Security
Client data that never leaves your browser
JEFLAG is engineered so that the most sensitive data you handle — the client's general ledger — is never transmitted to us in the first place. Security is a design decision, not a checklist.
In-browser processing
Your general ledger and trial balance are parsed and analysed on your device. Raw transaction data is never uploaded to our servers.
Encryption in transit
All communication with JEFLAG is protected with TLS. Saved results are encrypted at rest by our infrastructure provider.
Row-level access control
Every saved record is protected by row-level security so you can only ever read and write your own analyses and engagements.
Managed authentication
Passwords are salted and hashed; we never store plain text. Optional Google sign-in and secure password recovery are built in.
Least-privilege AI
AI explanations receive only the anonymised attributes of a single flagged entry — never a file, counterparty, or full ledger.
Immutable audit trail
Key actions are recorded to a tamper-resistant, append-only activity log scoped to your account for full accountability.
Need our security documentation?
We're happy to walk your information-security team through our architecture and answer a vendor assessment.
Contact our team