1. Roles
You are the data controller for business data. BookOS acts as a data processor to provide the service.
2. Processing scope
BookOS processes data to deliver bookkeeping automation, financial reporting, and AI insights. Processing is limited to the services you enable.
3. Security measures
We implement access controls, encryption in transit and at rest, audit logging, and secure development practices.
4. Subprocessors
We use approved subprocessors for infrastructure, analytics, and AI. We require equivalent security commitments and contractual protections.
5. Data requests
We support access, deletion, and export requests when required by law and according to your instructions.
6. Audits
We make available security documentation and reports upon request to support your compliance obligations.