Privacy policy
DC Labs reads business records from systems you connect, keeps them in a database that belongs to your company alone, and uses them for nothing except running your workspace.
Who this covers
This policy describes what DC Labs does with information when you use the DC Labs website or a DC Labs workspace. A workspace is the software a customer company uses; its people sign in by invitation from that company. If your company has a signed agreement with DC Labs, that agreement governs wherever the two differ.
What we collect
From you directly. Your name, your work email address, and the messages you send us. If you sign in, the time and network address of the sign-in.
From systems your company connects. When an administrator at your company connects a system — QuickBooks Online, for example — DC Labs reads the business records that system holds for your company: customers, jobs, vendors, bills, payments, photos and documents, and the people associated with them. We read what the connection allows and keep a copy, so the workspace can show it, cross-reference it, and tell you how old it is.
From documents you upload. Invoices and similar documents you upload to the workspace, and the text and amounts extracted from them.
From your browser. The technical information any web server receives: your network address, browser type, and the pages you request. This site uses no advertising trackers and no third-party analytics.
How we use it
To run your workspace: showing your company’s records in one place, matching the same job across different systems, working out what is genuinely owed, and preparing entries for a person at your company to review and release into your accounting system. To keep the service working and secure. To reply when you write to us.
Nothing else. We do not sell information, use it for advertising, or use one customer’s records to train anything.
Where it lives and who else touches it
Each customer company’s records live in a separate database that no other customer shares. Databases and the application are hosted in the United States, in Oregon.
We rely on a small number of providers to run the service, and each one handles only what its job requires:
- Supabase hosts the databases.
- Vercel hosts the application and this website.
- Anthropic processes uploaded invoice documents to extract their contents. Documents are sent for extraction only and are not used to train Anthropic’s models.
- Intuit (QuickBooks Online), CompanyCam, and any other system your company chooses to connect, which supply records under that connection.
We share records with no one else, except where the law requires it.
Connecting and disconnecting QuickBooks
Connecting QuickBooks requires a QuickBooks administrator at your company to authorize DC Labs through Intuit. DC Labs uses that authorization to read your company’s accounting records and, only when a person at your company explicitly releases an entry, to create bills and draft estimates. DC Labs never records a bill as paid, never initiates a payment, and never moves money.
You can disconnect at any time from QuickBooks (Apps, then Connected apps) or from inside the workspace. Disconnecting stops all further reading. Records already in your workspace stay there until you ask us to delete them.
How long we keep it
Records stay for as long as your company’s workspace is active — the software depends on history to tell you what changed and when. When a workspace closes, or when an administrator at your company asks in writing, we delete the company’s records within 30 days, except where we must keep something to meet a legal obligation. You can ask for an export of your company’s records at any time.
Security
Connections are encrypted in transit. Credentials for connected systems are held on our servers, never in a browser. Each customer’s database is physically separate from every other customer’s. Access to production systems is limited to the people who operate the service.
Your choices
Ask us what we hold about you or your company, ask us to correct it, ask for an export, or ask us to delete it: write to ops@dclabs.build. A person replies to every request.
Changes
When this policy changes, the revision in the title block below changes with it, and the previous revision is available on request. Substantive changes are sent to workspace administrators before they take effect.
Contact
DC Labs. ops@dclabs.build.
- Sheet
- G-002
- Title
- Privacy policy
- Drawn by
- DC Labs
- Issued
- 2026-09-12
- Rev
- 0