C CoController AI Pricing

Privacy Policy

Effective: September 25, 2026

CoController AI ("we", "us") provides a month-end close workspace for accountants and their clients, consisting of the Close Center web app and the CoController AI Chrome extension. This policy explains what data we collect when you connect QuickBooks Online, how we use it, and how you can disconnect and delete it.

1. Data we collect

  • Account & billing data: your name, work email, and subscription details. Card numbers are processed by Stripe — we never see or store them.
  • QuickBooks Online data (via OAuth, only after you connect): company profile, chart of accounts, and purchase/deposit transactions — we read only what the features you use need (e.g. uncategorized transactions for Review & Categorize, categorized history for learned suggestions). We never read your bank-feed credentials.
  • Extension data: the Chrome extension reads the QuickBooks pages you have open in order to show its side panel. Bank-statement CSVs you upload for reconciliation are processed locally in your browser and never sent to our servers.
  • Usage data: basic, anonymized diagnostics (e.g. which features are used) to improve the product.

2. How we use it

  • To provide categorization suggestions, reconciliation, close checklists, flux analysis, and workpapers.
  • To process subscriptions and show license status (Stripe).
  • To respond to support requests.

We do not sell your data. We do not use your QuickBooks data for advertising, and we do not train shared models on any client's books.

3. Who we share data with (subprocessors)

  • Intuit / QuickBooks Online — accounting data, only via the official API with your OAuth consent.
  • Stripe — payment processing (subject to Stripe's privacy policy).
  • Cloudflare — hosting and infrastructure.

No other third party receives your accounting data.

4. Data retention & deletion

OAuth tokens are stored encrypted on our servers and are used only to act on your QuickBooks data when you ask us to (sync, recategorize with your explicit approval). Categorized results and checklists you create persist in your workspace until you delete them. When you disconnect QuickBooks, we delete your OAuth tokens and stop accessing your company data. You can request full deletion of your workspace data at any time (see §6).

5. Your rights

You may request access to, correction of, or deletion of your personal data, and you may withdraw QuickBooks consent at any time by disconnecting (see the Support page for steps). We respond to requests within 30 days.

6. Disconnecting & deleting your data

Disconnect QuickBooks at any time from QuickBooks → Apps → My Apps → CoController AI → Disconnect, or from the Close Center account settings. Then email support@getcocontroller.com with subject "Delete my data" and we will permanently delete your workspace data, including tokens and cached company data, within 30 days and confirm by email.

7. Security

All traffic uses HTTPS. OAuth tokens are encrypted at rest and never stored in plain text. Access to production systems is limited to the founding team. No system is perfectly secure; if we learn of a breach affecting your data, we will notify you promptly.

8. Children

CoController AI is a business product and is not directed at children under 16.

9. Changes to this policy

We will post material changes here and update the effective date. Continued use after changes take effect constitutes acceptance.

10. Contact

Questions about privacy: support@getcocontroller.com.

© 2026 CoController AI. Privacy · Terms · Support