Effective September 16, 2026
Privacy notice
How QuotePoint handles account, workspace, integration, support, and service information.
Scope of this notice
This notice applies to the QuotePoint website, QuotePoint workspaces, customer and trial accounts, support interactions, and connected integrations such as HubSpot. It describes the categories of information QuotePoint processes to provide, secure, support, and improve the service.
Account and contact information
We process information you or your organization provide when creating or administering an account, requesting a trial or walkthrough, contacting support, or managing billing. This can include names, work email addresses, company information, roles, workspace membership, and support correspondence.
Workspace and commercial data
QuotePoint stores data that authorized workspace users enter or import to operate the service, including products, SKUs, pricebooks, costs, sales channels, configuration rules, customer context, quotes, approvals, documents, signatures, and orders. Customers control what business data they place in their workspace and which users are authorized to access it.
HubSpot integration data
When a workspace administrator connects HubSpot, QuotePoint processes the HubSpot account identifier and the CRM data required for enabled integration workflows. QuotePoint reads deal, associated company, associated contact, product, and deal-schema information as described on the HubSpot data-access page. QuotePoint can write QuotePoint quote fields to linked deals and reconcile QuotePoint-managed production products into HubSpot Products.
OAuth credentials and integration security
HubSpot authorization is performed through OAuth. QuotePoint stores the HubSpot refresh credential encrypted server-side and does not expose it to browser clients. Short-lived access credentials are obtained server-side as needed. Disconnecting HubSpot disables the local connection and removes the locally stored usable refresh credential; QuotePoint also requests removal of the connected app from HubSpot when the provider supports that flow.
Usage, device, and security information
We may process technical and operational information such as timestamps, application events, browser or device information, IP-derived security context, audit events, error details, and usage records when needed to operate, secure, troubleshoot, and understand the service. We do not ask customers to send passwords, API keys, OAuth authorization codes, refresh tokens, or encryption keys through support channels.
Billing information
Subscription checkout and payment processing may be provided by a payment processor. QuotePoint may receive customer, subscription, billing-status, and transaction metadata needed to administer the subscription. Full payment-card details are handled by the payment processor rather than stored in QuotePoint application records.
How information is used
We use information to provide and administer QuotePoint; authenticate users; enforce workspace, role, organization, channel, and subscription boundaries; operate connected integrations; create requested quotes and documents; provide support; prevent abuse; troubleshoot reliability and security issues; manage billing; and comply with legal obligations. We do not sell personal information.
Service providers and third parties
Information may be processed by infrastructure, hosting, authentication, communications, analytics, payment, and other service providers acting on QuotePoint’s behalf. When a customer enables a third-party integration such as HubSpot, data is also exchanged with that provider according to the customer’s authorization and the provider’s own terms and privacy practices.
Retention, export, and deletion
We retain information for as long as reasonably necessary to provide the service, maintain business and security records, meet legal obligations, and resolve disputes. Workspace administrators may use available export capabilities and may contact support about account or workspace deletion. Disconnecting an integration stops future integration activity but does not automatically erase historical QuotePoint records or data already written to a third-party system.
Security practices
QuotePoint uses technical and organizational safeguards appropriate to the service, including HTTPS transport, permission-based access, workspace isolation controls, audit-oriented workflows, and encrypted storage for supported integration refresh credentials. Security practices evolve with the service. QuotePoint does not claim a certification, compliance designation, or security guarantee unless it has been independently established and documented.
Your choices and requests
Depending on your relationship with QuotePoint and applicable law, you may request access to, correction of, or deletion of personal information associated with your account or support inquiry. Workspace data requests should generally be made by an authorized workspace administrator. Contact support@quotepoint.net for privacy requests or questions.
Changes to this notice
We may update this notice as QuotePoint, its integrations, or legal requirements change. Material updates will be reflected by revising the effective date on this page.