Company-scoped access
Every read and write is bound to a specific company. Firm-wide access never merges one client's ledger into another's.
Security
You are a fiduciary for other people's financial records, and adding an AI bookkeeper does not change that. Here is exactly how access, bank credentials, audit history, and Tally's authority are handled.
Every read and write is bound to a specific company. Firm-wide access never merges one client's ledger into another's.
LedgerHQ stores provider records and transaction evidence. Bank logins are never exposed to staff or to Tally.
Automation is only safe if it is inspectable. Every posted entry carries its author, human or otherwise.
Firm staff, company owners, and Tally each operate under explicit roles. A company owner's portal reaches only that company. Firm staff reach the firm's active managed companies. Tally inherits the scope of the context it is working in.
Selecting another company changes the workspace without blending underlying accounting records.
Bank and card activity arrives through Plaid. Credentials remain with Plaid; LedgerHQ holds provider records and transaction evidence.
When a connection breaks, LedgerHQ can send the company owner a secure single-use link to reconnect, without granting them access to your firm's workspace.
Tally cannot bypass company access, post an unbalanced entry, write into a locked period, or read bank credentials. Sensitive and irreversible actions require confirmation.
Where evidence is insufficient, Tally is built to stop and ask rather than guess — which is the behavior you would demand of a junior bookkeeper.
Questions
No. Your firm's books are used to do your firm's work.
It does not. Bank authentication is handled by Plaid. LedgerHQ stores provider records and the transaction data returned, never the login itself.
Tally works through the same accounting services as your staff, which means balanced entries, respected period locks, and a full record of what was posted. Sensitive actions require confirmation.
Yes. Tally's work appears as ordinary journal entries, reconciliations, requests, and reports, each attributed to Tally rather than a person.