation.
3. Data Security & Encryption Standards
We implement comprehensive physical, organizational, and technical safeguards to protect your data against unauthorized access, loss, or misuse:
- OAuth Token Encryption: All Intuit QuickBooks Online OAuth 2.0 access tokens and refresh tokens are encrypted at rest using AES-256-GCM authenticated encryption with secure server-side key management.
- Encryption in Transit: All communications between your browser, our servers, and the Intuit API are encrypted using modern Transport Layer Security (TLS 1.3 / HTTPS).
- Tenant Isolation: Every database query and sync process enforces strict organization boundaries. No customer or organization can ever view or access another organization’s QuickBooks accounting data.
- Access Controls: Access to production servers is strictly restricted using multi-factor authentication (MFA) and least-privilege role boundaries.
4. Third-Party Service Providers & Sub-processors
We do not sell or rent data. We only share necessary infrastructure data with trusted, enterprise-grade cloud providers who are bound by strict data processing and confidentiality agreements:
- Intuit Inc.: To authenticate via OAuth 2.0 and retrieve requested sales transactions.
- Cloud Hosting & Database Infrastructure: Secure cloud data centers with SOC 2 Type II and ISO 27001 certifications.
5. Data Retention & Intuit Data Deletion Procedure
You maintain complete control and ownership over your business and accounting data. You have the right to revoke access and request complete deletion at any time:
How to disconnect and delete your data:
- Disconnect QuickBooks Online: Go to Settings → QuickBooks Online and click Disconnect, or revoke authorization directly within your Intuit App Center. Disconnection immediately invalidates and purges all OAuth tokens.
- Permanent Organization Purge: Go to Settings → Danger Zone and select Delete Organization & Data. This permanently purges all synced orders, line items, templates, and profile settings from our active database.
- Manual Deletion Request: You may also email privacy@stockslip.io with the subject line "QuickBooks Data Deletion Request". All requested data will be permanently wiped from all systems and backups within 30 days in full compliance with Intuit Developer terms.
6. Your Privacy Rights (GDPR & CCPA/CPRA)
Depending on your location, you may have rights under applicable privacy laws, including the General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA):
- The right to access and receive a copy of your personal data.
- The right to rectify inaccurate or incomplete data.
- The right to request the complete erasure ("Right to be Forgotten") of your data.
- The right to restrict or object to the processing of your data.
7. Contact Our Privacy & Security Team
If you have any questions or concerns regarding this Privacy Policy, our Intuit developer compliance, or our data practices, please contact our Data Protection Officer:
StockSlip Privacy & Security Office
Email: privacy@stockslip.io
Support: support@stockslip.io
Physical Inquiries: StockSlip Data Security, 100 Enterprise Way, Suite 400, Austin, TX 78701