1. Who we are
Proproval, operated by Mark Anthony Studios Incorporated, provides business software for clients, quotes and proposals, approvals, invoices and payment links. In this policy, “we” and “us” refer to Mark Anthony Studios Incorporated. For privacy or general support, contact [email protected] or visit Proproval support.
This policy covers our website, product and connected integration. Sellers choose the business and client information they put in Proproval and are responsible for having authority to use it. If your information appears in a seller's document, the seller also has responsibilities for its own use of that information. Initial intended plugin availability is Canada and the United States.
2. Information we handle
Account information includes your name, email, business identity, profile, contact details, subscription status and document defaults such as currency, tax and payment preferences. Authentication and connection systems handle sign-in, session, grant and security information.
Your workspace can contain client names, companies, email addresses, phone numbers and addresses; catalog services and prices; supplied files or website content; and proposal/invoice descriptions, line items, amounts, discounts, tax, timing, locations and terms. Free-text fields and uploads can contain personal information. Provide only what you are authorized to use and need for the task.
We handle document versions, publication links, approval/viewing facts, invoice balances, payment and reconciliation information, connected-payment-account status, support requests and technical information needed to operate and protect the service. Necessary browser/session storage supports authentication and workspace use. Operational and document-activity information supports reliability, security and workflow status; this policy does not promise that every infrastructure record is content-free.
3. How we use information
We use information to authenticate accounts, separate sellers' workspaces, maintain business records and versions, calculate document totals, produce requested proposal narrative and PDFs, create approved public links, support client approval/payment workflows, manage product billing and communications, and respond to support/privacy requests. Necessary technical information also supports abuse prevention, safe retries, reconciliation.
Retained financial information may be used for accounting, tax, payment reconciliation, refunds, disputes, chargebacks, legal/compliance obligations and fraud/security investigation where applicable.
4. Connecting to ChatGPT
To connect, sign into Proproval through its hosted sign-in flow and review the requested scopes before consent. The connection is seller-specific. Granted scopes limit the supported account, client, catalog, proposal and invoice actions. Do not put passwords, verification codes, bank details or OAuth credentials in chat.
The host sends tool inputs to Proproval and receives results needed for your request. These can include selected business defaults, client references/names and expressly changed contact fields, services/prices, proposal/invoice details and status, project context, activity, narrative, private PDFs and requested publication or delivery links. Lists are bounded selections, not a complete contact export. Document and delivery results may contain selected customer information: for example, a prepared proposal email can include the intended recipient's email address. References and freshness values help select the right record and support safe retries.
OAuth grant information supports authentication and permission checks. Upstream credential properties are encrypted in our connection store. Credentials are handled by the host's OAuth protocol, not returned as business-tool results to the model. Disconnecting is different from deleting your Proproval account.
5. AI and document rendering
When you request proposal narrative generation, relevant business, proposal and task context is sent to our configured OpenAI API service. Generated text is checked and stored in your proposal. Proproval's financial domain remains the source of document totals; AI prose is not a separate pricing or payment calculator. Broader product import/extraction features can process supplied files or website content through configured AI services; they are not general-purpose upload tools in this MCP tool set.
PDF generation uses Cloudflare Browser Rendering to process the selected document's renderable content. A private PDF can contain business/client information and be returned to the connected conversation. Private rendering does not itself publish a client link or count a client view.
OpenAI's processing as the ChatGPT host is separate from our use of the OpenAI API. Applicable provider terms and account settings govern those services. We do not promise a particular training setting, Zero Data Retention, Modified Abuse Monitoring, retention period, regional storage or special contractual control unless separately verified and disclosed.
6. Publication, handoffs and payments
Confirmed publication creates a client-facing proposal or invoice link. Treat these links as access-bearing information and share them only with intended recipients. Published document history is preserved; corrections can require a private revision and later publication. Revising an exposed unpaid invoice can stop further payment initiation on its old version. Voiding an eligible unpaid invoice preserves history, blocks further payment initiation through its Proproval link and can expire pending local payment attempts. Successful recorded payments and other paid indicators prevent voiding. Voiding does not refund a payment or directly cancel a Stripe session.
