Privacy Policy for Stripe Payout Reconciliation
Effective date: August 16, 2026
The short version
- Your restricted Stripe key is stored only on your device. It is never sent to, stored on, or logged by Innova Apps servers.
- Your Stripe data (payouts, payout items and balances) never reaches Innova Apps servers either. The
=STRIPE.*functions callapi.stripe.comdirectly from your machine. - We never see the contents of your spreadsheets.
- What we do store is your account email and a hashed password, an account document holding your plan, monthly usage counters, and, if you subscribe to Pro, billing identifiers from our own Stripe account.
1. Introduction and scope
Innova Apps ("we," "our," or "us") publishes Stripe Payout Reconciliation, an add-in for Microsoft Excel that pulls your own Stripe payouts into the Excel grid and ships a template workbook for matching those payouts against your bank statement. This Privacy Policy explains what personal data we process when you use the add-in, the pages under innovaapps.ai/excel-stripe/, and the reconciliation template workbook.
This policy stands on its own. It is separate from our Terms of Service, which govern your use of the add-in.
For the purposes of the EU General Data Protection Regulation (GDPR), the data controller is:
Innova Apps Tove Maës vej 1, 1 TH 2500 ValbyDenmark
CVR: 45291154
support@innovaapps.ai
Innova Apps is not affiliated with, endorsed by, or sponsored by Stripe, Inc. "Stripe" is a trademark of Stripe, Inc.
2. Your Stripe key and your Stripe data
This is the part of the add-in most people want to understand first, so we set it out in full.
The key you create
You create a restricted, read-only API key in your own Stripe account (Developers → API keys → Create restricted key) and grant it Balance: Read and Payouts: Read. You can optionally also grant read access to external payout accounts (bank accounts) so the add-in can show bank names next to your payouts. Restricted keys start with rk_live_ or rk_test_; the add-in refuses secret keys (sk_) and publishable keys (pk_) with an explanation.
Where the key is stored
The key is stored only in the add-in's local storage on your device. It is never sent to, stored on, or logged by Innova Apps servers. Some Excel webviews block persistent storage; where that happens, the key works for the current session only and you paste it again next time. The task pane tells you when this is the case.
Where your Stripe data goes
The =STRIPE.PAYOUTS, =STRIPE.PAYOUT_ITEMS and =STRIPE.BALANCE functions call api.stripe.com directly from your machine, using your key. Your payouts, payout items and balances travel between your device and Stripe. They do not pass through Innova Apps servers, and we do not receive, store or log them.
How we check the key is read-only
"Test my key" in the task pane runs four checks and stops at the first failure, each with the exact fix: (1) the key format, (2) that the key is valid and Balance: Read works, (3) that Payouts: Read works, and (4) a write probe that creates and changes nothing in your Stripe account. The probe posts to a payout id that cannot exist. If Stripe answers 403 it refused the write outright, so the key cannot write and the check passes; if it answers 404 it authorised the request and only then failed to find the object, which shows the key carries write permission, and the check fails with instructions for recreating the key read-only.
Saving a key validates its format only, so restricted keys are accepted and secret or publishable keys are refused at that point; a key that can write is not blocked or deleted when the probe flags it. What keeps your Stripe account safe is the add-in itself, which never writes: it only issues read requests for payouts, balance transactions and balances, so it cannot create charges, issue refunds, or move money.
3. What we collect
You need a free Innova Apps add-in account (email and password) to sign in and to carry your plan status. That account, and the counters behind the usage display, are the only things we hold on our own systems.
| What we store | Why we store it | Where it is stored |
|---|---|---|
| Your account email address | To identify your account, sign you in, and reach you about your account. | Firebase Authentication |
| A hashed password | To sign you in. We do not hold your password in readable form. | Firebase Authentication |
| An account document: a copy of your email, your plan (Free or Pro) and the date the account was created | To carry your plan into the add-in when you sign in, and to tie your usage counters and any billing details to your account. | Cloud Firestore |
| Monthly usage counters: how many pulls and how many rows | To show your usage in the task pane, and as a signal to us of how the add-in is used. The counters do not gate anything. | Cloud Firestore |
| For Pro subscribers: a Stripe customer id and the subscription status | To know whether your Pro subscription is active and to let you manage billing. Held in the account document above. | Cloud Firestore |
The reconciliation template workbook is a plain .xlsx file. You can download it without an add-in account, and downloading it does not create one.
