Privacy Policy
Effective date: 10 October 2026
1. Who we are and scope
Ledgerline (the “Service”) is operated by SA Globus of 504, Shivalik Shilp 2, Vastrapur, Ahmedabad - 380054, India (“SA Globus”, “we”, “us”). The Service is a private, non-commercial reporting tool provided free of charge, by invitation only, to a limited number of SA Globus’s bookkeeping clients in the United Kingdom and their authorised personnel (each a “User”). It is not offered to the public and is not listed in any app marketplace. This policy explains how we handle information under the UK General Data Protection Regulation (“UK GDPR”) and the Data Protection Act 2018.
2. Roles
2.1 For Account Data (Section 3.1) we are the controller.
2.2 For Connected Data (Section 3.2), the User’s business (the “Client”) is the controller of any personal data it contains, and we act as its processor, processing it only on the Client’s documented instructions, as set out in the written data processing terms made available to each Client under Article 28 UK GDPR.
3. Information we handle
3.1 Account Data. For each User: the email address, a salted one-way hash of the password (we never store the password itself), an encrypted authenticator-app secret and hashed one-time recovery codes, the role and the companies the User may view, and sign-in timestamps. Our hosting platform also records technical logs (such as IP address and request time) for security and troubleshooting. We collect no other personal data about Users.
3.2 Connected Data. When a Client connects a QuickBooks Online company through Intuit’s authorisation process, we obtain read-only access, under the com.intuit.quickbooks.accounting scope, to: the company name, home currency and fiscal-year start month; the chart of accounts (names, types, identifiers); and monthly Profit and Loss and Balance Sheet totals per account. This is aggregated business financial information used to produce insights.
3.3 What we do not collect. We do not retrieve or store individual transactions, invoices or bills, customer or supplier details, payroll or employee records, bank or payment-card credentials, or tax identifiers, and we never create, change or delete anything in QuickBooks.
3.4 Credentials. To maintain the connection we store the access and refresh tokens issued by Intuit, encrypted at rest (AES-256-GCM).
4. Purposes and lawful bases
- Providing the Service you or your business asked for, including account administration (contract; Article 6(1)(b)).
- Keeping the Service secure, preventing abuse and troubleshooting (our legitimate interests; Article 6(1)(f)).
- Complying with legal obligations (Article 6(1)(c)).
We do not sell personal data, use it for marketing, advertising or profiling, make automated decisions about individuals, or use Connected Data to train machine-learning models.
5. Cookies
The Service sets a single, strictly necessary session cookie to keep you signed in (and a short-lived security cookie while connecting to QuickBooks). We use no analytics, advertising or tracking cookies, so no consent banner is required.
6. Recipients and international transfers
6.1 We use the following sub-processors, each under written terms: Render Services, Inc. (application hosting) and Neon, Inc. (managed PostgreSQL database on Amazon Web Services), both in the United States (Ohio). Intuit Inc. provides the QuickBooks data we retrieve and is independently responsible for it.
6.2 Because data is processed in the United States, it is transferred from the UK under appropriate safeguards required by Chapter V UK GDPR, such as the UK Addendum to the EU Standard Contractual Clauses or the International Data Transfer Agreement, or the UK Extension to the EU–US Data Privacy Framework where the provider is certified. A copy of the relevant safeguards is available on request.
6.3 We may also disclose information where required by law or valid legal process.
7. Security
- All traffic uses TLS (HTTPS); passwords are stored only as salted scrypt hashes.
- OAuth tokens are encrypted at rest with a key held separately from the database.
- Per-user accounts: a Client can see only the companies assigned to it; administrator actions are restricted and temporary passwords must be changed at first sign-in.
- Mandatory two-step verification (authenticator app) for every account, with single-use recovery codes stored only as hashes, and a security question on the sign-in form.
- Rate-limited sign-in, signed and expiring sessions, same-origin protection on state-changing requests, and cryptographic verification of every Intuit webhook.
If a personal data breach affecting you or your Client occurs, we will notify the Client without undue delay and, where required, the Information Commissioner’s Office (ICO).
8. Retention and deletion
8.1 Connected Data is kept while the company remains connected. A User may disconnect a company at any time in the Service or from Intuit (QuickBooks Online → Apps); we then revoke the token and delete the stored tokens. Choosing “Remove” permanently deletes the company and all of its synced data.
8.2 Account Data is deleted when the account is deleted, and in any event within 30 days of a written request, except where we must retain it by law. Residual copies in encrypted provider backups are overwritten in the ordinary backup cycle.
9. Your rights
Under UK GDPR you have the right to access, rectify and erase your personal data, to restrict or object to its processing, to data portability, and to withdraw any consent you have given. To exercise these rights contact us (Section 11); where we act as processor we will pass your request to the relevant Client. You may complain to the ICO (ico.org.uk, 0303 123 1113) without first contacting us.
10. Children
The Service is for business use and must not be used by anyone under eighteen (18).
11. Contact
SA Globus, 504, Shivalik Shilp 2, Vastrapur, Ahmedabad - 380054, India. Email: nikhil@saglobus.com. We have not appointed a Data Protection Officer; privacy enquiries are handled by the contact above.
12. Changes
We may amend this policy from time to time. The effective date above will be updated and Users will be told of material changes before they take effect.