Privacy Policy

Last updated: October 5, 2026

This Privacy Policy explains how Bizdivers LLC (“Bizdivers,” “we,” “us”), a Limited Liability Company formed in Maryland, United States, collects, uses, discloses, and protects information when you use the Bizdivers application and website at bizdivers.com (the “Service”).

Bizdivers is an AI-powered accounting and finance-operations platform for businesses. Our customers connect their own business bank and credit-card accounts and upload financial documents so we can automate their bookkeeping, reconciliation, and general-ledger workflows on their behalf.

Your access to and use of the Service is conditioned on your acceptance of and compliance with this Privacy Policy. By accessing or using the Service, you agree to this Privacy Policy. If you disagree with any part of it, you do not have our permission to access or use the Service.

1. Information we collect

Account & profile information. Name, email address, hashed password, company name, role, phone number, billing address, and similar details you provide when registering, billing, or administering your account.

Consent and acceptance records. When you create an account we record that you accepted our Terms of Service (including the Disclaimer that forms part of them) and this Privacy Policy, together with the version of each document you accepted, the date and time of acceptance, your IP address, and your browser user agent. We keep these records to evidence your agreement to the terms that govern the Service. They are created the same way whether you sign up with an email address and password, accept an invitation to join a company, or create an account using a third-party sign-in provider. We also record your acceptance of this Privacy Policy each time you connect a third-party AI assistant to your account (see Section 6), together with which assistant you connected and which company you connected it to.

Financial account data (via Plaid). When you connect a bank or credit-card account, our data-connectivity provider Plaid Inc. (“Plaid”) accesses information from your financial institution on your behalf, including: the institution name, account names, types and subtypes, masked account numbers, account and routing numbers, account balances, and transaction details (amount, date, description, merchant/counterparty, and category). We use Plaid’s Transactions, Balance, and Auth products. See Section 7.

Documents you upload. Invoices, receipts, contracts, W-9/1099 forms, and similar financial documents (uploaded in the app, sent to your company’s document-intake email address, or captured with your device’s camera in our mobile app), which may contain personal or business information about you, your vendors, or your customers — including, in the case of tax forms, Social Security Numbers or Taxpayer Identification Numbers. These are processed with optical character recognition and large language models to extract structured data. See “Sensitive personal information” in Section 2.

Payment information. Payments are processed by our payment processor, Stripe, Inc. (“Stripe”), which collects and processes your payment-card or bank details directly. We do not store full payment-card numbers; we receive limited billing and subscription metadata from Stripe.

Usage, device, and log data. Product-analytics events, error reports, IP address, approximate location inferred from your IP address, browser/device information, and application logs, collected to operate, secure, and improve the Service.

Session recordings. To diagnose errors and understand how the Service is used, we record sessions within the application through our analytics provider. On the web this is a reconstruction of the pages you viewed and your interactions with them; in our mobile app it is periodic screenshots of the screen. Recordings are described in Section 9, including what is masked and which screens are never recorded.

Support conversations. If you contact us through the in-app support channel, we receive the messages you send, the email address you give for a reply, and, where you choose to include them, diagnostic details about your session and a copy of your recent conversation with the in-app assistant. What will be sent is shown to you before you send it, and you can remove it.

Cookies and similar technologies. Used for authentication, preferences, and product analytics. See Section 9.

2. Categories of personal information and how we use it

For transparency and to support rights under laws such as the California Consumer Privacy Act (CCPA/CPRA), the categories of personal information we collect, and the business purposes for which we use each, are:

3. How we use information

We use the information we collect to:

We do not use Plaid-derived financial data to initiate payments or transfers, for lending or underwriting decisions, or for advertising. We do not sell or “share” your personal information.

4. How we share information

We share information only as needed to operate the Service, with the following categories of recipients (service providers / subprocessors that process data on our behalf under contract):

We also share information:

AI assistants you choose to connect. If you connect a third-party AI assistant to your account (Section 6), the provider of that assistant receives the data the assistant reads at your request. That provider is chosen by you and acts under your agreement with it; it is not our service provider and is not listed above.

We do not sell or rent personal information, and we do not share Plaid-derived data with third parties except the service providers above and, where you connect one, an AI assistant provider you have chosen.

5. Sale or sharing of personal information

We do not sell your personal information, and we do not “share” it for cross-context behavioral advertising, as those terms are defined under the CCPA/CPRA. We have not sold or shared personal information in the preceding twelve (12) months. See Section 12 for how to exercise your rights, including rights regarding sales of personal information.

6. AI and automated processing

We use third-party AI models to read the documents you upload (optical character recognition, through Mistral AI) and to extract their data and suggest categorizations for transactions (large-language-model inference, through DigitalOcean, OpenRouter, and Groq). Document and transaction content is transmitted to these providers solely to perform these tasks, under zero-data-retention terms: the provider does not store your content after the request completes and does not use it to train or improve models. The record of what the AI read and what it answered is kept in your own Bizdivers account, in your company’s books and audit log, not with the provider. AI-generated suggestions are surfaced for human review; you remain in control of what is posted to your books.

Connecting a third-party AI assistant to Bizdivers

You can connect a third-party AI assistant (for example Claude or ChatGPT) to your Bizdivers account through our connector. When you do, that assistant can read the financial records of the one company you choose on the consent screen, and can prepare changes for you to confirm inside Bizdivers. It cannot approve, pay, post, or send anything on its own.

