Privacy
What is stored
- Your Wave user ID.
- Your Wave OAuth access and refresh tokens, encrypted at the application layer before they reach storage.
- Whether you granted write access.
What is not stored
- Your Wave password. This connector never sees it.
- Your accounting data. Invoices, customers, and transactions are fetched from Wave for a request and returned to your MCP client; nothing is retained afterwards.
- Analytics, tracking, or request logs containing your business data.
Deleting your data
Use delete a connection to remove the stored tokens, then revoke the application in your Wave account settings.