Privacy Policy
Effective 1 August 2026 · Version 1.1.0
This Privacy Policy explains how Wilford Technology ("AccMCP", "we", "us") collects, uses and protects personal data across:
- Part A — the public website at accmcp.com; and
- Part B — the AccMCP product, including the MCP server at
https://mcp.accmcp.com/mcpand the accounting tools it exposes to AI assistants such as ChatGPT and Claude.
If you are evaluating or reviewing the AccMCP integration, Part B is the part that describes what the integration accesses. A fuller, plain-language walkthrough of the integration is published separately as our MCP Integration Data Disclosure.
Your organisation may also have a separate written agreement with us. Where it conflicts with this policy, that agreement governs for that organisation.
Registered address: 131, C21 Mall, Ujjain, Madhya Pradesh, 456010, India Contact: support@whats91.com
1. Scope and who this applies to
Part A applies to anyone visiting accmcp.com.
Part B applies to customers and their users who connect Busy Accounting data to AccMCP and to AI assistants. For that accounting data, your organisation is the controller and we act as processor on its instructions — we handle it to provide the service, not for our own purposes.
2. What we collect
Through this website we collect only what you give us directly:
- Contact form: name, email, topic and your message.
- Request a demo form: name, work email, company, optional phone, company size, whether you use Busy Accounting, and preferred language.
- Get Started form: name, email, company, product interest, and whether you use Busy Accounting.
- Newsletter signup: your email address and a consent timestamp.
We also process limited technical data that any web server receives — IP address, browser user-agent and requested URL — for security, abuse prevention and rate limiting.
We do not collect payment card details, government identifiers, or your accounting data through this website.
3. Part B — the product and the MCP integration
Nothing in this section is collected through the website. It describes the product you use after signing in, and the MCP integration you may connect to an AI assistant.
3.1 Account data
To operate your account we hold your name, work email, organisation, role and permissions, subscription and billing status, and records of the MCP connections you create (client name, granted scopes, granted companies, and their status). Payment card details are handled by our payment provider and are not stored by us.
3.2 Accounting data
When you connect Busy Accounting, we synchronise your accounting records into a warehouse we operate so tools can answer quickly and consistently. That data routinely includes personal data about your customers, suppliers and staff — names, addresses, contact fields, tax registration details and commercial terms — alongside transactions, balances, ageing and inventory.
We process it only to provide the service: to run the tool you or your AI assistant invoked, and to compute the derived analytics the product offers.
Accounting reads run inside database transactions opened as READ ONLY. The
integration cannot create, edit or delete anything in your accounting data.
3.3 What we do not do with it
We do not sell your accounting data. We do not use it for advertising or profiling. We do not use it to train AI models — ours or any third party's.
3.4 What the AI assistant receives
When your assistant calls a tool, the result is sent to the provider operating that assistant — OpenAI for ChatGPT, Anthropic for Claude, or another MCP client you chose. From that point their privacy policy and terms apply to their copy, and we do not control how they retain or process it. Grant only the companies the assistant needs, and review your provider's terms before connecting sensitive data. See the MCP Integration Data Disclosure.
3.5 Conversations and assistant content
We do not request, collect or store your chat history, assistant memory, or files held in the assistant. The integration receives only the tool arguments the assistant sends in order to answer your request.
4. Why we process it, and on what basis
| Purpose | Data | Basis |
|---|---|---|
| Responding to an enquiry | Form fields you submit | Performance of a contract / your request |
| Sending product updates | Email address, consent timestamp | Your consent |
| Preventing abuse of our forms | IP, user-agent, timestamps | Legitimate interest |
| Meeting legal or tax obligations | Correspondence records | Legal obligation |
We do not sell personal data, and we do not use it for automated decision-making or profiling.
5. Cookies and analytics
This website sets no advertising or cross-site tracking cookies. What we do store, and how to control it, is described in our Cookie Policy.
