Who we are
Salt Automations is a one-person, locally operated service — a sole proprietorship of Nick Salt, based in Belleville, Ontario, Canada. This policy explains what data is collected and how it is used across two distinct contexts:
- the marketing website at saltautomations.ca; and
- a private QuickBooks Online integration built and operated for a single client, Belleville Home Health Care ("Belleville HHC").
The QuickBooks integration is an internal, single-tenant automation. It is not a public product, has no public sign-up, and is not listed on the QuickBooks App Store.
1. The marketing website
What we collect
- Consultation form. If you request a consultation, we collect the name, business name, contact details, and message you submit. Form submissions are handled by Netlify Forms and reach us by email so we can reply.
- Analytics. The site uses PostHog to understand aggregate traffic and improve the pages. This includes standard usage data such as pages viewed, approximate location, device and browser type, and interactions. We do not use this to sell your data or to run third-party advertising.
How we use it
Only to respond to your enquiry and to improve the website. We do not sell website data or share it except with the service providers listed under "Service providers" below.
2. The QuickBooks Online integration
This section describes the Belleville Home Healthcare integration that connects to the client's QuickBooks Online company. For a plain-language overview of what the integration does, see the QuickBooks integration page.
What data it accesses
The app requests the QuickBooks Accounting scope only and uses only what the Estimate workflow requires:
- Customers — read, and create/update when preparing an Estimate.
- Products/Services (Items) — read, to map quote lines to catalog items and prices.
- Estimates — read, create, and update draft Estimates for review.
- Company info — read, to confirm the correct company is connected.
It does not access banking, payroll, invoices, payments, bills, purchase orders, employees, or any other data outside this workflow.
What we store, and where
- OAuth connection credentials — the QuickBooks refresh token and the company (realm) id, stored encrypted in Azure Key Vault. These let the app act on the connected company without ever handling a QuickBooks username or password.
- Operational metadata — a small record linking a given quote to the Estimate it produced, so a quote can be safely re-run without creating duplicates. This is stored in the client's Microsoft Azure environment.
- Quote content — the quote request (arriving by email) is processed to build the Estimate. We retain only what is needed to prepare, correct, and audit the Estimate.
We do not copy or warehouse your QuickBooks financial records, and we do not use your QuickBooks data for advertising or sell it to anyone.
Service providers
We rely on a small set of established providers to run the website and the integration. Data is shared with them only to provide the service:
- Intuit / QuickBooks Online — the accounting platform the integration connects to.
- Microsoft Azure — hosting, secret storage (Key Vault), and operational data.
- Netlify — website hosting and consultation-form handling.
- PostHog — website analytics.
- Mailgun — sending and receiving the workflow emails.
- OpenRouter / Backboard — the AI services that help draft the quote content.
Each provider processes data under its own terms and security controls. We do not sell data to, or buy data from, any of them.
How long we keep it
- QuickBooks connection credentials are kept only while the integration is connected. When the app is disconnected (by you in QuickBooks, or at your request), the stored refresh token stops working immediately and we delete the stored connection state.
- Operational metadata and quote content are retained only as long as needed to run and audit the Estimate workflow, then deleted or removed on request.
- Website form submissions are kept as long as needed to respond and maintain our records.
Security
- Secrets and QuickBooks tokens are stored encrypted in Azure Key Vault and are never committed to code or configuration files.
- The integration uses the least access it needs — the Accounting scope only — and runs under managed cloud identities rather than shared passwords.
- Access to the connection is limited to the operator (Nick Salt).
Your choices and control
- Disconnect at any time. You can revoke the app's access from within QuickBooks Online (Settings → Apps → Connected apps → Disconnect on "Belleville Home Healthcare"), or ask us to do it. See How to disconnect.
- Access, correction, deletion. You may ask what connection data we hold and request that we delete it. We will act on reasonable requests promptly.
Children
Neither the website nor the integration is directed at children, and we do not knowingly collect data from children.
Changes to this policy
If this policy changes, we will update this page and revise the "Last updated" date above.
Governing law
This policy is governed by the laws of the Province of Ontario and the laws of Canada applicable there.
Contact
Questions or requests about privacy, or about the QuickBooks integration:
Salt Automations — Nick Salt Belleville, Ontario, Canada Email: nicksalt24@gmail.com