Servstead, LLC

User Consent & Authorization Policy

How Servstead obtains and records user consent for account registration, integrations, and financial data access.

Version
1.0
Effective date
July 3, 2026
Policy owner
Servstead, LLC — Information Security Lead
Review cadence
At least annually

Document owner: Servstead, LLC. Version 1.0. Effective date: July 3, 2026.

1. Account registration

New users must affirmatively accept the Terms of Service and Privacy Policy before creating an account.

Acceptance is recorded as part of the registration flow.

2. Plaid bank connection

Before Plaid Link is displayed, the account owner must:

• Be authenticated with an active session;

• Be a paid subscriber (not in free trial);

• Check an explicit consent box authorizing Servstead to access read-only transaction history via Plaid for expense matching.

Consent timestamp is stored with the connection record when the bank is linked.

3. Scope of Plaid authorization

Authorization is limited to read-only transaction data for accounts the user selects in Plaid Link.

Servstead does not use Plaid data for credit decisions, lending, or resale.

Servstead's use of information received from Plaid APIs adheres to the Plaid End User Privacy Policy.

4. Withdrawing consent

Users may disconnect Plaid in Business Hub settings or request disconnection at servstead@gmail.com.

Disconnecting stops future sync and triggers deletion per our Data Retention & Deletion Policy.

5. Customer portal data

Business account owners are responsible for obtaining consent from their end customers before collecting personal data in Servstead or sharing portal links.

6. Related documents

Privacy Policy: https://servstead.com/policies/privacy

Data Retention & Deletion: https://servstead.com/policies/data-retention

7. Contact

Consent and privacy questions: servstead@gmail.com