Back to Business Butler

Privacy Policy

Last updated: 7 October 2026

Draft. This policy has not yet been reviewed by a lawyer. It is published here so it can be read before signup, and it describes the data flows accurately as built.

1. Who is responsible

Business Butler is operated by Vert & Co. Holdings, LLC, a Texas limited liability company, of 1608 Daylight Lake Dr., Katy, TX 77493. For anything in this policy, email support@businessbutler.io.

2. What we collect

Account information. Your name, email address and profile image, from the account you create. Your organisation’s name, and who belongs to it.

Business data you enter. Vendors and their contacts, ingredients and their nutrition and allergen data, recipes, products, purchase orders, labour rates, overhead costs, and production batches. This is the substance of the Service and is stored until you delete it.

Billing information. Your subscription plan and status. We do not receive or store your card number — Stripe handles payment details directly.

Technical information. Server logs recording requests and errors, used to keep the Service working. Errors are recorded with the request path and the affected organisation’s identifier; credentials and personal details are filtered out before anything is written.

What we do not collect. No advertising or tracking cookies, no third-party analytics, no behavioural profiling. Cookies are limited to what is needed to keep you signed in.

3. Why we use it

  • To run the Service and perform the calculations you ask for.
  • To authenticate you and keep organisations separate from each other.
  • To take payment and manage subscriptions.
  • To send transactional email — invitations, purchase orders, account notices.
  • To diagnose faults and keep the Service secure.

We do not sell your data, share it for advertising, or use it to train machine learning models.

4. Who else receives it

Running the Service means some data passes through other companies. These are all of them:

ServiceWhat it receivesWhy
ClerkName, email, profile image, sign-in activityAuthentication
StripeEmail, billing and card details, subscription statusPayments
NeonAll stored business dataDatabase hosting
VercelRequests, server logs, error reportsApplication hosting
ResendRecipient email addresses and message contentSending email
ShopifyProduct names, prices, inventory levelsOnly if you connect it
QuickBooksVendors, purchase orders, billsOnly if you connect it
USDA FoodData CentralThe food name you search forNutrition lookup. No account data is sent

Shopify and QuickBooks receive nothing unless you connect them, and you can disconnect either at any time from Settings → Integrations.

5. Where it is stored

Data is stored in the United States on infrastructure operated by the providers above. If you are outside that region, using the Service means your data is transferred there.

6. How long we keep it

Your business data is kept while your account is open. When an account is deleted we remove the account and its organisation’s data. Some records are kept longer where we are legally required to — billing records in particular.

Server logs are retained for a limited period by our hosting provider and then discarded.

7. Your choices

Export. Vendors, ingredients, recipes, products and overhead can be exported as CSV at any time from the Vendors, Ingredients, Recipes, Products and Overhead pages.

Correction. Anything you entered can be edited in the app.

Deletion. An organisation owner can have the account deleted by emailing support@businessbutler.io. Deletion removes the organisation and everything in it — vendors, ingredients, recipes, products, orders and production records — and cancels any active subscription first, so you are not billed for an account that no longer exists. Accounts belonging only to that organisation are removed too.

Deletion cannot be undone. Export the lists you want to keep (vendors, ingredients, recipes, products and overhead) first. Some billing records are retained where we are legally required to keep them.

Depending on where you live you may have further rights — to access what we hold, to object to processing, or to complain to a regulator. Email us and we will help.

8. Security

Traffic is encrypted in transit. Each organisation’s data is separated, and every request is checked against the organisation the signed-in user belongs to. Credentials are held by Clerk and Stripe rather than by us, and secrets are kept out of the codebase.

No system is perfectly secure. If we discover a breach affecting your data we will tell you and the relevant regulator as the law requires.

9. Children

The Service is for businesses and is not intended for anyone under 16. We do not knowingly collect their data.

10. Changes

If this policy changes we will update the date at the top, and give notice before any material change takes effect. See also our Terms of Service.