Zendesk Sync

Zendesk Sync Privacy Policy

Last updated 15 September 2026

This privacy policy covers Zendesk Sync, the HubSpot app. It does not cover the other apps we publish or our custom integration service, each of which has its own.

What this app does with your data

Zendesk Sync moves data between your HubSpot account and your Zendesk account, in the directions you configure. It runs on our servers, on your behalf, using access you grant through each platform's own OAuth consent screen. You can withdraw that access at any time from either side, and the sync stops.

What we read from Zendesk

  • Zendesk tickets, including subject, status, priority, tags, form and brand.
  • Ticket comments, both public replies and internal notes, and who wrote each one. Internal notes are only read when you turn that on.
  • Zendesk users and organizations, to match a requester to an existing HubSpot contact and a company to its domain.

What we access in HubSpot

Only the scopes below, each requested on the consent screen before the app is installed:

  • Read and write tickets, to create the HubSpot ticket a Zendesk ticket maps to and keep its properties current.
  • Read and write contacts (crm.objects.contacts), to associate a ticket with the person who raised it.
  • Read and write companies (crm.objects.companies), which is what puts support history on the company record rather than only on each contact.
  • Where you enable it: conversations, deals, owners and file access, each requested separately at the point you turn that feature on.

What we store, and why

The app keeps the minimum needed to make the sync correct and repeatable. Records that cross between systems are not warehoused: what is stored is the link between them.

  • OAuth access and refresh tokens for both Zendesk and HubSpot, plus the signing secret for the webhook we register in your Zendesk account.
  • A mapping between each Zendesk ticket and the HubSpot ticket it corresponds to.
  • The ids of comments already mirrored, so a redelivery cannot post a customer's message twice.
  • A per record sync log, which is what answers whether a ticket arrived and why one did not.
  • Counts of tickets synced in the current month, for billing.

What we never do

  • We never sell your data or share it with advertisers.
  • We never use your tickets or conversations to train models.
  • We never delete a Zendesk ticket or comment.
  • We never sync internal notes unless you switch that on. The default is public replies only.
  • We never create a HubSpot contact for a requester when you have chosen match only.

Sub-processors

The app runs on Vercel and stores its data in a managed PostgreSQL database. Payments, where the app is paid, are handled by Stripe and we never see or store your card details. Transactional email is sent through Resend. Each is used only to operate the app.

Retention and deletion

Uninstalling the app from HubSpot revokes our access immediately. Email michael@stacktie.com to have the stored records deleted, and we will confirm when it is done. Sync logs are swept on a rolling schedule regardless.

Contact

Questions about this policy, or a data request, go to michael@stacktie.com. They are answered by the person who wrote the app.