Security
A summary of the controls built into the platform. It describes our approach and is not a certification.
Every table is protected by row-level security keyed to your organisation, and automated tests check that one client can never read another's data.
Role-based access for owners, admins, preparers, reviewers and read-only auditors. Multi-factor authentication is available to every user and recommended for admins.
Data is encrypted in transit with TLS and at rest by our hosting provider. Files are kept in private storage and shared only through short-lived signed links.
Standard: client data is hosted in the European Union (Frankfurt, Germany). UAE data residency: available on request as a paid option, in a dedicated environment hosted in the UAE and kept separate from the standard environment. Enquiries submitted through this website are stored in the EU.
Imports, assumption changes, runs, approvals, exports and administrative actions are written to an append-only log that cannot be edited or deleted.
You can request an export of your data or its deletion at any time.
The planned assistant will read calculated results to explain them. It will never calculate, change or approve provision figures, and uploaded files will be treated as data, never as instructions.
If you believe you have found a vulnerability, please contact [[PLACEHOLDER: security contact address]].