Current version: 2026-09-19 (permanent version)

Version 2026-09-19 · Effective September 19, 2026

Scope and contact

This notice covers Consult Utah's Invoice Connector, not other Consult Utah apps. Contact jeff@consultutah.com for privacy, access, correction, or deletion requests.

Information processed

The service processes an account identifier derived from your identity provider, business and client profiles, contact and tax information you choose to enter, logos, invoice fields, immutable invoice revisions, generated PDFs, and purchase status and transaction references. It records accepted Terms and Privacy versions, document fingerprints, server timestamps, and onboarding completion. Operational services may process request metadata such as IP addresses and security logs.

Why we process it

We use this information to link your account, save and edit invoices, calculate user-specified totals, generate and deliver PDFs, verify purchases and corrections, document acceptance, provide support, and prevent abuse. Optional business-profile setup is not required; invoice details can be entered directly.

Service providers and sharing

The connector is designed to run on Cloudflare Workers, D1 database, and private R2 storage. Stripe processes payments through Link; the connector handles a scoped payment token and transaction references rather than requesting or storing full card details. Muse and the account identity provider process information under their own policies. Data supplied through Muse and returned to Muse is also subject to Muse's practices. We share information with providers as needed to operate the service, comply with law, or address fraud and security. We do not sell invoice or client data or use it for advertising.

Storage and retention

Profiles, invoice revisions, PDFs, and account records are stored server-side to support history, corrections, and downloads. Editing an invoice creates a revision rather than erasing earlier versions. Deleting a saved client does not remove that client's information from historical invoices. There is no automatic short-term deletion schedule in the initial service. Request account or data deletion through support; legal, tax, fraud-prevention, and transaction records may need to be retained, and backup copies may persist until their normal removal. Keep your own copies of documents you need.

Security and choices

Account authentication and ownership checks restrict access, and PDF storage is private. No system guarantees absolute security. Provide only information necessary for the invoice and obtain any required permission to submit client data. You may decline terms and stop using the connector, omit optional saved profiles, or contact support for access, correction, deletion, or other applicable privacy rights. Data may be processed outside your location by our infrastructure providers.

Changes

This notice is versioned. The onboarding flow identifies the current notice and asks you to acknowledge it when accepting the current Terms. Acknowledging this notice is not permission to charge or consent to unrelated marketing.