Privacy Policy

Overview

This Privacy Policy describes how the ReceiptProcessor application (“Software”), developed and operated by A Lot Matters, LLC (“Company,” “we,” “us”), handles data. This Software is an internal business tool and is not available to the general public.

Data We Collect and Process

The Software processes the following categories of data for internal accounting purposes:

  • Receipt images and extracted data — Scanned or photographed receipts, including vendor names, transaction dates, totals, and account classifications
  • QuickBooks Online (QBO) transaction data — Transaction IDs, vendor names, amounts, and dates retrieved from the Company’s QBO account via the Intuit API
  • Application audit logs — Operational logs recording user actions within the Software (e.g., receipt processing, save operations, QBO queries). Logs include vendor names, transaction amounts, filenames, and timestamps

How We Use Data

Data is used exclusively for:

  • Automated receipt processing and classification
  • Matching receipts to corresponding QBO transactions
  • Generating processed receipt files for company accounting records
  • Application auditing and troubleshooting

Data Storage and Transmission

  • Receipt data is processed locally on Company infrastructure
  • Data is transmitted to QuickBooks Online (Intuit) solely for transaction matching via OAuth2 API
  • No data is transmitted to any other third-party service
  • Audit logs are stored locally on Company infrastructure
  • No personal employee data (names, emails, SSNs, etc.) is collected or stored by the Software

Third-Party Services

The Software integrates with one third-party service:

  • QuickBooks Online (Intuit) — Used for transaction matching and attachment. Data shared with Intuit is limited to receipt metadata (vendor, date, amount) and receipt file attachments. Intuit’s privacy policy applies to data held in QBO: https://www.intuit.com/privacy/

The Software does not use any analytics, telemetry, advertising, or additional third-party data collection services.

Credential and Token Storage

The Software stores the following authentication materials locally on Company infrastructure:

  • OAuth credentials (client ID and client secret) — stored in plaintext configuration files, used solely to initiate OAuth2 authorization flows with Intuit
  • Session tokens (access token and refresh token) — stored locally after successful OAuth2 authorization. Access tokens are encrypted by Intuit’s JWE format. Refresh tokens are stored in plaintext. Tokens are used exclusively for authenticated API calls to QuickBooks Online

Access to these files is restricted to authorized Company personnel through Company IT security policies. Credentials and tokens are not transmitted to any party other than Intuit’s OAuth2 and QBO API endpoints.

Data Retention

Processed receipts and audit logs are retained on Company infrastructure in accordance with the Company’s internal document retention policy. Users may request deletion of audit logs by contacting the Company.

Data Security

The Software operates within the Company’s internal network and is subject to the Company’s existing IT security policies. Access to the Software is restricted to authorized Company personnel. All API communication with Intuit uses HTTPS encryption.

Employee Rights

As an internal Company tool, the Software processes company financial data — not individual employee personal data. Employees with questions about data handling may contact the Company at the address below.

Changes to This Policy

The Company may update this Privacy Policy from time to time. Changes will be communicated to authorized users of the Software.

Contact

For questions regarding this Privacy Policy, contact:

A Lot Matters, LLC
Email: garrymercaldi@hotmail.com


© 2026 A Lot Matters, LLC. All rights reserved.

© 2026 A Lot Matters, LLC. All rights reserved. Oregon CCB# 247063
Scroll to Top