Privacy Policy
Effective 2026-09-28
Who we are
Accrue is a revenue-recognition ledger operated by Tally & Stone, a Decada Group company (“we”, “us”) for the businesses we provide accounting services to (“customers”). It records cash a customer has collected before delivering a service, recognizes that revenue when the service is delivered, and produces month-end reports and general-ledger entries.
What data we process
- Account data. The email address of each person a customer’s administrator grants access to, and the role assigned to them. Sign-in is by emailed link; we store no passwords.
- Customer business data. Sales, order and payout exports the customer uploads from their booking or payment platform. These include order amounts, dates, product names and, for the customer’s own use, the purchaser’s name and contact details. Purchaser contact details are visible only to the customer’s administrators and never appear in reports.
- Accounting data from QuickBooks Online. When a customer’s administrator connects their QuickBooks company, we read the chart of accounts and account balances, and we create journal entries that the administrator reviews and approves before each one is posted. We request only the QuickBooks accounting scope. We do not access payroll, payments or any other Intuit service.
- Connection credentials. The tokens Intuit issues for a connected company are stored encrypted with a key held only in our server environment. They are deleted when the connection is removed.
- Usage data. Standard server logs (request paths, timestamps, errors) needed to run the service. We use no advertising or third-party analytics trackers.
How we use it
Only to provide the service to the customer: importing their data, computing recognized and deferred revenue, producing reports, posting entries they approve to their own general ledger, and supporting them. We do not sell data, use it for advertising, or share it with anyone other than the service providers below.
Where it is stored and who processes it
- Vercel: application hosting (serverless functions, US West).
- Supabase: database, authentication and file storage (AWS us-west-2).
- Intuit: QuickBooks Online API, when a customer connects their QuickBooks company.
Data is encrypted in transit (TLS) and at rest by these providers. Access within the application is limited by the role each customer administrator assigns, and every record is scoped to the customer it belongs to.
QuickBooks connections
A customer can disconnect Accrue from QuickBooks at any time, either from the Integrations page in the application or from the Apps section of QuickBooks Online. Disconnecting revokes our access with Intuit and deletes the stored tokens. Journal entries already posted remain in the customer’s QuickBooks company, where they can be edited or deleted like any other entry; the record of what was posted remains in Accrue for the customer’s audit trail.
Retention and deletion
We keep customer data for as long as the customer uses the service and for the period our engagement with them requires for accounting records. A customer may ask us to delete their data at any time; we then delete it from the application and, subject to the providers’ backup cycles, from backups.
Your rights
People whose data appears in a customer’s records (for example, a purchaser) should contact that customer, who controls the data. Contact us for anything about how we process it, and we will assist.
Changes
We will post any change to this policy on this page with a new effective date.
Contact
Reach us through the “Report a problem” button inside the application, or your Tally & Stone engagement contact.