This article explains how Aiwyn securely integrates with QuickBooks Online to maintain ongoing, read-only access to the data required for accurate reporting and processing.
Creating A QBO User For Aiwyn Access
In order for Aiwyn to have the necessary ongoing read only access to data maintained in your Quickbooks Online (QBO) system, a dedicated user must be provided to Aiwyn in order to allow the API connection to be established with our Extract, Transform, and Load (ETL) service provider.
- Add a dedicated user to your QuickBooks Online (QBO) account specifically for Aiwyn.
- Share the login credentials with Aiwyn using a secure method, such as encrypted email, a secure file-sharing solution, or a scheduled screenshare with an Aiwyn Network Engineer.
- Confirm the connection once Aiwyn’s ETL service provider has successfully established access.
- The credentials for this dedicated user are not stored by Aiwyn after the connection is confirmed.
- No other Aiwyn employees, contractors, or vendors have access to these credentials.
- The sole purpose of the user is to provide ongoing, read-only API access for data extraction.
Understanding What Data Aiwyn Accesses From QBO
You allow Aiwyn to retrieve only the data required to accurately present information in Aiwyn applications.
The following QBO data objects are accessed through the QBO API and relayed to Aiwyn’s ETL service provider:
- Employees
- Invoices
- Customers
- Contacts
- Payments
- Credits
This data is translated and securely loaded into Aiwyn databases for use in the Client and Firm portals.
Reviewing Aiwyn’s Security And Compliance
You can be confident that your data is handled using audited security controls and industry standards.
- Aiwyn’s ETL service provider is SOC 2 compliant and undergoes annual audits.
- Aiwyn is also SOC 2 compliant and completes an annual independent audit.
- Audit results are available upon request by emailing support@aiwyn.ai.
An independent auditor has evaluated Aiwyn’s product, infrastructure, and policies and verified that they meet or exceed required security and data protection controls.