Effective date: June 1, 2026 · Last updated: June 1, 2026
This Privacy Policy explains how AgenticBooks (“AgenticBooks,” “we,” “us,” or “our”) collects, uses, shares, and protects information when you use our financial-data infrastructure and bookkeeping service available at app.agenticbooks.ai, our APIs, and our MCP (Model Context Protocol) server (together, the “Service”).
AgenticBooks captures financial events from connected sources, classifies them into double-entry accounting records, and exposes the results to you through a dashboard and to your AI agents through an agent-readable interface. Because the Service handles financial and accounting data, we treat privacy and security as first-class features rather than afterthoughts.
AgenticBooks is operated by First Field GmbH, a Swiss GmbH registered in the Commercial Register under CHE-152.500.782, with its registered office in Zug, Switzerland.
For the purposes of the Swiss FADP and European data-protection law:
If you have any questions, contact us via the Contact page.
This Policy applies to everyone who interacts with the Service, including:
It does not cover third-party services you connect to AgenticBooks (such as your bank or payment provider), which are governed by their own privacy policies.
When you sign up and sign in, our authentication provider (Clerk) handles your credentials and gives us identifiers such as your name, email address, organization, and authentication metadata. We do not store your sign-in password — that is held by Clerk.
The core of the Service is ingesting financial events from the sources you connect.
From these sources we receive and store financial event data such as transactions, charges, payouts, transfers, currency conversions, account balances, counterparty names and references, amounts, currencies, timestamps, and related metadata. This data may include personal data of your counterparties (for example, the name of an individual you paid or received money from) where it appears in the underlying records.
We retain the verbatim raw payload of each source event in an append-only store, alongside the normalized and classified accounting records we derive from it.
To connect your sources, you provide credentials — API keys, OAuth tokens, webhook secrets, and (for certain banking integrations) signing keys. These are encrypted at rest in a dedicated AES-256-GCM credential vault and are never logged or placed in URLs.
We also issue you scoped API keys so your agents can query your books. These keys are organization-scoped, stored only as bcrypt hashes, and shown to you only once at creation.
This includes the chart of accounts, your confirmed home (base) currency, classification rules and counterparty mappings, the review/approval queue, manual journal entries, and period-close records that you or your agents create.
We collect technical data generated when you use the Service — IP address, browser/device information, pages and features used, API and MCP request metadata, and error/diagnostic logs — to operate, secure, and improve the Service.
When you contact support or correspond with us, we keep those communications and any information you choose to share.
We charge a flat monthly fee per organization and record subscription state (plan, billing period, payment status) to administer it. Payment-card processing is handled by our payment provider; we do not store full card numbers.
We do not intentionally collect special categories of personal data, and we ask that you do not place such data into fields that are not designed for it.
We use the information above to:
Where the GDPR or the Swiss FADP applies, we rely on:
For source data we process on your behalf, our legal basis is our data-processing agreement and your instructions as the controller.
A defining feature of AgenticBooks is that your books are agent-readable: AI agents you authorize can query them through our MCP server and API. You should understand:
ab_ API key or an OAuth connection authorized through Clerk. Each credential is scoped to your organization, and the server rejects any request that does not match the credential’s organization.You can revoke an agent’s access at any time by deleting the relevant API key or disconnecting the OAuth connection.
We do not sell your personal data. We share information only as described here:
We use trusted infrastructure providers to run the Service, each bound by contract to protect your data and process it only on our instructions. Our current sub-processors:
A note on data location, stated plainly: your documents and books are stored in the EU. Document extraction is processing by Anthropic, a US provider, under contractual safeguards — storage residency and processing location are different promises, and we would rather say so here than let the word "EU" imply both. If your organisation contractually requires EU-resident extraction, contact us.
At your direction, we exchange data with the third-party services you connect — your payment and banking providers for ingestion, and external ledgers for outbound sync where you enable it. Each of these operates under its own terms and privacy policy.
We may disclose information where required by law, regulation, legal process, or governmental request, or where necessary to protect the rights, safety, and security of AgenticBooks, our users, or the public.
If AgenticBooks is involved in a merger, acquisition, financing, or sale of assets, your information may be transferred as part of that transaction, subject to this Policy.
AgenticBooks is a Swiss company, and our primary database is hosted in the EU (Frankfurt). Switzerland is recognized by the EU as providing an adequate level of data protection, and the EEA is recognized as adequate under Swiss law, so data flows between Switzerland and the EEA do not require additional transfer safeguards. Depending on the providers listed above and the agents and integrations you connect, your data may also be processed in or transferred to other countries outside Switzerland and the EEA.
Where we transfer personal data to a country without an adequate level of protection, we rely on appropriate safeguards — such as the Standard Contractual Clauses recognized by the Swiss Federal Council and the European Commission (with the Swiss addendum where required), an applicable adequacy decision, or another lawful transfer mechanism — to protect your data.
We retain personal data for as long as your account is active and as needed to provide the Service, and thereafter as required to meet legal, accounting, and tax obligations, resolve disputes, and enforce our agreements.
Please note an important design characteristic of the Service. To guarantee the integrity and auditability of your books, certain records are append-only and immutable:
raw_events) and the audit trail (audit_trail) are never modified or deleted. Corrections to classified accounting entries are made by reversing and re-stamping entries — never by deletion.As a result, deletion of individual financial records is generally not possible without compromising the integrity of the accounting record and the legal obligations that depend on it. When you exercise deletion rights or close your account, we will, consistent with applicable law and our obligations as a processor to you as controller, take appropriate steps such as terminating access, de-provisioning credentials, restricting processing, and deleting or anonymizing data that is not subject to a retention obligation or required for an immutable audit record. We will explain what can and cannot be deleted in your specific case.
We apply technical and organizational measures appropriate to the sensitivity of financial data, including:
No system is perfectly secure, but we work continuously to protect your data and to respond appropriately to any incident. We will notify affected users and authorities of personal-data breaches where required by law.
Depending on where you are and our role in processing, you may have rights to:
Where AgenticBooks processes data on your behalf (as a processor) and a request comes from one of your counterparties or end users, we will generally direct that request to you as the controller and assist you in responding.
To exercise your rights, contact us via the Contact page. We may need to verify your identity, and we will respond within the timeframes required by law.
Our website and dashboard use cookies and similar technologies that are strictly necessary to provide the Service (for example, authentication and session management) and, where applicable, optional analytics. Where required, we ask for your consent to non-essential cookies and let you manage your preferences.
The Service is a business tool intended for use by organizations and adults. It is not directed to children, and we do not knowingly collect personal data from anyone under the age of 16. If you believe a child has provided us personal data, contact us and we will take appropriate steps to delete it.
We may update this Policy from time to time. When we make material changes, we will update the “Last updated” date above and, where appropriate, notify you through the Service or by email. Your continued use of the Service after an update means you accept the revised Policy.
If you have questions, requests, or concerns about this Policy or your personal data:
First Field GmbH
Contact page