Hallisey Holdings — Hallisey Compliance Hub
Last updated August 23, 2026
This Privacy Policy explains how the Hallisey Compliance Hub (the "Hub") handles information used for Hallisey Holdings' internal business, recordkeeping, and compliance operations.
Information the Hub Handles
The Hub may store account and access information, business contact and profile information, invoices and transaction details, inventory and lot information, payment-status records, vendor and customer compliance files, employee work records, uploaded documents, generated record packets, approvals, tasks, credential records, and audit events.
QuickBooks Online Data
When an authorized Hallisey administrator connects QuickBooks Online, the Hub imports accounting information into Hallisey Holdings' own compliance system. If Hallisey administrators separately enable approved-sale invoice export, the Hub may create a new QuickBooks Invoice from an approved local HCH sale using configured mappings. This release does not update or delete existing QuickBooks transactions, send or void invoices, record payments, or create QuickBooks customers or items.
QuickBooks data is used only to support Hallisey Holdings' own business and compliance functions. It is not aggregated for other customers, sold, or used to build products or profiles for unrelated third parties.
How Information Is Used
Information is used to operate the Hub, prepare and preserve business and compliance records, support internal workflows and approvals, reconcile imported accounting information, manage authorized access, troubleshoot the service, and maintain audit history.
Access, Service Providers, and Sharing
Access is limited by authenticated Hallisey Holdings organization membership and assigned role. Hallisey Holdings does not sell Hub data or provide it to unrelated third parties for their own use.
The Hub uses service providers, including Vercel for web application hosting and Supabase for authentication, database, and file-storage infrastructure. Those services process information only as needed to host and operate the Hub.
QuickBooks Credentials and Authorization
QuickBooks client credentials are stored in protected server-side configuration. QuickBooks OAuth tokens and the connected company identifier are encrypted before persistent storage and are not intentionally exposed to ordinary browser users.
Retention and Disconnection
Business and compliance records are retained according to Hallisey Holdings' operational, legal, licensing, and record-retention needs. Disconnecting QuickBooks revokes the stored QuickBooks authorization and stops future imports and approved-sale invoice exports. Information previously imported into Hallisey Holdings' records may remain when it must be retained for legitimate business or compliance purposes.
Security
The production Hub uses HTTPS, access controls, private document storage, protected server-side secrets, encrypted QuickBooks authorization data, and audit logging. No system can guarantee absolute security, and suspected unauthorized access should be reported promptly to a Hallisey administrator.
Questions and Access Requests
Questions about this Privacy Policy, Hub records, access, correction, or QuickBooks disconnection should be directed to the Hallisey Compliance Hub administrator.
