Privacy Policy
Last Updated: January 28, 2025North East Biosolids & Residuals Association ("NEBRA," "we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our web application (the "Service"). Please read this Privacy Policy carefully. By accessing or using the Service, you acknowledge that you have read, understood, and agree to be bound by this Privacy Policy.
1. Information We Collect
1.1 Personal Information
We may collect the following personal information:
Name and contact information (email address, phone number)
Organization name and business address
Account credentials (username and encrypted password)
Billing and payment information
1.2 Information from Third-Party Services
When you connect third-party services to your account, we may receive information from those services:
Intuit QuickBooks: When you authorize our integration with QuickBooks, we access customer records, invoicing data, and related accounting information from your QuickBooks account. We store OAuth tokens (encrypted) to maintain the connection, and we store customer and financial data retrieved from QuickBooks to provide our services.
Stripe: We use Stripe to process subscription payments. Stripe collects and processes your payment information directly. We receive limited information from Stripe, such as transaction confirmations and subscription status.
Emma: We use Emma for email communications. Your name and email address may be shared with Emma to facilitate email delivery.
1.3 Automatically Collected Information
When you access our Service, we may automatically collect certain information, including your IP address, browser type, operating system, access times, and pages viewed.
2. How We Use Your Information
We use the information we collect to:
Provide, operate, and maintain our Service
Process transactions and manage subscriptions
Synchronize data between your accounts and third-party services (e.g., QuickBooks)
Send you administrative communications, such as account notifications
Respond to your inquiries and provide customer support
Improve and personalize your experience with our Service
Comply with legal obligations
3. Data Retention
Third-Party Connection Data: OAuth tokens and connection credentials for services like QuickBooks are stored only while your account remains connected to those services. When you disconnect a service, these tokens are immediately deleted from our systems.
Synchronized Data: Data retrieved from third-party services (such as customer records from QuickBooks) is retained indefinitely to provide continuity of service and historical record-keeping, unless you request deletion.
Account Data: Your personal account information is retained for as long as your account is active or as needed to provide you services. You may request deletion of your account and associated data at any time.
4. Data Security
We implement appropriate technical and organizational security measures to protect your personal information, including:
Encryption of sensitive data (including OAuth refresh tokens) using industry-standard encryption
Secure HTTPS connections for all data transmission
Regular security assessments and updates
Access controls limiting data access to authorized personnel only
While we strive to protect your personal information, no method of transmission over the Internet or electronic storage is 100% secure. We cannot guarantee absolute security.
5. Disclosure of Your Information
We may share your information in the following circumstances:
Service Providers: We share information with third-party vendors who perform services on our behalf, including Intuit (QuickBooks), Stripe (payment processing), Emma (email services), and Amazon Web Services (hosting).
Legal Requirements: We may disclose your information if required by law or in response to valid legal requests.
Business Transfers: In the event of a merger, acquisition, or sale of assets, your information may be transferred.
We do not sell, rent, or trade your personal information to third parties for marketing purposes.
6. Your Rights and Choices
You have the following rights regarding your personal information:
Access: Request a copy of the personal information we hold about you
Correction: Request correction of inaccurate or incomplete information
Deletion: Request deletion of your personal information, subject to legal retention requirements
Disconnect: Revoke access to connected third-party services at any time through your account settings
To exercise any of these rights, please contact us using the information provided below.
7. Third-Party Links
Our Service may contain links to third-party websites or services. We are not responsible for the privacy practices of these third parties. We encourage you to review the privacy policies of any third-party sites you visit.
8. Children's Privacy
Our Service is not intended for individuals under the age of 18. We do not knowingly collect personal information from children. If we become aware that we have collected personal information from a child, we will take steps to delete that information.
9. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new Privacy Policy on this page and updating the "Last Updated" date. Your continued use of the Service after any changes constitutes acceptance of the updated Privacy Policy.
10. Contact Us
If you have any questions about this Privacy Policy or our data practices, please contact us at:
North East Biosolids & Residuals Association (NEBRA)
P.O. Box 207 ยท Hope, RI 02831 USA
Email: info@nebiosolids.org
Website: https://www.nebiosolids.org/
