Privacy Policy
Effective July 4, 2026 · Last updated July 4, 2026
This Privacy Policy explains how Ivcomputer Corporation (“Ivcomputer,” “we,” “us,” or “our”) collects, uses, protects, and shares information in connection with the Ivcomputer Managed Service Portal and Accounting System (the “Portal”), available at msp.ivcomputer.com. It applies to the internal staff and business customers who are authorized to use the Portal.
1. Information we collect
- Account and identity information. Sign-in is handled by Microsoft Entra ID. We receive your name, work email address, and role — but we never receive or store your password.
- Business and service information. Records you or your provider enter into the Portal, such as company details, service requests, devices, licenses, documents, and related notes.
- Financial information. Invoices, estimates, payments, and — where you choose to connect them — bank and credit-card transaction data and online payment details, described in Section 4.
- Operational secrets you ask us to store. Certain credentials (e.g. Wi-Fi, network, or vendor keys) you direct the Portal to vault on your behalf, which are always encrypted at rest.
- Technical and usage data. Session cookies, log entries, and audit records generated as you use the Portal, used for security and to operate the service.
2. How we use information
- To provide, operate, secure, and support the Portal and our managed services.
- To process invoices, estimates, and payments, and to reconcile financial transactions.
- To authenticate users, enforce role-based access, and maintain a tamper-evident audit trail.
- To meet legal, tax, accounting, and regulatory obligations.
We do not sell your personal information, and we do not use it for advertising.
3. How we protect information
- Encryption. Sensitive data is encrypted in transit (TLS/HTTPS) and at rest (SQL Server Always Encrypted for secrets).
- Access control. Multi-factor authentication is enforced at sign-in, and role-based permissions restrict each user and each customer to only the data they are authorized to see.
- Tenant isolation. Each customer’s data is isolated within the database.
- On-premises control. The Portal runs on hardened, company-controlled Windows Server and SQL Server infrastructure.
- Audit logging. Access to and changes of sensitive data are recorded in an append-only audit log.
4. Financial connections and third-party providers
When you choose to use them, the Portal integrates with trusted financial-service providers to deliver features that require connecting to an external service:
- Bank & card transaction import (Plaid). If you link a financial institution, our provider Plaid Inc. securely collects transaction data on your behalf so it can be imported for reconciliation. Plaid — not Ivcomputer — handles your institution login; the Portal never sees or stores your online-banking credentials. Plaid’s handling of your information is governed by the Plaid End User Privacy Policy at plaid.com/legal.
- Online invoice payment (Stripe). If you pay an invoice online, payment is processed by our payment gateway, which tokenizes your card or bank details. Ivcomputer never receives or stores your raw card or bank-account numbers. The gateway’s privacy policy governs its processing of that information.
We share information with these and other service providers only to the extent needed to provide the service, and we do not authorize them to use it for their own unrelated purposes.
5. How we share information
We share information only: (a) with service providers acting on our behalf (such as those in Section 4); (b) with your own organization’s authorized users under role-based access; (c) when required by law or to protect our rights and the security of the service; or (d) in connection with a business transfer, subject to this Policy. We never sell your personal information.
6. Data retention
We retain information for as long as your account is active and as needed to provide the service, and thereafter as required to meet legal, tax, accounting, and audit obligations. Audit records are retained on an append-only basis for security and compliance.
7. Your privacy rights (California CCPA/CPRA)
Subject to applicable law, California residents may request to know what personal information we hold, request correction or deletion, and are protected by our commitment not to sell personal information. To exercise these rights, contact us using the details below; we will verify your request before responding and will not discriminate against you for exercising your rights.
8. Cookies and sessions
The Portal uses strictly necessary cookies to keep you signed in and to secure your session. We do not use advertising or cross-site tracking cookies.
9. Children’s privacy
The Portal is a business application and is not directed to children under 16.
10. Changes to this Policy
We may update this Policy from time to time. Material changes will be reflected by updating the “Last updated” date above and, where appropriate, by notifying account holders.
11. Contact us
Questions or privacy requests may be directed to:
Ivcomputer Corporation
Email: privacy@ivcomputer.com
Web: msp.ivcomputer.com
© Ivcomputer Corporation · Return to sign in