Privacy Policy
Last updated: August 16, 2026
Waybe LLC, a Delaware limited liability company operating as Waybestaffing (“Waybe”, “we”, “us”), provides outsourced bookkeeping and accounting services. To deliver those services we access accounting data belonging to our clients, including data held in QuickBooks Online. This policy explains what we access, why, where it goes, and how to make it stop.
The short version. We access your accounting data only to do the bookkeeping work you hired us to do. We do not sell it, we do not use it for advertising, and we do not share it with third parties except where you direct us to, where the law requires it, or through the AI tooling our accountants use — which is described in section 5 and never has the last word. Data we pull from QuickBooks Online is processed on company workstations under our control — we do not copy it into a cloud database of our own. You can cut off our access at any time from within QuickBooks.
1. Who this policy covers
This policy applies to the business clients who engage Waybe for bookkeeping, accounting, payroll, or US entity setup services, and to the internal software tools Waybe uses to deliver those services — including our QuickBooks Online integration, which is a private tool used by our own staff and is not offered to the public.
Our services are provided to businesses. We do not knowingly collect personal information from consumers directly, and our tools are not directed to children.
2. What we access
Accounting data from QuickBooks Online
When you authorize our integration against your QuickBooks Online company, we may read:
- Company profile information (legal name, country, fiscal year start).
- Customers, vendors, and their contact details as recorded in your books.
- Transactions: invoices, bills, payments, purchases, deposits, transfers, and journal entries.
- Chart of accounts and account balances.
- Financial reports generated by QuickBooks, such as profit and loss statements and balance sheets.
Where you have asked us to record transactions on your behalf, the integration may also write entries — for example, creating an invoice — always at your instruction and subject to a confirmation step before anything is sent.
Authorization credentials
Connecting to QuickBooks Online uses Intuit’s OAuth 2.0 flow. We never see or store your QuickBooks username or password. We store only the access and refresh tokens Intuit issues, which are held locally as described below.
Information you give us directly
Contact details you submit through our website or send us by email, so that we can respond to you.
3. Why we access it
Solely to perform the engagement: recording and classifying transactions, reconciling accounts, preparing month-end closes and financial statements, meeting tax and compliance obligations, and answering your questions about your own books. We do not use your accounting data to train machine learning models, to build advertising profiles, or for any purpose unrelated to serving you.
4. Where your data is stored
Data read from QuickBooks Online is processed on company workstations under our control. Authorization tokens are stored in a protected location on those workstations, on encrypted disks, accessible only to the authorized personnel assigned to your engagement. We do not replicate your QuickBooks data into a database or cloud service of our own.
Work product we generate for you — reconciliations, statements, reports, and the working papers behind them — is retained as part of your client file for as long as we serve you, and afterwards for the period required by professional and tax recordkeeping rules.
5. Who we share it with
We do not sell your data, and we do not rent, trade, or otherwise disclose it for anyone else’s commercial purposes. We disclose it only:
- At your direction — for example, to your tax preparer, auditor, lender, or another advisor you name.
- To our personnel assigned to your engagement, who are bound by confidentiality obligations.
- Where the law requires it, such as a valid subpoena or court order.
- To Anthropic PBC, as described immediately below.
Use of artificial intelligence
Our accountants use an AI assistant (Claude, provided by Anthropic PBC) as a working tool when reviewing and recording your books. When they do, the accounting records relevant to the task are transmitted to Anthropic’s API for processing, and the results come back to the accountant.
- Anthropic acts as our processor and is contractually restricted to processing the data in order to return a result to us.
- We do not permit your data to be used to train AI models, and our account is configured accordingly.
- The AI does not decide anything on its own. Entries it proposes are reviewed by a person before they are recorded, every write to your books requires explicit confirmation, and bank reconciliation and approval of financial statements remain human decisions.
- If you would prefer that we not use AI tooling on your engagement, tell us and we will handle your account manually.
Some of our personnel are located in Latin America. Your data may therefore be accessed from outside the United States by staff working on your engagement, under the same confidentiality obligations.
6. How we protect it
- Access is limited to the personnel assigned to your engagement.
- Authorization tokens are stored outside of source code repositories and are never committed to version control.
- Workstations that handle client data use full-disk encryption and screen locks.
- Accounts used to access client systems are protected with multi-factor authentication where the platform supports it.
- We request the narrowest permission scope that lets us do the work.
No method of storage or transmission is perfectly secure, and we do not claim otherwise. If a breach affects your data, we will notify you promptly.
7. Your choices
Disconnecting our access to QuickBooks
You can revoke our access at any time, without asking us first, from inside QuickBooks Online: Settings → Apps → Waybe → Disconnect. Revocation is immediate and permanently invalidates our authorization tokens; regaining access requires you to authorize us again. You can also email us and we will disconnect on our end.
Access, correction, and deletion
You may ask us what data of yours we hold, ask us to correct it, or ask us to delete it. Write to hello@waybestaffing.com and we will respond within 30 days. Note that we may need to retain certain records to comply with tax and professional recordkeeping obligations; where that applies, we will tell you what we are keeping and why.
8. Retention
Authorization tokens are deleted when the engagement ends or when you disconnect, whichever comes first. Client files and work product are retained for the period required by applicable tax and professional recordkeeping rules, and deleted afterwards.
9. Changes to this policy
If we change this policy we will update the date at the top of this page. Changes that materially affect how we handle your data will be communicated to active clients directly.
10. Contact
Questions about this policy, or about the data we hold on you:
Waybe LLC
hello@waybestaffing.com