Data that the assistant reads through this connection is sent to the provider of that assistant and is handled under your agreement with that provider, not under this Policy. The commitments in this Section 6 about how our own AI providers handle your data apply only to AI processing that happens inside Bizdivers. We do not control what a connected provider does with data you ask it to read.

Each connection is authorized by you, is limited to one company and to the permissions you tick, and can be ended at any time from Settings → Security → Connected apps. Ending it stops the assistant’s access immediately; resetting your password or being removed from the company ends it as well. We record each connection and each request the assistant makes in your company’s audit log, and we record your acceptance of this Policy at the time you connect.

7. Plaid

We use Plaid to connect your financial accounts. By connecting an account, you authorize Plaid to access and transmit the financial data described in Section 1 on your behalf. Plaid’s handling of your information is governed by Plaid’s End User Privacy Policy, available at https://plaid.com/legal/#end-user-privacy-policy. We use this data only to provide accounting and reconciliation features within the Service.

You can disconnect a linked account at any time from within the Service, which revokes our ongoing access and removes the associated stored data as described in Section 11.

8. How we protect information

No method of transmission or storage is completely secure, but we work to protect your information using industry-standard safeguards.

9. Cookies, analytics, and session recordings

A cookie is a small piece of data sent from a website and stored on your device by your browser. We use cookies and similar technologies for authentication, to remember preferences, and for product analytics and error tracking (via PostHog). Cookies may be used to identify whether you are signed in, store your preferences, analyze Service traffic, and recognize you when you return.

Session recordings. We record sessions within the application to diagnose errors and understand how the Service is used. On the web a recording is a reconstruction of the pages you viewed and your interactions with them; in our mobile app it is a series of screenshots. Because the Service shows your own company’s financial records, a recording may show that information.

Recordings are limited in three ways. The values you type into form fields are masked before a recording leaves your device, and in the mobile app text inputs and images are masked as well. Screens where credentials are entered, including sign-in, two-factor authentication, password reset, and invitation acceptance, are not recorded at all. Recordings are stored by our analytics provider and are used only to operate, secure, and improve the Service; they are not used for advertising and are not sold or shared.

Most browsers accept cookies automatically, but you can modify your browser settings to decline cookies. Disabling some cookies may affect functionality. To learn about opting out of analytics, visit the PostHog website. If you would prefer that we not record your sessions, contact us at admin@bizdivers.com.

10. Do Not Track

Do Not Track (“DNT”) is a preference you can set in your browser to tell websites you do not want to be tracked. We do not currently respond to DNT signals. You can enable or disable DNT in your browser’s preferences or settings.

11. Data retention and deletion

We retain personal and financial information for as long as your account is active and as needed to provide the Service. When you disconnect a linked financial account, the associated Plaid access credentials and synced account/transaction data are deleted. When you close your account or request deletion, we delete or de-identify your personal information within 90 days, except that we may retain accounting and transaction records, and the consent and acceptance records described in Section 1, for up to 7 years where required to comply with legal, tax, or accounting obligations or to establish or defend legal claims. To request deletion, contact admin@bizdivers.com.

12. Your rights

Depending on where you live, you may have rights to access, correct, delete, or export your personal information, and to opt out of certain processing. California residents have rights under the CCPA/CPRA, including the right to know, delete, and correct personal information, the right to limit the use of sensitive personal information, and the right to opt out of the “sale” or “sharing” of personal information — we do not sell or share your personal information as those terms are defined under California law. We will not discriminate against you for exercising your rights.

Nevada residents have the right to opt out of the sale of certain personal information. We do not sell personal information; Nevada residents may nonetheless submit a verified request directing us not to sell their information.

Exercising your rights. To exercise any of these rights, contact us using the details below. We will need to verify your identity before acting on your request and may ask you to provide information for that purpose. You may use an authorized agent to submit a request on your behalf.

Privacy Contact — Bizdivers LLC
admin@bizdivers.com
5000 Thayer Center, Ste C, Oakland, MD 21550
United States
https://bizdivers.com/privacy-policy

13. International users

The Service is operated from the United States and your information is stored and processed in the United States (US East / New York). If you access the Service from outside the United States, you consent to the transfer and processing of your information in the United States.

14. Children’s privacy

The Service is intended for businesses and a general audience and is not directed to individuals under 18. We do not knowingly collect personal information from children. If a child under 18 sends us personal information, we will use it only to inform them that they may not use the Service.

15. Changes to this Policy

We may update this Policy from time to time. We will post the updated version with a revised date and, where appropriate, notify you. Your continued use of the Service after changes take effect constitutes acceptance of the updated Policy.

16. Contact us

Bizdivers LLC
Email: admin@bizdivers.com
5000 Thayer Center, Ste C, Oakland, MD 21550, United States
Governing law: State of Maryland, USA

How to delete your account

You can permanently delete your account and personal data at any time: in the mobile app (Home → Delete account), in the web app (Settings → Danger zone → Delete account), or by emailing admin@bizdivers.com. Step-by-step instructions are on our Account deletion page.

Deleting revokes your access and removes your personal profile immediately. As described under “Data retention and deletion” above, certain accounting records are retained where legally required and are otherwise inaccessible.