TreasuryFlow
Product General Ledger Demo
By role
For firmsFractional CFOs & bookkeepers For CFOsFinance leads at growing companies
By industry
ConstructionJob costing, WIP & bonding LandscapingCrews, seasons & equipment RestaurantsMulti-location, tight margins Property managersTrust accounts & owner draws Multi-entityConsolidated across companies
Pricing Help center
Sign in Start free trial
Sign in Start free trial

Security

Verified continuously: see the live attestation.

Security is foundational to TreasuryFlow. Your exact transaction amounts are encrypted and delivered securely to your Excel ledger for precise reconciliation. Our internal systems (logs, categorization, and ML pipelines) only ever see privacy-preserving magnitude buckets, never your penny values.

Runs on SOC 2 Type II–compliant infrastructure (Google Cloud). TreasuryFlow is not independently SOC 2 certified yet; we’re happy to share our subprocessor list, our security questionnaire, and customer references for vendor reviews.
Vendor-security questions: security@treasuryflow.ai
Privacy-First Architecture
Exact amounts are securely stored and delivered to your ledger via authenticated API. Our categorization engine only sees logarithmic magnitude buckets; your penny values never enter our logs or ML training. The on-demand treasury assistant works on your real figures to answer your questions, and every number traces back to a source bank line you can verify.
API Key Authentication
API tokens are one-way hashed before storage (brute-force infeasible). Raw tokens are never stored in our database.
Plaid for bank connectivity
Bank connectivity via Plaid (the same infrastructure Venmo and Robinhood use). Your banking credentials never touch our servers. Up to 24 months of transaction history imports at connect, so your forecast starts with real depth on day one.
Verified Bank Webhooks
Every Plaid webhook we receive is cryptographically signed and verified before a single byte is processed, so a spoofed update can never touch your data.
Rate Limiting
Public endpoints are rate-limited to prevent abuse. Automated scraping is blocked.
Plaid Token Encryption
Plaid access tokens are encrypted at rest and in transit. Raw tokens never appear in the database, logs, or backups.
Multi-Tenant Isolation
All database queries are scoped to the authenticated user's ID. No administrative endpoints exist that can access another tenant's financial data.
Error Monitoring
Production errors are tracked via Sentry with automatic PII filtering. Request bodies and auth headers are stripped before transmission.
Bank Re-Authentication
When bank connections expire, Plaid webhooks automatically flag the issue and users can seamlessly re-authenticate without re-entering credentials.
Verify it yourself
A live attestation generated from our code, not marketing. View trust page →

Data Protection Layers

Magnitude Bucketing (Categorization Only)

Every transaction passes through our get_magnitude_bucket() function at ingestion for categorization. The exact amount is securely stored and delivered to your Excel ledger for cross-bank reconciliation; the bucket is used only by our internal ML and categorization engines:

  • MICRO: Less than $10
  • SMALL: $10 – $100
  • MEDIUM: $100 – $1,000
  • LARGE: $1,000 – $10,000
  • XLARGE: Greater than $10,000

Log & ML Isolation

Exact dollar amounts never appear in application logs, error reports, or ML training data. Only magnitude buckets are used for categorization and analytics, ensuring your financial details remain private even at the infrastructure level.

Authentication

  • Every data endpoint requires a valid API token via Authorization: Bearer header
  • API tokens use 32 bytes of cryptographic randomness for maximum security
  • Tokens are stored as cryptographic hashes; the raw token is shown once at signup and never again
  • Tokens have 256 bits of entropy (via secrets.token_urlsafe), making brute-force infeasible

Data Isolation

  • All database queries are scoped to the authenticated user's ID
  • No admin endpoints exist that can access another user's data
  • User A can never see User B's transactions, forecasts, or profile

Logging & Monitoring

  • Structured logging with request IDs, never financial data
  • No transaction amounts, merchant names, or account numbers in logs
  • Error responses never expose stack traces or internal paths

Infrastructure Security

  • HTTPS-only communication (HSTS enforced)
  • CORS origins restricted to production and development domains
  • Rate limiting on signup and waitlist endpoints to prevent abuse
  • Stripe webhook signature verification to prevent spoofing
  • Plaid webhook signature verification: every bank-event webhook is cryptographically signed and verified before processing
  • X-Frame-Options: DENY and X-Content-Type-Options: nosniff headers

Responsible Disclosure

If you discover a security vulnerability, please report it to security@treasuryflow.ai. We will respond within 48 hours and work with you to address the issue promptly.

The CFO morning brief, weekly.

Cash, runway, and benchmark insights from finance teams running TreasuryFlow.

Start free trial See the product tour
TreasuryFlow

Live cash visibility for $1M–$50M companies and the fractional-CFO firms that serve them.

$99/mo per company · 90-day free trial · Live in 5 minutes Read-only bank access via Plaid
Product
Features AI General Ledger Pricing Product tour For CFOs For firms Excel & Sheets
Industries
Construction Landscaping Restaurants Property managers Multi-entity
Compare
vs Float vs Mercury vs Trovata vs Ramp All comparisons
Company
About Manifesto Help center Status
© 2026 Pantoll Ventures LLC · 35 Miller Ave #1112, Mill Valley, CA 94941 · TreasuryFlow™
Help center Status Contact Security Privacy Terms