Traci Chick, CFO ("we," "us," or "Traci Chick CFO") provides fractional finance, accounting, and operations services to businesses. This Privacy Policy explains how we handle information when a client authorizes us to access their QuickBooks Online data through the Traci Chick CFO Connector (the "Connector"), and how we handle information collected through this website, tracichickcfo.com.
1.Who this policy covers
This policy applies to two audiences: prospective clients who contact us through this website, and existing clients who connect their QuickBooks Online company to the Connector as part of an accounting or finance services engagement with us.
2.Information we access
Depending on how you interact with us, we may access:
- QuickBooks Online accounting data. When you authorize the Connector, we access your accounting records in QuickBooks Online — such as your chart of accounts, transactions, journal entries, invoices, bills, reports, and related financial data — solely to provide the accounting and finance services you have contracted us to perform. We request the Accounting scope only. We do not request or access payment-card data, and we do not use the Intuit Payments API.
- Website contact information. If you submit our contact form, we collect the name, email address, company, and message details you provide so we can respond to your inquiry.
3.How we access QuickBooks data — and your control
Access to your QuickBooks Online data occurs exclusively through Intuit's official API, and only after you grant explicit authorization through Intuit's OAuth consent flow. We never see or store your QuickBooks (Intuit) username or password.
You can revoke our access at any time directly from your Intuit account (Settings → Manage your Intuit account → Apps & connected accounts, or the equivalent in your QuickBooks Online company). Revoking access immediately ends the Connector's ability to access your data.
4.How your data is stored and secured
- Encrypted credentials. The access tokens that authorize the Connector are stored encrypted in AWS Secrets Manager, in isolated per-client vaults. We do not store QuickBooks credentials or tokens in plaintext.
- Encryption in transit. All data moving between the Connector, Intuit, and our systems is protected with TLS (HTTPS) encryption.
- Isolated per-client hosting. The Connector runs in our own AWS environment (United States regions), with each client's data and credentials kept separate.
- Restricted access. Access to client systems is limited to named Traci Chick CFO personnel and the client's own authorized users. Sign-in is restricted by Google authentication (domain- and named-user–restricted), and administrative access is protected with multi-factor authentication.
5.How we use the data
We access and use your QuickBooks Online data for one purpose: to deliver the accounting, finance, and operations services set out in your engagement with us — for example, preparing journal entries, closing the books, reconciliations, reporting, and analysis. We do not use your QuickBooks data for advertising, and we do not sell it.
6.Sharing and service providers
We do not sell your data and we do not share it with third parties for their own purposes. We rely on a limited set of service providers strictly to deliver our services to you:
- Amazon Web Services (AWS) — hosting and encrypted storage of the Connector and its credentials, in the United States.
- Anthropic (Claude) — AI processing used to perform accounting work at your direction, as part of the contracted service.
These providers process data only as needed to support the service. We may also disclose information where required by law.
7.Data retention
We retain access to your QuickBooks Online data only for the duration of your engagement. Access ends when the engagement ends or when you revoke authorization, whichever comes first. Contact information submitted through the website is retained only as long as needed to respond to and follow up on your inquiry.
8.Intuit / QuickBooks disclosures
QuickBooks and Intuit are trademarks of Intuit Inc. The Connector is an independent application and is not endorsed by or affiliated with Intuit. Our use of information received through the Intuit API adheres to the Intuit Developer requirements, including limiting our use of QuickBooks data to providing the service you have authorized.
9.Changes to this policy
We may update this Privacy Policy from time to time. When we do, we will revise the "Last updated" date above. Material changes affecting how we handle your data will be communicated to active clients directly.
10.Contact us
Questions about this policy or about how your data is handled? Email traci@tracichickcfo.com.