Privacy Policy
Genesis Financial provides commercial finance brokerage and financial reporting services to businesses. To do that we handle financial information about you and your business. This page explains what we collect, where it goes, and what we do and do not do with it.
What we collect
Depending on which parts of the service you use:
- Bank account and transaction data — account names, balances, and transaction history from the bank accounts you connect, retrieved read-only through Plaid.
- Accounting data — your chart of accounts, transactions, invoices, bills, vendors, and profit-and-loss figures from QuickBooks Online, if you connect it.
- Point-of-sale and order data — sales, orders, customer balances, and job records from the business systems you use, where you have asked us to bring that data into your portal.
- Documents you upload — statements, financials, and other files you send us in the course of an application or engagement.
- Contact and account information — your name, email address, phone number, business details, and the records of your applications and communications with us.
Your bank credentials
Genesis Financial never sees or stores your online banking username or password. When you connect a bank account you enter your credentials directly with Plaid, our bank-connection provider. Plaid returns an access token to us that permits read-only retrieval of account and transaction data. That token is encrypted before we store it, and it cannot be used to move money.
Plaid handles your credentials under its own privacy policy, which we encourage you to read: Plaid End User Privacy Policy.
Read-only access, and no money movement
Our bank connection requests read access to balances and transactions only. We do not request, and the connection cannot perform, transfers or payments. Connecting an account does not give Genesis Financial the ability to move your money.
How we use it
- To operate your portal — cash position, spend, budgets, forecasts, and reports.
- To evaluate and place financing applications with lenders, where you have asked us to.
- To communicate with you about your account, application, or engagement.
- To keep the service secure, diagnose faults, and meet our legal and regulatory obligations.
We do not sell your data
Genesis Financial does not sell your personal or financial information, and does not share it for anyone else’s advertising. We share it only as described on this page.
Who we share it with
We use the following service providers to run the platform. They process data on our behalf and are permitted to use it only to provide their service to us:
- Supabase — database and authentication.
- Vercel — application hosting.
- Plaid — bank account connections.
- Intuit — QuickBooks Online accounting data.
- Anthropic — AI processing. Some portal features send financial data to the Anthropic API to generate summaries, analysis, and recommendations.
- Resend — sending email.
- Sentry — error monitoring. Our configuration disables the collection of personal data and drops request bodies before an error report is sent, so financial records are not included in it.
We also share information with lenders and funding partners when you ask us to submit a financing application on your behalf, and with professional advisers, or where we are required to by law.
Financial information and the law
Non-public personal financial information is handled in accordance with applicable financial privacy law, including the Gramm-Leach-Bliley Act (GLBA) where it applies to our services. We limit access to your information to your own authorized users and to Genesis Financial personnel who need it to do their job.
Security
Data is encrypted in transit and at rest. Access tokens for connected services are encrypted before storage. Access to client portals is restricted to that client’s authorized users and requires multi-factor authentication. We maintain a written Security and Vulnerability Management Policy covering how we detect, prioritize, and remediate vulnerabilities, which we can share on request.
No system is perfectly secure, and we do not claim otherwise. If you believe your account has been compromised, contact us immediately at nicholas@thegenesisfinancial.com.
Cookies
We use cookies that are necessary to keep you securely signed in, and local browser storage to remember that you have seen our cookie notice. We do not use advertising cookies or third-party tracking cookies.
We send you email about your account, application, and engagement. If we send you marketing email, every message includes a way to unsubscribe, and we honor unsubscribe requests as required by the CAN-SPAM Act. Unsubscribing from marketing does not stop essential messages about your account.
How long we keep it
We keep your information for as long as your account or engagement is active, and afterwards for as long as we need it to meet legal, recordkeeping, and regulatory obligations that apply to financial services. Specific retention periods are being set with counsel and will be stated here once confirmed.
Disconnecting and deleting
You can disconnect a bank or accounting connection at any time from your portal. Disconnecting revokes our access token with the provider and removes the data we pulled from that connection. You can also ask us to provide a copy of your data, correct it, or delete it, by emailing nicholas@thegenesisfinancial.com. Some records we are legally required to retain cannot be deleted on request; we will tell you if that applies.
Children
This is a service for businesses. It is not directed at children, and we do not knowingly collect information from anyone under 18.
Changes
We will update this page when our practices change, and will revise the “last updated” date at the top. This version is dated 2026-08-31 and is an interim draft pending review by counsel.
Questions about this page, your data, or a request to access or delete it: nicholas@thegenesisfinancial.com
Privacy Policy·Terms of Service