LedgerMCP: Privacy Policy

LedgerMCP, LLC

Effective date: July 7, 2026

Last updated: July 9, 2026

LedgerMCP, LLC ("LedgerMCP," "we," "us," or "our") provides double-entry

bookkeeping software that businesses and their authorized AI agents use to keep

their books ("the Service"). This Privacy Policy explains what information we

collect, how we use and share it, and the choices you have.

By using the Service you agree to this Privacy Policy. If you do not agree,

please do not use the Service.


1. Information We Collect

Information you provide.

and, if you enable two-factor authentication, your enrolled authenticator

factor.

transactions, categorizations, tags, journal entries, notes, and files you or

your authorized agent create or upload, including receipts and tax documents

such as contractor W-9 forms.

are processed by Stripe, Inc. We share your email address and an account

identifier with Stripe and store your Stripe customer and subscription

identifiers; we never receive or store your full card number.

Financial account information (via Plaid).

If you choose to connect a bank or financial account, you do so through

Plaid Inc. ("Plaid"). You authenticate directly with your financial

institution through Plaid; **we never see or store your bank login

credentials.** Through Plaid we receive, on your authorization, information such

as account names, account and routing identifiers as applicable, balances, and

transaction history, which we use to populate your books. Your use of Plaid is

also governed by Plaid's End User Privacy Policy.

Information collected automatically.

path, timestamp, and status) used to operate and secure the Service. We do

not log authentication credentials or secrets.

signed in. We do not use advertising or third-party tracking cookies.

2. How We Use Information

We use information to:

**We do not sell your personal information, and we do not use your financial

data for advertising.** We do not train machine-learning models on your data.

3. AI Agents and the MCP Interface

LedgerMCP is designed to be operated by AI agents (such as Claude or ChatGPT)

that you connect using an API key you generate, or by authorizing a connected

app through an OAuth sign-in flow. When you connect an agent, it acts on your

behalf and can read and write your bookkeeping data according to the key's

scope (full or read-only) for API keys; OAuth connections have full account

access. You control these connections: API keys can be revoked and connected

apps disconnected in Settings at any time. We store API keys and OAuth tokens

only in hashed form. Every change made by a connected agent, and every

destructive action, is recorded in an audit log (including the action's

parameters) that you can review; financial postings are additionally immutable

and correctable only by reversal.

The AI agent is provided by you or a third party (e.g., Anthropic, OpenAI) and

is governed by that provider's own terms and privacy policy; LedgerMCP does not

control the agent.

4. How We Share Information

We share information only as follows:

contractual confidentiality and security obligations. These currently

include: Plaid (bank connectivity), Stripe (payment processing), our

cloud database, authentication, and file-storage provider, our **cloud

hosting provider, a network security and content-delivery provider**

(through which traffic to the Service passes), our **email delivery

provider** (sign-in codes and support correspondence), and an

error-monitoring service (which receives error messages and technical

diagnostics only, and is configured not to receive personal information).

requests icons for well-known merchant domains from public favicon services;

these requests contain no personal or account information.

protect the rights, property, or safety of LedgerMCP, our users, or others.

or sale of assets, subject to this Privacy Policy.

We do not otherwise sell, rent, or share your personal or financial information

with third parties. We have not sold personal information in the preceding 12

months.

5. Data Retention

We retain your information for as long as your account is active or as needed to

provide the Service. If you disconnect a financial account, we instruct Plaid to

remove the connection and invalidate the associated access token; transactions

already imported into your books remain unless you delete them. You may export

your bookkeeping data for each business at any time (transactions, general

ledger, accounts, tags, journal entries, and assets; uploaded files are

individually downloadable), and you may request deletion of your account and

associated data (see §7). Some records may be retained where required for legal,

accounting, or security purposes.

6. Security

We protect your information using administrative, technical, and physical

safeguards, including encryption of data in transit (TLS) and at rest,

application-layer encryption of financial access tokens, tenant isolation,

least-privilege access controls, API-key hashing and scoping, rate limiting, and

an append-only audit log. No method of transmission or storage is completely

secure, but we work to protect your information and to respond promptly to any

incident. See our Information Security Policy for details.

7. Your Rights and Choices

Depending on where you live, you may have rights to access, correct, export, or

delete your personal information, and to object to or restrict certain

processing. You can:

email below.

We will respond to verified requests as required by applicable law. We do not

sell personal information, so no "opt-out of sale" is required.

8. Children's Privacy

The Service is intended for businesses and is not directed to children under 18.

We do not knowingly collect personal information from children.

9. International Users

We operate in the United States, and your information is processed there. If you

access the Service from outside the United States, you consent to the processing

of your information in the United States.

10. Changes to This Policy

We may update this Privacy Policy from time to time. We will post the updated

version with a revised "Last updated" date and, where appropriate, provide

additional notice. Your continued use of the Service after an update constitutes

acceptance of the revised policy.

11. Contact Us

LedgerMCP, LLC

Email: support@ledgermcp.com

Website: https://ledgermcp.com