Security & privacy
- Minimum access: we request the smallest Xero permission set that can read items/suppliers and create draft POs, read-only wherever Xero offers it.
- Token security: Xero refresh tokens are encrypted at rest (AES-256-GCM) and never logged.
- No customer data: sales are aggregated per item for suggestions; customer identities are never stored.
- No AI training: nothing is ever trained on your Xero data — suggestions are computed per-organisation at request time.
- Leaving: disconnecting an organisation revokes access immediately and deletes its data after 30 days. Deleting your account purges everything immediately. Export your rules as CSV any time.
Full details: Privacy Policy · Terms of Service.