Privacy Policy

Bridgepoint Integration, LLC — Last updated: May 2026

Who We Are

Bridgepoint Integration, LLC ("Bridgepoint", "we", "us", or "our") operates the Bridgepoint Auto-Filer service ("Service"), which routes SafeSend tax documents to designated cloud folders on behalf of accounting firms and tax preparers.

Contact: support@bridgepointintegration.com

Information We Collect

  • Business email address — used for account login and magic-link authentication. We do not use it for marketing without your consent.
  • Google account email — collected when you connect a Google account during onboarding, used solely to identify your Google Drive connection.
  • SafeSend documents — downloaded temporarily (held in memory for less than 60 seconds) while routing to Google Drive. We do not store these documents on our servers. Documents flow directly from SafeSend to Google Drive without being retained by Bridgepoint.
  • Google Drive OAuth refresh token — required to maintain long-lived access to the specific Google Drive folder you select. See "How Data Is Stored" for encryption details.
  • Filing event metadata — a record of each successful filing (client name, file name, timestamp, destination folder). This is metadata only; it contains no document content.

What We Do Not Collect

  • We do not store signed tax documents. They are never written to our database or disk.
  • We do not access Google Drive content beyond the single folder you explicitly select during onboarding. Our integration uses the drive.file OAuth scope, which restricts access to files created by or explicitly granted to this application — not your entire Drive.
  • We do not read, index, or analyze any content inside the files we route.
  • We do not sell or share your data with third parties for advertising purposes.

How We Use Your Data

  • To authenticate your account and maintain your session.
  • To route SafeSend documents to the correct Google Drive folder for the correct client.
  • To maintain a 7-year audit trail of filing events (metadata only) for accounting-firm compliance.
  • To send service-related communications (e.g., quarantine alerts, filing confirmations).

How Data Is Shared

  • Google — when we call the Google Drive API to upload a document on your behalf, Google receives your OAuth token and the file being uploaded. This is governed by Google's Privacy Policy.
  • Service providers — we use Neon (database), Railway (compute), and DigitalOcean (key management). Each provider has its own privacy practices and processes only the minimum data required to deliver the Service.
  • We do not sell your data. We do not share your data for advertising.

Data Retention

  • Filing event records (metadata only, no document content) are retained for 7 years to meet accounting-firm regulatory requirements.
  • Account data (email, OAuth connection, client mappings) is deleted within 90 days of account cancellation.
  • Audit logs are retained in accordance with applicable law.

Your Rights

You have the right to:

  • Request a copy of the personal data we hold about you.
  • Request deletion of your data (subject to retention requirements described above).
  • Disconnect your Google account at any time via your account settings or by contacting us.

To exercise any of these rights, contact Google API Services User Data Policy, including the Limited Use requirements.

Changes to This Policy

We may update this policy from time to time. When we do, we will update the "Last updated" date above. Continued use of the Service after changes constitutes acceptance of the revised policy.

Contact

Bridgepoint Integration, LLC
support@bridgepointintegration.com

Privacy Policy