Quickstart
Overview Quickstart Docs Support Privacy Terms Quickstart

The short version

1. Introduction and scope

Innova Apps ("we," "our," or "us") publishes Stripe Payout Reconciliation, an add-in for Microsoft Excel that pulls your own Stripe payouts into the Excel grid and ships a template workbook for matching those payouts against your bank statement. This Privacy Policy explains what personal data we process when you use the add-in, the pages under innovaapps.ai/excel-stripe/, and the reconciliation template workbook.

This policy stands on its own. It is separate from our Terms of Service, which govern your use of the add-in.

For the purposes of the EU General Data Protection Regulation (GDPR), the data controller is:

Innova Apps Tove Maës vej 1, 1 TH 2500 Valby
Denmark
CVR: 45291154
support@innovaapps.ai

Innova Apps is not affiliated with, endorsed by, or sponsored by Stripe, Inc. "Stripe" is a trademark of Stripe, Inc.

2. Your Stripe key and your Stripe data

This is the part of the add-in most people want to understand first, so we set it out in full.

The key you create

You create a restricted, read-only API key in your own Stripe account (Developers → API keys → Create restricted key) and grant it Balance: Read and Payouts: Read. You can optionally also grant read access to external payout accounts (bank accounts) so the add-in can show bank names next to your payouts. Restricted keys start with rk_live_ or rk_test_; the add-in refuses secret keys (sk_) and publishable keys (pk_) with an explanation.

Where the key is stored

The key is stored only in the add-in's local storage on your device. It is never sent to, stored on, or logged by Innova Apps servers. Some Excel webviews block persistent storage; where that happens, the key works for the current session only and you paste it again next time. The task pane tells you when this is the case.

Where your Stripe data goes

The =STRIPE.PAYOUTS, =STRIPE.PAYOUT_ITEMS and =STRIPE.BALANCE functions call api.stripe.com directly from your machine, using your key. Your payouts, payout items and balances travel between your device and Stripe. They do not pass through Innova Apps servers, and we do not receive, store or log them.

How we check the key is read-only

"Test my key" in the task pane runs four checks and stops at the first failure, each with the exact fix: (1) the key format, (2) that the key is valid and Balance: Read works, (3) that Payouts: Read works, and (4) a write probe that creates and changes nothing in your Stripe account. The probe posts to a payout id that cannot exist. If Stripe answers 403 it refused the write outright, so the key cannot write and the check passes; if it answers 404 it authorised the request and only then failed to find the object, which shows the key carries write permission, and the check fails with instructions for recreating the key read-only.

Saving a key validates its format only, so restricted keys are accepted and secret or publishable keys are refused at that point; a key that can write is not blocked or deleted when the probe flags it. What keeps your Stripe account safe is the add-in itself, which never writes: it only issues read requests for payouts, balance transactions and balances, so it cannot create charges, issue refunds, or move money.

3. What we collect

You need a free Innova Apps add-in account (email and password) to sign in and to carry your plan status. That account, and the counters behind the usage display, are the only things we hold on our own systems.

Everything Innova Apps stores about you, and why.
What we store Why we store it Where it is stored
Your account email address To identify your account, sign you in, and reach you about your account. Firebase Authentication
A hashed password To sign you in. We do not hold your password in readable form. Firebase Authentication
An account document: a copy of your email, your plan (Free or Pro) and the date the account was created To carry your plan into the add-in when you sign in, and to tie your usage counters and any billing details to your account. Cloud Firestore
Monthly usage counters: how many pulls and how many rows To show your usage in the task pane, and as a signal to us of how the add-in is used. The counters do not gate anything. Cloud Firestore
For Pro subscribers: a Stripe customer id and the subscription status To know whether your Pro subscription is active and to let you manage billing. Held in the account document above. Cloud Firestore

The reconciliation template workbook is a plain .xlsx file. You can download it without an add-in account, and downloading it does not create one.

4. What we never collect

5. How we use your information

Under the GDPR, we process your account email, hashed password and usage counters to perform the agreement between you and us (Article 6(1)(b)), and we process Pro billing identifiers to perform that agreement and to meet our accounting obligations (Articles 6(1)(b) and 6(1)(c)). We do not use your data for advertising, profiling, or to train AI models.

6. Where data is stored

The account data and usage counters described above are hosted on Google Cloud, using Firebase Authentication, Cloud Firestore and Cloud Functions, in the United States. If you are in the EU or EEA, this means your account email, hashed password, usage counters and any Pro billing identifiers are transferred to and stored in the United States.

Your Stripe key and your Stripe data are not part of this. They are not stored on our infrastructure at all; see section 2.

7. Sub-processors

Two service providers process data on our behalf so the add-in can work:

Note that Stripe appears here in two unrelated roles. The Stripe account you connect with a restricted key is your own, and we are not a processor of it; and Stripe separately handles billing for the Pro plan on our account. We do not share, sell or rent your data to advertisers, ad networks, data brokers, information resellers, or any other third party for their own purposes.

8. Retention and deletion

9. Your rights

If you are in the EU or EEA, the GDPR gives you the following rights over the personal data we hold:

Write to support@innovaapps.ai to exercise any of these rights. You also have the right to complain to a supervisory authority. In Denmark, where Innova Apps is established, that authority is the Danish Data Protection Agency (Datatilsynet).

10. Children

Stripe Payout Reconciliation is a business tool for people reconciling their own Stripe payouts. It is not directed at children under 16, and we do not knowingly collect personal data from anyone under 16. If you believe a child has created an account, write to support@innovaapps.ai and we will delete it.

11. Changes to this policy

If we change this policy, we publish the updated version at innovaapps.ai/excel-stripe/privacy with a new effective date at the top. Material changes to how we handle your data will also be communicated to the email address on your account.

12. Contact

For any question about this Privacy Policy, about the data we hold, or to request deletion:

Innova Apps Tove Maës vej 1, 1 TH 2500 Valby
Denmark
CVR: 45291154
Email: support@innovaapps.ai
Support: innovaapps.ai/excel-stripe/support