Privacy policy
What this app is
Dime Intercompany is an internal tool run by Dime Accounting, LLC. It codes the charges on one company American Express card and records them in the QuickBooks Online company files of five companies that share one owner: PS20 (doing business as Dime), Dime Accounting, Dime Payments, Dime Business Services and Kell.
It is not offered to the public or to clients. The only people who can sign in are the owner, Ben Habeck, and staff he adds by hand. There is no public sign up.
What it reads from Plaid
The owner links the company Amex through Plaid. The app reads, for that card login:
- Account names, the last four digits, and account types, so the owner can pick which account is the card.
- Card transactions: date, amount, merchant name, Plaid's category, whether the charge is pending, and Plaid's identifiers for the transaction and merchant.
- When the bank's consent expires, so the app can ask for it to be renewed.
The app only reads. It cannot move money, make payments or change anything at the bank.
What it reads and writes in QuickBooks
The owner connects each QuickBooks Online company file one at a time. For each file the app reads the company name, the chart of accounts, vendors, account balances, and the entries it wrote itself. It writes card purchases, journal entries and vendors for the charges it posts, and nothing else.
Other information
- For each person who can sign in: email address, a password (stored only as a hash by the sign-in service) and a multi-factor authentication factor.
- The coding choices people make in the app: which company and account a merchant goes to, holds and notes, with who made each change and when.
- A weekly summary email, sent only to addresses the owner sets.
The app uses no analytics, advertising or tracking cookies. The browser keeps the sign-in session in local storage.
Where it is stored
Data is stored in a Supabase hosted Postgres database, encrypted at rest and reached only over encrypted connections. The Plaid access token and the QuickBooks sign-in tokens are kept in Supabase Vault and used only by server functions. They never reach the browser. Every table is limited to the members of the organization, and every sign-in requires multi-factor authentication.
These services handle the data to run the app: Supabase (database, sign-in and server functions), Cloudflare (serves the web pages), Plaid (card data), Intuit (QuickBooks) and MailerSend (the weekly email).
Not shared or sold
Data from Plaid and QuickBooks is used only to keep these five companies' books. It is not sold, rented, shared with anyone else, or used for advertising or marketing.
How long it is kept
Data is kept while the app is in use, because it is the record behind entries in the books. Disconnecting the card or a company file in the app stops any further reading. On request the owner deletes the stored data and removes the Plaid and QuickBooks connections.
Contact
Questions or requests go to Ben Habeck at [email protected].