Phase 1 — Administrative + Finance Operations
Effective date: August 5, 2026 · Last updated: August 5, 2026
AgentixAI (“AgentixAI,” “we,” “us”) provides a managed back-office service to small businesses. This policy explains what data we handle, why, where it is stored, who can see it, and how to have it deleted.
Contact: info@agentixai.ai · Mailing address: 1670 Ooltewah Ringgold Rd, Ooltewah, TN 37363 · Phone: (423) 218-2244
This policy covers two groups:
If you are a customer or vendor of one of our clients and want your information removed, contact that business directly, or write to us at info@agentixai.ai and we will route your request.
Account data. Name, business email address, business name, and phone number for the people authorized to use our service.
Client business data. Only what is needed to perform the services our client has engaged us for:
Connected-service data. When a client connects a third-party system, we access only the data needed for the specific workflows they have enabled:
| Service | What we access | Why |
|---|---|---|
| Google (Gmail) | Read-only access to email messages | To classify incoming email, extract action items, and route them for human approval |
| Intuit QuickBooks Online | Invoices, bills, customers, vendors, chart of accounts | To keep records in sync with the client’s book of record |
We request read-only access wherever the workflow permits it. We do not request, and will not accept, permissions that allow moving money, initiating payments, or making payroll tax filings. Our system rejects such permission scopes at the code level.
Usage data. Log records of actions taken in our system — what happened, when, and under whose approval.
We do not collect biometric data, precise location, or data about children.
AgentixAI’s use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Specifically:
On our use of AI. We use a third-party large language model provider (Anthropic) to draft messages and classify documents on behalf of our clients. Content may be transmitted to that provider solely to produce the specific output our client requested. Our provider does not train models on data submitted through its API. Every AI-generated output passes automated checks before a human sees it, and no AI-generated message reaches an outside recipient without explicit human approval.
We access QuickBooks Online data only for clients who connect their account, and only for the workflows they enable. QuickBooks remains the client’s book of record; we do not replace it. We do not request payment-initiation or bill-pay permissions. Access tokens are stored encrypted in a dedicated secrets vault, never in our application database. A client may disconnect at any time from within QuickBooks or by contacting us, which revokes our access immediately.
No system is perfectly secure. We will notify affected clients without undue delay if we become aware of a breach affecting their data.
| Provider | Purpose | Location |
|---|---|---|
| Supabase | Database, authentication, file storage | United States |
| Vercel | Web application hosting | United States |
| Railway | Background workers | United States |
| Anthropic | AI drafting and classification | United States |
We will update this list before adding a sub-processor that handles client data.
| Data | Retention |
|---|---|
| Client business records | For the life of the engagement, then 30 days, then deleted |
| Audit and approval records | 7 years — retained to support our clients’ recordkeeping obligations |
| Google user data | Deleted within 30 days of disconnection or account closure |
| QuickBooks data | Deleted within 30 days of disconnection or account closure |
| Account and contact data | Until account closure, then 30 days |
Disconnecting a service revokes our access immediately, ahead of deletion.
You may request access to the data we hold about you, correction of it, deletion of it, or an export of it. Write to info@agentixai.ai. We respond within 30 days.
Deleting Google data specifically. A client may revoke our access at any time at myaccount.google.com/permissions, or by emailing us. On revocation we stop accessing the account immediately and delete previously retrieved Google user data within 30 days, except where retention is required by law.
Depending on where you live, you may have additional rights under laws such as the California Consumer Privacy Act or the GDPR. We do not sell personal information, and we do not share it for cross-context behavioral advertising.
Our service is for businesses. We do not knowingly collect data from anyone under 16.
We will post any change here and update the “last updated” date. For material changes affecting how we handle client or Google user data, we will notify clients directly before the change takes effect.
AgentixAI · 1670 Ooltewah Ringgold Rd, Ooltewah, TN 37363 · info@agentixai.ai · (423) 218-2244
This document is provided for transparency and platform-review purposes and is not a substitute for legal advice specific to your business.