Privacy Policy
This policy describes what the Radius Finance MCP application ("the Application") accesses, what it stores, and who can see it. The Application is an internal tool operated by Radius International ("Radius") and is used only by authorized Radius personnel.
Scope
The Application handles organizational accounting data belonging to Radius International, Missionary LLC, and Radius Serve LLC. It is not a consumer service, collects nothing from members of the public, and is not accessible outside Radius.
What the Application accesses
Through Intuit's QuickBooks Online API, using the
com.intuit.quickbooks.accounting scope, the Application reads
accounting records on demand: accounts, classes, transactions, journal
entries, budgets, and standard financial reports. Those records may include
the names and contact details of customers, donors, vendors, and employees
where such information appears in the accounting data.
The Application performs reads only. It has no capability to create, modify, or delete any record in QuickBooks Online.
What the Application stores
| Data | Where | Retention |
|---|---|---|
| OAuth access and refresh tokens for the three company files | A permission-restricted file on a single private server controlled by Radius | Until revoked or replaced |
| Audit log: authenticated user, action, entity accessed, timestamp, and the query text where applicable | Same server | Per Radius records policy |
| Accounting data retrieved from QuickBooks | Not stored. Retrieved per request and returned to the requesting user | Not retained |
Who can access it
Access requires authentication with a Radius Microsoft (Entra ID) account and membership of a designated finance security group. Authorization may be further restricted per company file. Access ends when the user is removed from the group or their Radius account is deactivated.
Server administration is limited to Radius IT and finance administrators.
Third parties
- Intuit Inc. — source of the accounting data, accessed via the QuickBooks Online API under Radius's own authorization.
- Anthropic PBC — operates Claude, through which authorized staff query the Application.
- Cloudflare, Inc. — provides the encrypted network tunnel through which requests reach the server.
Radius does not sell, rent, or otherwise disclose data accessed through the Application to any other party, and does not use it for advertising or for training machine-learning models.
Security
- All traffic is encrypted in transit (TLS).
- The server accepts no inbound connections from the public internet; it is reachable only through an outbound-initiated Cloudflare tunnel, and its network address is not published.
- Credentials are stored in permission-restricted files readable only by the service account, and the service runs unprivileged under a hardened system configuration.
- Every request is authenticated to a named individual and logged.
No system is perfectly secure, and Radius does not represent that this one is immune to compromise.
Individual rights
Personal information appearing in the accounting data is held by Radius in its capacity as the controller of its own financial records; this Application is a means of reading those records, not a separate collection of them. Requests concerning personal data held by Radius should be directed to the contact below and are handled under Radius's general privacy practices.
Changes
This policy may be updated as the Application changes. The effective date above reflects the current version.
Contact
finance@radiusinternational.org
Radius International, Phoenix, Arizona, United States