theGOteam Get early access
Security & POPIA

Your books are the truth about your business.
We treat them that way.

bank data

No bank logins. Ever.

We never ask for internet-banking credentials and never connect to your bank account. The engine works from the PDF statements your bank emails you — read-only documents, parsed exactly and verified against their own balances. Statement passwords, where banks use them, are stored encrypted and used only to open your own documents.

isolation

Your company's data is walled off.

Every business runs in its own isolated tenant, enforced at the database layer — not just in the application. Documents from unverified senders can't enter your books: new senders are approved by you, once.

integrity

An audit trail with no gaps.

Every journal traces back to its source document; every document to the email it arrived in. Balanced double-entry is enforced by the ledger itself — the system refuses entries that don't balance, even from us.

honesty

Nothing fails silently.

The engine monitors itself around the clock. Anything it can't process is flagged with a named reason and held for review — never guessed at, never dropped. If a statement can't be parsed exactly, it isn't parsed at all.

POPIA posture

Data is encrypted in transit and at rest, processed only to provide the service, and never sold or shared. Personal information in documents is minimised — sensitive fields are redacted before any AI processing. You can export your data at any time, and deletion requests are honoured fully. Our sub-processors and data-handling terms are disclosed to every customer during onboarding.

Questions about our security model? Ask us directly — we answer specifics, not marketing.