Plugin email and WhatsApp tools prepare short-lived handoffs. They do not send messages. You review and send using your selected service, which then receives the communication information. Separate Proproval product workflows can send transactional or service email through Resend.
Stripe supports seller onboarding and separate customer-hosted payment flows. An expressly requested setup link can create or resume Stripe onboarding; identity/bank information is entered on Stripe. Publishing an invoice link does not charge a card in ChatGPT. Customers decide whether to pay through the applicable Proproval/Stripe flow outside the conversation. The plugin does not directly charge, refund, transfer money, record manual payments or approve proposals for customers. Proproval handles necessary payment status and reconciliation information; it does not store full card numbers.
7. Providers and other recipients
Our established infrastructure includes Supabase for authentication/database services; Cloudflare for hosting, connection/security state, delivery links and rendering; OpenAI for configured AI processing; Stripe for product billing, seller setup and payments; and Resend for product email. User-selected email providers or WhatsApp handle communications when users proceed. Broader product Google connections, where used, are separate integrations and do not grant ChatGPT unrestricted Google access.
Providers receive information needed for their roles. Some records and obligations exist independently of Proproval, especially payments and communications. Processing can involve locations outside your own; we do not promise a particular storage region. Relevant disclosures for legal/compliance obligations or fraud/security investigation are limited to the applicable approved purpose. No enhanced account-specific provider controls are asserted here.
8. Disconnecting and reconnecting
Use your connected host's connection settings to disconnect Proproval. Proproval supports OAuth grant revocation: when the host submits a grant revocation request, that grant can no longer authorize new tool access. Host behavior can differ; contact support if you need help confirming that access was revoked. An eligible account can reconnect through sign-in and fresh consent. New consent does not revive a revoked grant.
Disconnecting does not delete your Proproval account, cancel a subscription or reverse documents, public links, messages or payments already created. An operation already authorized and executing may finish.
9. Account deletion
You can request account deletion from Proproval Settings after signing in and completing the explicit DELETE confirmation. There is no MCP account-deletion tool. Read the result before closing the page or retrying. If a request fails or completion is unclear, contact [email protected] so we can investigate; do not assume that every record was removed.
Account deletion and removal of every stored copy are different. Financial records, command receipts, security records and provider-held copies can have separate lifecycles and may require support review. Do not rely on account deletion to automatically cancel billing, remove independent provider records or revoke every separately held connection. Contact support about these items when requesting deletion.
Deleting your Proproval account does not delete copies in ChatGPT conversations or other saved OpenAI locations. Manage those through OpenAI's applicable history, file and privacy controls. Downloaded documents and copies sent to recipients are separate too. Proproval does not offer account undelete or restoration.
10. Retention
We retain active workspace information to provide the service and preserve document and financial history. Financial and reconciliation records may be needed for accounting, tax, refunds, disputes, chargebacks, legal obligations and fraud or security investigations. Security and command-retry records support access restrictions, safe retries and reliable operation.
Retention depends on the record, its purpose, unresolved financial matters and applicable obligations. Not every record is subject to an automated time-based deletion schedule. Contact support for a review of the records associated with your account and an explanation of any information that must remain.
Provider and backup copies may remain after account deletion under the systems and arrangements in use. We do not promise immediate physical erasure from every copy, a particular unverified provider retention window. Independent provider records follow their applicable lifecycle.
11. Security and choices
We use authenticated seller access, granted scopes, ownership checks, database isolation and restricted administrative paths. No system guarantees absolute security. You can review/update supported workspace information, disconnect an integration, request deletion in Settings or contact support about personal information. Necessary storage supports sign-in and workspace operation. Contact support with questions about the information used by the website.
12. Privacy requests
Contact [email protected] about access, correction or deletion, or to ask which other privacy rights apply to your circumstances. We may need proportionate information to verify your identity or authority, especially for information a seller holds about clients. Applicable obligations and unresolved financial matters may limit immediate erasure; we will explain the response. Do not email passwords, full card details or OAuth tokens. The service is intended for business workflows.
13. Updates and contact
Effective date: September 7, 2026. Questions about this policy or personal information: [email protected] or Proproval support. Operator: Proproval, operated by Mark Anthony Studios Incorporated.