Privacy Policy for Merchant QBR AutoPilot
Last updated: August 22, 2026 ยท Applies to: Merchant QBR AutoPilot v4.1
This Privacy Policy describes how Merchant QBR AutoPilot ("the App", "we", "our")
handles personal information when you use the app and its related scorecard-generation service.
This policy applies to the app service itself, not to a general website.
1. Information We Process
When you use Merchant QBR AutoPilot, we may process:
- User identity information provided by Microsoft 365/Azure AD tokens (for authentication and authorization).
- Business input data submitted in requests, such as merchant names, period selections, pasted CSV content, and CSV or TSV file content selected from OneDrive.
- Generated artifacts such as PowerPoint scorecards, batch indexes, ZIP bundles, and workspace records when you explicitly choose to create or save them.
- Operational telemetry and logs required to run, troubleshoot, and secure the service.
2. How We Use Information
- To authenticate users and protect access to Merchant QBR AutoPilot APIs.
- To generate merchant QBR scorecards, summaries, downloadable artifacts, ZIP bundles, and OneDrive workspace records.
- To monitor service reliability, investigate errors, and improve service quality and security.
- To comply with applicable legal and regulatory obligations.
3. Data Sharing
We do not sell personal information. We may share data only with service providers and platforms
needed to operate Merchant QBR AutoPilot (for example, Microsoft Azure and Microsoft 365 services),
or when required by law.
4. Data Storage and Retention
- Raw customer CSV or TSV file content is processed in memory and is not persisted by the backend.
- Generated files may be stored temporarily in Azure storage services configured for the app.
- When you explicitly confirm OneDrive delivery, generated workspace artifacts are stored in the signed-in user's OneDrive.
- Logs may be retained for operations, security, and audit purposes.
- Data is retained only as long as necessary for the purposes above or as required by law/policy.
5. Security
We use reasonable administrative, technical, and organizational controls to protect data, including
authenticated access controls, encrypted transport (HTTPS), and Azure platform security capabilities.
6. Your Choices and Rights
Depending on your jurisdiction and organization policies, you may have rights to request access,
correction, deletion, or restriction of personal information processed by Merchant QBR AutoPilot.
Requests should be submitted through your organization administrator or privacy contact.
7. Third-Party Services
Merchant QBR AutoPilot is integrated with Microsoft services. Your use of Microsoft 365, Teams,
Entra ID, and Azure services is also subject to Microsoft terms and privacy commitments.
8. Changes to This Policy
We may update this Privacy Policy from time to time. Material changes will be reflected by updating
the "Last updated" date and, where required, by providing additional notice.
9. Contact
For privacy questions about Merchant QBR AutoPilot, contact:
support@intellithing.com