EOTY QuickBooks Integration · Last updated 11 September 2026 (rev. 2)
Who operates this application
This application is operated by Event Of The Year LLC
("we", "us"), a New York limited liability company. It is a private,
internal-use integration. It is not offered to, sold to, or made available to
any third party, and it has no users other than the personnel of Event Of The
Year LLC.
What data the application accesses
When authorized, the application connects to the QuickBooks Online company
file belonging to Event Of The Year LLC and reads accounting records,
including:
chart of accounts, account types and balances
journal entries and general ledger transactions
financial reports (balance sheet, profit and loss, trial balance)
company profile information
The application may also create or amend journal entries and change the active
status of accounts, at the direction of an authorized operator.
The application does not access payroll data, payment card data, bank
credentials, or customer payment instruments. It does not request the
QuickBooks Payments scope.
Why we access it
Solely for the internal bookkeeping and tax preparation of Event Of The Year
LLC — correcting account classifications, preparing supporting schedules, and
verifying reported figures against source records.
Where data is stored, and for how long
The application runs locally on a single Windows workstation controlled by
Event Of The Year LLC. It is not hosted on any cloud platform and is not
reachable from the public internet.
OAuth 2.0 access and refresh tokens are stored on that workstation in a file
with restricted permissions, written atomically. Tokens are never logged.
Application credentials (client identifier and secret) are held in a
dedicated secrets vault, scoped to a single project and a single machine
account. The vault access token itself is encrypted at rest to the operating
system user account.
Accounting data is read on demand for the duration of a session and is not
retained in any separate database. Report exports created for review are
kept locally only as long as needed for the work at hand.
Automated processing (AI assistance)
The application exposes a local tool interface (Model Context Protocol) used by
an AI coding assistant operated by the single Company operator, for internal
bookkeeping and tax preparation. QuickBooks accounting data returned through
those tools is processed by that assistant in order to prepare schedules,
verify figures, and draft journal entries.
The assistant is Claude, provided by Anthropic.
QuickBooks data is not used to train any model.
Data is processed for the request at hand and is not retained by us in any
separate store.
No QuickBooks data is shared with any other third party.
All write operations require explicit human confirmation
before any data is sent to Intuit. Writes are simulated by default.
Disclosure to third parties
We do not sell, rent, or share QuickBooks data with third parties. We do not
use it for advertising, profiling, or model training. Data may be disclosed to
our accountants or legal advisers where required for tax preparation or legal
compliance, and where required by law or valid legal process.
Security
All communication with Intuit uses TLS.
Authorization uses the OAuth 2.0 authorization code flow with a single-use, time-limited state parameter.
Refresh tokens rotate on use and the newest value is persisted before any further action.
Secrets are never written to logs, error messages, or console output.
Write operations require an explicit confirmation value and are otherwise simulated without contacting Intuit.
Revoking access
Access can be revoked at any time from within QuickBooks Online (Apps →
Manage → Disconnect), or by us calling Intuit's token revocation
endpoint, which deletes the stored tokens.
Children
This application is not directed to children and does not knowingly collect
information from anyone under 18.
Changes
If this policy changes, the revised version will be posted at this URL with an
updated date.