OAuth Disclosure

Rosetta Conta uses two separate OAuth flows: a login flow that authenticates who you are, and a mailbox flow that connects an authorized email account for invoice processing. Connecting a mailbox is optional and always initiated by you.

ProviderPurposeScopesData accessedUser control
GoogleLogin and Gmail invoice mailbox
  • openid
  • email
  • https://www.googleapis.com/auth/gmail.readonly
  • https://www.googleapis.com/auth/gmail.send
Invoice-related emails and attachments; send invoice documents (XML, PDF, Hacienda responses).Disconnect the mailbox from the app or revoke in your Google account.
MicrosoftLogin and Outlook/Microsoft 365 invoice mailbox
  • openid
  • email
  • offline_access
  • User.Read
  • Mail.Read
  • Mail.Send
Basic profile; read invoice-related mail; send invoice documents.Disconnect from the app or revoke in your Microsoft account.
ZohoZoho Mail invoice mailbox
  • ZohoMail.accounts.READ
  • ZohoMail.messages.READ
  • ZohoMail.messages.CREATE
Account identity; read invoice-related messages; send invoice documents.Disconnect from the app or revoke in your Zoho account.

Key points