Privacy policy
BLD Ops is a private, single-user application built and run by Backlight Design LLC ("we", "us"), a lighting design business in Chicago, Illinois. Its only user is the company's owner. This policy says what the app reads, what it keeps, and what it never does.
What the app is for
The app helps its owner run his own shows: it shows his schedule, hours, travel, files and invoices in one place. It is not offered to the public, has no sign-up, and holds no one's data but the owner's own business records and the business correspondence he already has.
What it reads, and from where
- Airtable: the owner's own business base (shows, clients, contacts, show days, notes). This is the record of truth; the app reads it and writes only what the owner taps.
- Google Workspace (the owner's own account, by his sign-in): calendar events that are meetings, email and attachments relevant to his shows, and files in his Drive show folders. Read with Google's read-only permissions.
- QuickBooks Online (the owner's own company, by his sign-in through Intuit): customers, products and services, terms, the company name, and invoices. The app builds invoice drafts from his hours and saves them to QuickBooks as drafts, and reads invoices back to show their status. The app never sends an invoice, never records a payment, and never changes a customer, product or service.
- Flight and map services: public flight status and travel-time lookups for his own trips.
How it is processed
Some email text and documents the owner has chosen to have read are summarised by a language model (Anthropic's Claude API) so the app can tell him what needs his attention. Only the text needed for that is sent; it is not used to train anything, and it is not kept by the app beyond the summary shown to him.
What is stored
- Connection tokens for Google and QuickBooks, encrypted before they are stored, in Cloudflare's database service (D1) in the United States. They let the app read on the owner's behalf until he disconnects.
- Short-lived caches of what was read (a few minutes to a day), the owner's unsaved edits, and small bookkeeping (which invoice in QuickBooks belongs to which show, its number, total and status).
- Nothing from QuickBooks beyond invoice identifiers, numbers, totals and status is kept once a page has been shown; the invoices themselves stay in QuickBooks.
What we never do
- We never sell, rent, share, or trade any data. There is no advertising and no analytics on anyone.
- No one but the owner can sign in. The app sits behind Cloudflare Access, allowing one Google account.
- The app never sends an invoice or an email on its own, never moves money, never deletes anything in QuickBooks, Google or Airtable.
Who else sees the data
Only the services that make the app run, each under its own terms: Cloudflare (hosting and storage, United States), Intuit (QuickBooks Online), Google (Workspace), Airtable, Anthropic (the Claude API), and the flight and map providers named above. None of them receives more than the request needs.
Disconnecting and deleting
The owner can disconnect QuickBooks at any time in the app (More → QuickBooks → Disconnect) or in QuickBooks itself (the gear icon → Apps → BLD Ops → Disconnect). Disconnecting revokes the token with Intuit and deletes it from the app; cached data ages out within a day. Google can be disconnected the same way from the app or from the Google account's security page. Everything the app stores can be deleted on request to the address below. See how to disconnect.
Changes
If this policy changes, the new text appears here with a new effective date.
Contact
Backlight Design LLC · brandon@backlight.design