4. What we never collect
- Your Stripe restricted key. It stays on your device.
- Your payouts, balance transactions and balances. They go straight from your device to Stripe and back.
- The contents of your spreadsheets. The add-in writes results into your workbook; it does not send your workbook, your bank import rows, or any other cell contents to us.
- Your card details. If you subscribe to Pro, payment details are entered with Stripe and never reach Innova Apps servers.
- Advertising trackers and advertising profiles. We do not use ad trackers in the add-in or on these pages, we do not sell or rent your data, and we do not build profiles for advertising.
5. How we use your information
- To sign you in to the add-in and keep you signed in.
- To show your usage in the task pane, and as a signal to us of how the add-in is used. The counters enforce nothing: the limits that come with your plan (the last 30 days and up to 25 rows per call on Free, for payouts and for payout items alike; full history and up to 1,000 rows per call on Pro) are applied by the add-in on your device.
- To manage a Pro subscription: to know whether it is active and to open the billing portal from "Manage billing" in the task pane.
- To answer you when you write to support@innovaapps.ai.
Under the GDPR, we process your account email, hashed password and usage counters to perform the agreement between you and us (Article 6(1)(b)), and we process Pro billing identifiers to perform that agreement and to meet our accounting obligations (Articles 6(1)(b) and 6(1)(c)). We do not use your data for advertising, profiling, or to train AI models.
6. Where data is stored
The account data and usage counters described above are hosted on Google Cloud, using Firebase Authentication, Cloud Firestore and Cloud Functions, in the United States. If you are in the EU or EEA, this means your account email, hashed password, usage counters and any Pro billing identifiers are transferred to and stored in the United States.
Your Stripe key and your Stripe data are not part of this. They are not stored on our infrastructure at all; see section 2.
7. Sub-processors
Two service providers process data on our behalf so the add-in can work:
- Google (Firebase): hosting for the add-in pages and the website, Firebase Authentication for your account, Cloud Firestore for usage counters and plan status, and Cloud Functions. Firebase privacy information
- Stripe: subscription billing for the Pro plan, on Innova Apps' own Stripe account. Stripe collects your payment details directly; card details never reach Innova Apps servers. Stripe privacy policy
Note that Stripe appears here in two unrelated roles. The Stripe account you connect with a restricted key is your own, and we are not a processor of it; and Stripe separately handles billing for the Pro plan on our account. We do not share, sell or rent your data to advertisers, ad networks, data brokers, information resellers, or any other third party for their own purposes.
8. Retention and deletion
- Your account data (email, hashed password, account document, usage counters and any Pro billing identifiers) is kept for as long as your account exists.
- Deleting your account. Email support@innovaapps.ai from the address the account is registered to. We complete deletion within 30 days.
- Your Stripe key. Use "Forget key" in the task pane to remove it from the device. You can also revoke the key in your Stripe account at any time, which stops it working everywhere.
- Your Stripe data. There is nothing for us to delete: payouts, payout items and balances are never stored by us. Whatever the functions returned lives in your own workbook, under your control.
9. Your rights
If you are in the EU or EEA, the GDPR gives you the following rights over the personal data we hold:
- Access: ask what we hold about you and receive a copy.
- Correction: have inaccurate data corrected.
- Erasure: have your data deleted; see section 8.
- Portability: receive your data in a structured, commonly used, machine-readable format.
- Objection: object to our processing of your data.
Write to support@innovaapps.ai to exercise any of these rights. You also have the right to complain to a supervisory authority. In Denmark, where Innova Apps is established, that authority is the Danish Data Protection Agency (Datatilsynet).
10. Children
Stripe Payout Reconciliation is a business tool for people reconciling their own Stripe payouts. It is not directed at children under 16, and we do not knowingly collect personal data from anyone under 16. If you believe a child has created an account, write to support@innovaapps.ai and we will delete it.
11. Changes to this policy
If we change this policy, we publish the updated version at innovaapps.ai/excel-stripe/privacy with a new effective date at the top. Material changes to how we handle your data will also be communicated to the email address on your account.
12. Contact
For any question about this Privacy Policy, about the data we hold, or to request deletion:
Innova Apps Tove Maës vej 1, 1 TH 2500 ValbyDenmark
CVR: 45291154
Email: support@innovaapps.ai
Support: innovaapps.ai/excel-stripe/support