The HCCTS Accounts Payable Portal is an internal HCCTS business system used by authorized staff to submit and process accounts-payable-related requests, including mileage reimbursements, purchase orders, reimbursement requests, and credit card purchase documentation. It supports submission, administrative review, approval, and recordkeeping of these requests. This portal is for authorized HCCTS personnel and approved business purposes only — it is not a public-facing or consumer service.
Depending on the type of request submitted, the portal may collect:
This portal does not currently include a document or file upload feature within the submission form itself. Supporting paperwork (such as signatures) is handled through the form's built-in print function and physical signature process, not through in-app file uploads.
Information submitted through the portal is used to:
The portal is hosted on Netlify, which serves the web application and runs the server-side functions that process submissions. Submitted request data is stored in Coda, which serves as the system of record for AP requests. Submissions are sent from your browser to the portal's Netlify Functions over HTTPS and then written to the HCCTS Coda document. The page also loads web fonts from Google Fonts, which may receive standard browser request information (such as IP address) as part of delivering those font files. The portal does not use Cloudinary, Google sign-in, analytics, or advertising services.
HCCTS does not sell or rent information submitted through this portal, and does not use it for advertising or marketing purposes. Netlify and Coda are engaged solely to host, run, and store data for this portal on HCCTS's behalf, not to advertise or market to users. This policy describes HCCTS's own practices; it does not independently guarantee the practices of Netlify, Coda, or any other third-party provider, which are governed by those providers' own terms and policies.
Information in the portal may be accessed by:
Admin access to the portal requires a shared administrative password and is protected by a time-limited login session. HCCTS is responsible for determining which staff hold that administrative access.
HCCTS has not published a records-retention schedule specific to this portal. Submissions are generally kept in Coda for as long as needed to support accounts-payable processing, accounting, and audit purposes. HCCTS leadership should confirm and, if appropriate, publish a specific retention period before this policy is finalized.
The portal uses HTTPS for data in transit, restricts administrative functions behind a password- protected, time-limited login session, and rate-limits repeated failed admin login attempts. No system can be guaranteed fully secure, and this policy does not represent that data is encrypted at rest, that any particular security certification applies, or that any specific legal security standard is met, except as HCCTS separately confirms in writing.
Staff submitting requests are responsible for providing accurate, complete information and for keeping any login credentials or session access confidential.
If you believe information you submitted through this portal is inaccurate, or you would like to request a correction, contact AP@HCCTS.ORG. HCCTS has not established a formal deletion-rights process for this system.
This policy takes effect on the date it is published to this portal. HCCTS may revise this policy from time to time; revisions apply from the date the updated version is published here, and material changes may be communicated to staff through internal HCCTS channels.
Questions about this policy or about how the AP Portal handles information, and general AP questions, can be directed to AP@HCCTS.ORG.