Security and data
You handle your clients’ documents, so you need to know exactly where they go. This is how it is built — no promises beyond that.
Local only: before publishing, settle the OpenAI terms (EU data residency or zero retention) and describe them here; add the DPA and sub-processor list — docs/website-strategy.md §11.
Storage
Where data is stored
- Documents and data are stored in Amazon Web Services, region eu-central-1 (Frankfurt, Germany).
- The document store is not publicly accessible, accepts encrypted connections (TLS) only, and encrypts files at rest.
- Documents are kept by default — accounting records must be retained for 10 years.
Processing
Who processes documents
- To read documents and propose entries, the document content is sent to OpenAI as a sub-processor.
- The OpenAI key stays in the cloud. It is never on an accountant’s computer.
- Sub-processors: Amazon Web Services (storage and compute), OpenAI (reading and entries).
Access
Who sees what
- Each office sees only its own companies and documents. The server derives the office from the sign-in and checks it on every request — not from anything the app sends.
- Accounts exist only by the office owner’s invitation. The owner manages employees and companies; accountants the archive, entries and exports.
- An account works on one computer at a time. The owner can end a session immediately.
- The session on the computer is stored encrypted with Windows data protection (DPAPI), tied to the Windows user.
- A suspended office is refused by the server on every request.
Trail
Who did what
- Actions are written to a hash-chained audit trail — every record carries a fingerprint of the one before, so a change to history shows.
- The trail is shipped to the cloud; the owner sees the office’s activity for the last 30 days.
Exit
The archive is yours
- When you leave, you download the whole archive — every invoice and statement of every company — as ZIP files per company and year, with an index.csv for every document.
- What happens on cancellation is described on the pricing page.
Not yet
What is not available yet
- Two-factor sign-in (MFA) — the app does not support it yet.
Run one real month through the app.
A short call, we set up your office and companies with you, and you work through real documents.