HubSpot Access
Shared Data
This page documents Quarterdeck's current HubSpot scope and data flow. Quarterdeck requests read-only access to the exact scope set listed below. Data flows in one direction only — HubSpot → Quarterdeck. We never write to, modify, or delete anything in your HubSpot account, and we request no write scopes.
Deals
crm.objects.deals.read- Why it's needed
- Reads deal properties (name, amount, stage, pipeline, close date, created date, probability, owner reference) to detect material pipeline changes, rank deals that deserve review, and explain the evidence behind each exception.
- Access
- Read only
- Direction
- HubSpot → Quarterdeck
- Where it's stored
- Supabase (PostgreSQL); tenant-membership-scoped RLS policies in the schema
- Retention
- Deleted when Quarterdeck confirms a successful disconnect; errors are reported
Owners
crm.objects.owners.read- Why it's needed
- Reads owner names and email addresses to display deal ownership and flag unowned deals.
- Access
- Read only
- Direction
- HubSpot → Quarterdeck
- Where it's stored
- Supabase (PostgreSQL); tenant-membership-scoped RLS policies in the schema
- Retention
- Deleted when Quarterdeck confirms a successful disconnect; errors are reported
Contacts scope — used for deal notes/activity
crm.objects.contacts.read- Why it's needed
- The current integration uses this scope only when reading creation timestamps for notes associated with deals, to measure genuine rep activity versus automation noise. It does not call HubSpot contact-record endpoints or store contact records.
- Access
- Read only
- Direction
- HubSpot → Quarterdeck
- Where it's stored
- Only the most-recent-note timestamp per deal is stored; note bodies and contact records are not retained
- Retention
- Deleted when Quarterdeck confirms a successful disconnect; errors are reported
What Quarterdeck does not access
- No HubSpot companies data.
- No contact records — the contacts scope is used only to read deal note timestamps, not to read or store contacts.
- No marketing, email, or form data.
- No sensitive-data scopes.
- No HubSpot write, update, or delete scopes.
AI narrative generation sends structured, already-calculated findings to Anthropic. Depending on the findings, these can include company name, reporting period, aggregate metrics, deterministic scores, at-risk deal names, HubSpot deal IDs, amounts, and risk reasons. Quarterdeck does not send contact records or note bodies in these narrative requests. See our Privacy Policy and Security pages for details.