Everything runs on documents you send to an address you created. No login to your accounting system — the one exception is the API tier, where you choose to have postings written in, and that access is scoped and revocable.
Not a policy — an inventory. This is the whole list, and every line on it is something you can end without asking us.
| What | Who holds it | How you end it |
|---|---|---|
| The collection mailboxThe address you create for this, and nothing else | Us | Change its password |
| The forwarding ruleWritten by you, in the mailbox your team already uses | You | Delete it — the flow stops that minute |
| Your vendor and order listsExported files, sent once | Both | Ask, and your copies go with written confirmation |
| Your accounting system | You, only | Nothing to end — we never had it. API tier: you revoke the integration credential |