6. Sharing and categories of recipients
We share personal data only with the following categories of recipient:
| Category | What they receive | Why |
|---|---|---|
| Hosting and infrastructure providers | Website data; account and accounting data | To run the website, application and warehouse |
| Email delivery provider | Name, email and message content | To deliver form notifications and service email |
| Payment provider | Billing contact and payment details | To take subscription payments |
| Analytics provider, if enabled | Aggregated usage data | To understand site usage |
| AI assistant provider you choose | Tool results from the companies you granted | To answer the request you made in that assistant |
Service providers act on our documented instructions and may not use the data for their own purposes. The AI assistant provider is different: once you connect an assistant and it calls a tool, that provider handles the result under its own terms — see §3.4.
We may also disclose data where required by law, court order or a lawful government request, and where necessary to establish or defend a legal claim.
We do not sell personal data.
7. International transfers
Our service providers may process data outside India. Where they do, we rely on contractual safeguards with those providers requiring a comparable standard of protection.
8. Retention
Website (Part A)
- Form submissions: retained while we handle your enquiry and for up to 24 months afterwards, then deleted.
- Newsletter subscriptions: retained until you unsubscribe.
- Server and security logs: retained for up to 90 days.
Product and MCP integration (Part B)
| What | How long |
|---|---|
| Account and organisation records | For the life of the account, then deleted on request or on closure |
| Synchronised accounting data | For the life of the subscription, then deleted — see §10 |
| MCP connection records | Until revoked, then retained as a revoked record for audit |
| Asynchronous export jobs | 24 hours |
| Export download links | 10 minutes |
| Drill-down tokens | 15 minutes |
| Interactive analysis sessions | 15 minutes idle, 4 hours maximum |
| Operational and security logs | Up to 90 days |
We may retain limited records for longer where a law, tax rule or an unresolved legal claim requires it.
9. Security
We use TLS in transit, restrict internal access on a need-to-know basis, and apply a strict Content Security Policy on this website. No method of transmission or storage is completely secure, and we cannot guarantee absolute security.
10. Your rights
Subject to applicable law, including the Digital Personal Data Protection Act, 2023, you may request access to your personal data, correction of inaccurate data, erasure, withdrawal of consent, and nomination of another person to exercise your rights in the event of death or incapacity.
To exercise any of these, email support@whats91.com. We will respond within the timelines required by applicable law.
Disconnecting the integration
To stop an AI assistant's access immediately, sign in and open Settings → MCP connections, then revoke the connection. It takes effect at once. You should also remove the connector inside the assistant itself, using that provider's controls.
Deleting your data
Revoking a connection stops access but does not by itself erase the synchronised accounting data in your account. To have it deleted, email support@whats91.com from the address on your account, or use the contact form. We verify your identity and authority over the organisation before acting. Closing your AccMCP account removes the synchronised accounting data associated with it, subject to the limited legal retention described in §8.
Deleting data here does not delete any copy already held by your AI assistant provider. Use that provider's own controls for that.
If you are an individual whose data appears in a customer's accounting records, your request is usually best directed to that business, since they are the controller. Contact us and we will help route it.
11. Grievance redressal
If you are not satisfied with how we have handled your data or your request, you may escalate it.
Grievance Officer: (being appointed — until then, address grievances to support@whats91.com and mark them "Grievance") Email: support@whats91.com Address: 131, C21 Mall, Ujjain, Madhya Pradesh, 456010, India
We acknowledge grievances within 48 hours and aim to resolve them within one month of receipt.
12. Children
This website is not directed at children under 18, and we do not knowingly collect their personal data. If you believe a child has provided us data, contact us and we will delete it.
13. Changes to this policy
We may update this policy. Material changes will be reflected in the effective date and version shown at the top of this page. Continued use of the website after a change means you accept the updated policy.
14. Contact us
Wilford Technology 131, C21 Mall, Ujjain, Madhya Pradesh, 456010, India support@whats91.com