Privacy Policy
Last updated: 1 September 2026
1. What we collect
- Xero OAuth tokens — stored encrypted at rest so the Service can act on the organisations you connect. We never receive your Xero password.
- Accounting data you operate on — invoice, credit note, bill, bank account and tracking category records are read from Xero to build previews, and the items you approve are written back. Job history and audit logs (what changed, before/after) are stored so you can review and undo operations.
- Attachment files you export — when you run an attachment export, copies of the files attached to your Xero documents are stored on our infrastructure (Cloudflare R2) so you can download them. They are accessible only from your session, are deleted automatically 7 days after the export finishes, and are never used for anything except serving your download.
- Billing information — payments are processed entirely by Paddle.com, our merchant of record. We never see your card number. Paddle shares with us your subscription status and the email used at checkout.
2. What we do not do
- We do not sell or share your data with third parties for marketing.
- We do not use your accounting data for anything except the operations you request.
- We do not use advertising or cross-site tracking cookies.
3. Where data lives
The Service runs on Cloudflare's global network; application data is stored in Cloudflare D1, and exported attachment files in Cloudflare R2. Payment data is held by Paddle. Xero data remains in Xero — we hold only the job history, audit records and temporary export files described above.
4. Retention and deletion
Exported attachment files are deleted automatically 7 days after the export finishes. Disconnecting your organisation from Xero revokes our access immediately. Email support@microspear.app to have your stored tokens, job history, audit logs and any remaining export files deleted; we complete deletion requests within 30 days.
5. Contact
support@microspear.app