Legal  /  Privacy

Privacy Policy

Plain English on what we collect, why we collect it, how long we keep it, and the rights you have over it.


This policy explains how Magicite ("we", "us") handles personal and organizational data when you visit this site, run a trial, subscribe, or use our add-ons for Microsoft Dynamics 365 Finance & Operations. We keep collection to what we need to run the service, and we do not sell your data.

Who we are

Magicite provides focused add-ons for Dynamics 365 Finance & Operations. For the purposes of this policy, a customer corresponds to a Microsoft Entra tenant. When someone from your organization signs in, we associate the account with your tenant.

What we collect

  • Microsoft sign-in identity and tenant. When you sign in with Microsoft, we receive the identity your Entra tenant releases to us: typically your name, work email or user principal name, an object identifier, and your tenant identifier. We use this to recognize you and to link your account to your organization.
  • Contact and consent details. Information you provide when starting a trial, placing an order, or contacting us, such as billing and purchase-order contact details. When you place an order we record that you accepted this policy and our Terms of Service, the version number shown at the top of this page, and the time we received that acceptance.
  • Environment identifiers. Identifiers for the Dynamics 365 Finance & Operations environments you connect (for example, environment names or IDs and whether an environment is production or non-production), so we can issue and validate licenses.
  • PII-free telemetry from the add-ons. Our add-ons phone home to validate their license and send operational telemetry: counts, versions, environment identifiers, and health signals. This telemetry is designed to exclude personal data and your business records; it tells us the software is licensed and working, not what your data contains.
  • Basic site data. Standard request and log data (such as IP address and browser type) needed to operate the site securely.

Why we collect it

  • To provide the service: authenticate you, provision trials, issue and validate licenses, and deliver signed packages.
  • To administer subscriptions and invoice you (billing is manual, by purchase order or wire, with no card processor).
  • To keep the software secure and reliable, and to understand version adoption and health through PII-free telemetry.
  • To record the consent and policy version you agreed to, and to meet our legal, accounting, and audit obligations.

How long we keep it

We retain account, subscription, and consent records for as long as your organization has a relationship with us and for a reasonable period afterward to meet legal, accounting, and audit obligations. Telemetry and operational logs are kept only as long as needed for security and service operation, then deleted or aggregated. Our working defaults, which match what the systems actually enforce: account, subscription, and consent records are kept for the life of the relationship plus seven years to satisfy audit and tax obligations; raw request logs are kept for 30 days; raw license-validation telemetry is kept for 180 days, after which only the latest reported state per environment is retained. Proposed defaults, subject to confirmation by legal counsel.

Who we share it with (sub-processors)

We use a small set of sub-processors to run the service. The primary sub-processor is Microsoft Azure, which provides hosting, identity (Microsoft Entra), and infrastructure. We share data with sub-processors only to the extent needed to deliver the service, and we do not sell personal data. A current list of sub-processors is available on request.

Your rights

Depending on where you are located, you may have the right to access, correct, export, or delete your personal data, to object to or restrict certain processing, and to withdraw consent. To exercise any of these rights, contact us using the details below and we will respond in line with applicable law.

Security

We host on Microsoft Azure and encrypt data in transit and at rest, isolate customer data by tenant, and apply least-privilege access. See our Security & DPA overview for more; our Data Processing Agreement is published at magicite.tech/dpa.

Changes to this policy

We may update this policy from time to time. When we make material changes we will revise the version number and the last-updated date shown above, so you can always tell which version is current. Your account records which policy version you consented to, so a later revision does not change what you agreed to.

Contact us

Questions about this policy or your data? Email privacy@magicite.tech.

An unhandled error has occurred. Reload ๐Ÿ—™

Rejoining the server...

Rejoin failed... trying again in seconds.

Failed to rejoin.
Please retry or reload the page.

The session has been paused by the server.

Failed to resume the session.
Please retry or reload the page.