This privacy policy covers the Odyssey investor reporting dashboard at dashboard.odysseyfunctionalenergy.com (the “Dashboard”), operated by Odyssey Wellness LLC (“Odyssey”, “we”). The Dashboard is a private application for Odyssey’s investors and company administrators. It is separate from the Odyssey online store, which has its own privacy policy.
Information we collect
- Investor account details — name and email address, provided by Odyssey when an investor is invited, plus the investor’s position (invested amount and ownership percentage). Access codes are stored only as salted hashes, never in plain text.
- Company financial data from QuickBooks Online — with an administrator’s explicit authorization through Intuit’s OAuth consent flow, the Dashboard retrieves aggregate financial reports (revenue, cost of goods sold, operating expenses, net income, and cash balances) from Odyssey’s QuickBooks Online account. Only company-level aggregates are stored in published snapshots; account-level and transaction-level detail is not shown to investors.
- Session data — an encrypted, HTTP-only session cookie that keeps you signed in. The Dashboard uses no advertising, analytics, or third-party tracking cookies.
How we use it
Financial data is used solely to prepare and display monthly reporting snapshots that Odyssey administrators review and publish to investors. Investor details are used solely to authenticate investors and show each investor their own position. Each investor sees only published snapshots and their own position — never live books, account-level detail, or any other investor’s information. We do not sell personal information, and we do not use Dashboard data for marketing.
Where it lives and who can see it
The Dashboard is hosted on Vercel, and its data is stored with Supabase (managed PostgreSQL). QuickBooks data is retrieved from Intuit under your company’s agreement with Intuit. These service providers process data on our behalf and are not permitted to use it for their own purposes. We do not share Dashboard data with anyone else except as required by law.
QuickBooks connection and disconnection
The QuickBooks connection is authorized by a company administrator and can be disconnected at any time from the Dashboard’s admin page or from Intuit’s connected-apps settings. Disconnecting deletes the stored OAuth tokens, ending the Dashboard’s access to QuickBooks. Previously published snapshots remain available to investors until removed by an administrator.
Retention and security
We retain investor details and published snapshots for as long as the reporting relationship lasts, and remove them on request or when no longer needed. All traffic is encrypted in transit over HTTPS, sessions are encrypted at rest, and administrative access is password-protected.
Your rights and contact
Depending on where you live, you may have rights to access, correct, or delete your personal information. To exercise them, or for any questions about this policy, contact Odyssey at Admin@odysseyelixir.com. We may update this policy from time to time; the date above reflects the latest revision.