Privacy Policy
Last Updated: February 04, 2026
1. Introduction
Welcome to P&L to Schedule C Generator ("we," "our," or "us"). We are committed to protecting your privacy and handling your data in an open and transparent manner. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Service.
Please read this Privacy Policy carefully. By using the Service, you agree to the collection and use of information in accordance with this policy.
2. Information We Collect
2.1 Personal Information
When you register for an account, we collect:
- Name
- Email address
- Password (encrypted)
- Business information (business name, EIN, address)
2.2 Financial Data
To provide our Service, we collect and process:
- Profit & Loss statements
- Income and expense data
- Category mappings you create
- Tax year information
- Notes and customizations you add
2.3 Third-Party Integration Data
If you connect accounting software (such as Xero, QuickBooks, or Wave), we may access:
- OAuth tokens for authentication
- Account information from connected services
- Financial data authorized by you
We only access data necessary to provide the Service and only with your explicit authorization.
2.4 Usage Data
We automatically collect certain information when you use the Service:
- IP address
- Browser type and version
- Device information
- Pages visited and time spent
- Referring website
- Date and time of access
2.5 Cookies and Tracking Technologies
We use cookies and similar tracking technologies to track activity on our Service and store certain information. Types of cookies we use:
- Session Cookies: To operate our Service and keep you logged in
- Preference Cookies: To remember your settings and preferences
- Security Cookies: For security and fraud prevention
- Analytics Cookies: To understand how users interact with our Service
3. How We Use Your Information
We use the collected information for various purposes:
- Provide and maintain the Service: Process your financial data and generate Schedule C forms
- Account management: Create and manage your user account
- Customer support: Respond to your inquiries and provide assistance
- Communication: Send you service updates, technical notices, and security alerts
- Improvements: Analyze usage to improve our Service features and functionality
- Security: Monitor for suspicious activity and prevent fraud
- Legal compliance: Comply with legal obligations and enforce our Terms
4. How We Share Your Information
Important: We do not sell your personal or financial data to third parties.
We may share your information only in the following circumstances:
4.1 Service Providers
We may share your information with third-party service providers who perform services on our behalf:
- Hosting and infrastructure providers
- Payment processors (Stripe)
- Email service providers
- Analytics providers
- Customer support tools
These providers are contractually obligated to protect your data and use it only for the purposes we specify.
4.2 Legal Requirements
We may disclose your information if required to do so by law or in response to:
- Valid legal process (subpoena, court order)
- Government investigations
- Protection of our rights or property
- Prevention of fraud or illegal activity
- Protection of user safety
4.3 Business Transfers
If we are involved in a merger, acquisition, or sale of assets, your information may be transferred. We will provide notice before your information becomes subject to a different privacy policy.
5. Data Security
We implement industry-standard security measures to protect your information:
- Encryption: Data is encrypted in transit (SSL/TLS) and at rest
- Access Controls: Strict access controls and authentication requirements
- Secure Infrastructure: Hosting on secure, reputable cloud platforms
- Regular Audits: Periodic security assessments and updates
- Password Security: Passwords are hashed using bcrypt
However, no method of transmission over the Internet or electronic storage is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.
6. Data Retention
We retain your information for as long as necessary to:
- Provide the Service to you
- Comply with legal obligations (tax records typically 7 years)
- Resolve disputes and enforce agreements
- Maintain security and prevent fraud
When you delete your account, we will delete or anonymize your personal information within 90 days, except where we are legally required to retain it.
7. Your Privacy Rights
Depending on your location, you may have the following rights:
7.1 Access and Portability
You have the right to access and obtain a copy of your personal data in a structured, machine-readable format.
7.2 Correction
You can update your account information at any time through your account settings.
7.3 Deletion
You may request deletion of your personal data, subject to certain legal exceptions.
7.4 Opt-Out
You can opt out of marketing communications by clicking the unsubscribe link in our emails or contacting us.
7.5 Object to Processing
You may object to certain types of data processing, though this may limit your ability to use some features.
To exercise these rights, please contact us using the information provided below.
8. Third-Party Links
Our Service may contain links to third-party websites or services (such as accounting software). We are not responsible for the privacy practices of these third parties. We encourage you to review their privacy policies.
9. Children's Privacy
Our Service is not intended for individuals under the age of 18. We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately.
10. International Data Transfers
Your information may be transferred to and processed in countries other than your country of residence. These countries may have different data protection laws. We ensure appropriate safeguards are in place to protect your information in accordance with this Privacy Policy.
11. California Privacy Rights (CCPA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):
- Right to know what personal information is collected, used, and shared
- Right to delete personal information held by us
- Right to opt-out of the sale of personal information (we do not sell your data)
- Right to non-discrimination for exercising your CCPA rights
12. European Privacy Rights (GDPR)
If you are in the European Economic Area (EEA), you have rights under the General Data Protection Regulation (GDPR):
- Right to access your personal data
- Right to rectification of inaccurate data
- Right to erasure ("right to be forgotten")
- Right to restrict processing
- Right to data portability
- Right to object to processing
- Right to withdraw consent
- Right to lodge a complaint with a supervisory authority
13. Changes to This Privacy Policy
We may update our Privacy Policy from time to time. We will notify you of any changes by:
- Posting the new Privacy Policy on this page
- Updating the "Last Updated" date
- Sending you an email notification for material changes
You are advised to review this Privacy Policy periodically. Your continued use of the Service after changes constitutes acceptance of the updated policy.
14. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
Email: [email protected]
By using P&L to Schedule C Generator, you acknowledge that you have read, understood, and agree to this Privacy Policy.