Privacy Policy

Where your data goes and how it is protected.

Draft — pending legal review. Last updated: fill in before publishing.

This page describes how Mekhea ERP handles data accessed through its QuickBooks Online integration.

What we read from QuickBooks

When you connect a QuickBooks Online company to Mekhea ERP, we request the com.intuit.quickbooks.accounting scope only — never the payments scope. This lets us read and write your chart of accounts, customers, vendors, items, invoices, bills, payments and related accounting records, for the purpose of keeping your books in Mekhea ERP and QuickBooks Online in sync.

What we do not do

We do not sell your QuickBooks data, and we do not share it with any third party other than Intuit itself (as the platform the data comes from) and service providers strictly necessary to operate Mekhea ERP (e.g. hosting).

How your connection is secured

Your QuickBooks access and refresh tokens are encrypted before storage using Fernet symmetric encryption; the encryption key is kept outside both the application code and the database. Tokens are never written to logs, error messages, or displayed on screen. All traffic between Mekhea ERP and Intuit's servers uses HTTPS/TLS.

How long we keep data

Synced QuickBooks data is retained for as long as your company remains connected, plus a reasonable backup/retention window after disconnection, after which it is deleted on request.

Disconnecting

You can disconnect QuickBooks from Mekhea ERP at any time from the QuickBooks settings screen inside Mekhea ERP, and separately from Intuit's own "My Apps" page (myapps.intuit.com). Disconnecting revokes our access immediately.

Contact

Questions about this policy or your data: support@mekhea.com.