Legal

Privacy Policy

Last updated: August 7, 2026

This Privacy Policy explains how Keystone Development LLC ("Keystone", "we", "us") handles information in Keystone Command, our construction and project management application. It applies to the Keystone Command application and to the optional QuickBooks Online integration described below.

1. About Keystone Command

Keystone Command is business software used by Keystone Development and its authorized clients, subcontractors, and staff to manage construction projects — schedules, checklists, documents, photos, contacts, and project budgets. Access requires an invitation and an account; it is not a consumer service and it is not open to public sign-up.

2. Information we collect

  • Account information — name, email address, phone number, company, and mailing address you or your inviting administrator provide.
  • Project content — projects, schedule events, checklist items, comments, budgets, and files or photos you upload.
  • Operational records — sign-in events, integration connection events, and error logs used to keep the service working and secure.
  • QuickBooks Online data — only if an authorized administrator chooses to connect a QuickBooks Online company, as described in Section 3.

3. The QuickBooks Online integration

Connecting QuickBooks Online is entirely optional. Only a Keystone Command workspace owner or administrator can start the connection, and the connection is authorized through Intuit's standard OAuth 2.0 consent screen.

  • Keystone Command accesses only the QuickBooks Online data that the authorizing user has permitted through that consent, within the accounting scope granted.
  • The integration is designed and built for read-only use. Keystone Command does not create, edit, delete, void, post, approve, pay, send, or otherwise modify any accounting data in your QuickBooks company. Our code path to the QuickBooks accounting API issues read (GET/query) requests only. The only write-style requests we make to Intuit are the OAuth operations required to obtain, refresh, and revoke authorization.
  • Information retrieved from QuickBooks Online — such as company details, chart of accounts, items, vendors, customers or jobs, and cost transactions — may be displayed and stored inside Keystone Command for project management, budgeting, job costing, reporting, reconciliation, and related construction-management purposes.
  • QuickBooks Online remains your accounting system of record. Keystone Command is a reporting and project-management view on top of it.

4. How we use information

We use information to operate and support Keystone Command: to provide project management features, to display budget and cost information, to communicate about projects, to secure accounts, and to comply with legal obligations. We do not sell personal information, and we do not use QuickBooks data for advertising or for training machine-learning models.

5. Sharing

Information is visible to authorized users of the same Keystone Command workspace according to their role. We share information with service providers that host and operate the application on our behalf (our application hosting provider and our managed database, authentication, and file storage provider), and with Intuit only as necessary to make authorized API requests on your behalf. We may disclose information if required by law.

6. Security

  • All traffic to Keystone Command is served over HTTPS/TLS.
  • Intuit client credentials exist only as server-side environment secrets. They are never present in client-side code, browser storage, or URLs.
  • OAuth access tokens and refresh tokens are encrypted before being stored, are readable only by server-side code, and are never rendered into the browser, placed in URLs, or written to application logs.
  • Access to stored connection records is restricted at the database level to workspace owners and administrators.
  • The OAuth flow uses a single-use, time-limited, server-generated state value to protect against cross-site request forgery, and an exact-match redirect URI.
  • Development and production credentials are kept separate.

No system can be guaranteed perfectly secure. We describe only our own practices here and make no representations about the security practices of Intuit or any other third party.

7. Disconnecting QuickBooks

A workspace owner or administrator can disconnect QuickBooks at any time from the QuickBooks card in Keystone Command's Settings. When you disconnect:

  • We ask Intuit to revoke the authorization token.
  • We delete our stored access token, refresh token, and QuickBooks company (realm) identifier from our database.
  • Keystone Command stops making any QuickBooks API requests for that workspace.
  • Nothing inside your QuickBooks company is deleted, changed, or affected in any way.

Financial figures that were previously retrieved and stored in Keystone Command for your project records remain in your workspace so historical project reporting stays intact. You may ask us to delete that retained data using the contact details below, and we will remove it.

8. Data retention

We retain workspace and project data for as long as the workspace is active and as needed for business records, then delete or archive it on request or when it is no longer needed. OAuth credentials are retained only while a connection is active and are deleted upon disconnection.

9. Your rights

You may request access to, correction of, or deletion of the personal information we hold about you, and you may ask us to disconnect an integration on your behalf. Contact us using the details below and we will respond within a reasonable period.

10. Children

Keystone Command is business software and is not directed to children under 13.

11. Changes

We may update this policy from time to time. Material changes will be reflected by the "Last updated" date above.

12. Contact

Keystone Development LLC
Eagle, Idaho, United States
Email: hello@buildwithkeystone.net
Phone: (208) 999-2526

Keystone Development LLC is not Intuit Inc. QuickBooks and QuickBooks Online are trademarks of Intuit Inc., used here only to describe compatibility.