Privacy Policy
Last updated: July 2026
1. Information We Collect
Qyra collects the following information to provide its POS-to-QuickBooks automation service:
- Account Information: Name and email address provided during sign-up.
- Authentication Data: Passwords are hashed using bcrypt (12 rounds) and never stored in plain text. JWT tokens are used for session management.
- Financial Data: POS sales report data and transaction details extracted from scanned reports. This data is synced to QuickBooks Online at the user's direction.
- QuickBooks Connection: OAuth tokens for QuickBooks Online integration are encrypted at rest using AES-256 and stored securely on our servers.
- Website Content: When a user initiates a scan, Qyra reads the DOM content of the active browser tab to extract POS report data. This content is processed locally in the browser and sent to our servers only when the user explicitly triggers a scan or sync action.
2. How We Use Your Information
All data collected is used solely for the purpose of providing the Qyra service — scanning POS reports, extracting transaction data, and syncing to QuickBooks Online. We do not use your data for advertising, analytics, or any purpose unrelated to Qyra's core functionality.
3. Data Storage and Security
Data is stored on secure cloud infrastructure (Render and Neon PostgreSQL). All data in transit is encrypted using TLS/HTTPS. Sensitive data at rest (QuickBooks tokens, encryption keys) is protected using AES-256 encryption. Access to production systems is restricted and role-based.
4. Data Sharing
We do not sell, rent, or transfer user data to third parties. Data is shared only with QuickBooks (Intuit) as required for the sync functionality, and with our email service provider (Resend) for sending account verification emails. No other third parties receive user data.
5. Data Retention and Deletion
Users can request deletion of their account and all associated data by contacting the owner through the Qyra extension or by emailing support@qyra.space. Scan history is automatically purged based on the retention period configured for each user's plan. Upon account deletion, all personal data, scan records, and QuickBooks connection tokens are permanently removed.
6. Browser Extension Data
The Qyra Chrome extension stores authentication tokens and user preferences locally in the browser using chrome.storage.local. This data never leaves the user's browser except for authenticated API calls to the backend. The extension requests permissions (activeTab, storage, tabs, scripting, host permissions) solely to enable POS report scanning and QuickBooks synchronization. The extension does not track browsing history, log keystrokes, or monitor user activity outside of explicit scan actions.
7. Contact
For privacy-related questions or data deletion requests, contact us at:
Email: support@qyra.space