Privacy Policy

TCSS Billing Connector · Effective 23 July 2026

1. Who this covers

The TCSS Billing Connector (the "Application") is private internal software operated by TCSS ("we", "us") solely for our own accounting operations. It is not offered to the public, has no external user accounts, and no third party can sign up for or use it.

The Application connects our own QuickBooks Online company to our own Authorize.Net merchant account in order to reconcile customer payments against invoices.

2. What the Application accesses

The Application reads data from two systems using credentials we own. It accesses only what reconciliation requires.

SourceData accessed
QuickBooks Online Invoice identifiers, document numbers, transaction and due dates, invoice totals and outstanding balances; customer identifiers, display names, company names and email addresses; payment identifiers, dates, amounts and memo fields.
Authorize.Net Settled transaction identifiers, settlement amounts and timestamps, batch identifiers, subscription identifiers, customer names, and the last four digits of the payment card.

3. What the Application never receives

The Application does not collect, process, transmit or store any of the following, and has no technical means of obtaining them:

Authorize.Net returns only a masked value showing the final four digits of a card. Card data itself remains within Authorize.Net's systems at all times.

4. How the data is used

Exclusively to match settled card transactions to the invoices they pay, to identify invoices that remain uncollected, and to record the resulting payments in our own accounting records. Specifically, we do not:

5. Where the data is stored

Data is stored in Cloudflare D1, a managed SQLite database, and the Application runs on Cloudflare Workers. Cloudflare, Inc. is our sole sub-processor and acts as an infrastructure provider; it does not access the data for its own purposes. Data is encrypted at rest.

API credentials are held as Cloudflare Workers secrets, encrypted at rest and not retrievable after being set.

6. Who can access the Application

There are no public users and no self-service registration. Every network endpoint requires a shared secret bearer token, and the deployment sits behind Cloudflare Access, restricted to specifically named individuals within our organization. Access is limited to personnel with a business need.

7. Retention and deletion

Transaction and invoice records are retained for as long as required for accounting and tax purposes, consistent with our record-keeping obligations.

If we disconnect the Application from QuickBooks Online, its stored access and refresh tokens cease to function and no further QuickBooks data is retrieved. On request, or on permanent decommissioning of the Application, its database is deleted in full.

8. Security

9. Individual rights

The Application processes business accounting records relating to our customers. If you are one of our customers and wish to know what information we hold about you, to have it corrected, or to request its deletion where we are not required to retain it, contact us at jay@tcss.io. We will respond within the period required by applicable law.

10. Changes

If this policy changes materially, the revised version will be published at this address with an updated effective date.

11. Contact

TCSS
jay@tcss.io