01
Start with what you are actually handing over
Not files in a folder. The real stuff: what you charge, what things cost you, who your
customers are, which of them pay late, what your contracts promise. Anyone who had all
of that could compete with you.
That is the thing being protected. Everything below exists because of it.
02
There is exactly one way in, and it needs you
You sign in from your browser. That connection is scrambled from the moment it leaves
your laptop, so anyone sitting on the network in between sees noise rather than your
numbers.
No other door exists. Not for us, not for a support person, not for anyone who guesses
a web address.
03
The machine the internet can reach holds nothing worth stealing
Think of a receptionist at a locked building. They know your face, they know which
floor you belong on, and that is the end of what they know. They do not keep your files
in the desk.
That front machine checks who you are and passes the request along. Your books,
contracts and customer list are not on it. If someone broke into it tomorrow, they
would find the equivalent of a visitor log.
04
Your work lives on a second machine with no public door
This is the part that matters most, and it is the simplest idea on the page. The second
machine cannot be reached from the internet. Not with a password, not with the right web
address, not at all. There is nothing to knock on.
The only path in is a private tunnel that the front machine opens outward. Traffic
goes one way, from the front to the back, and the tunnel carries only what the request
needs. An attacker on the open internet has nothing to aim at.
05
Inside it, you get a room of your own
Your data, your tools, and the specialists working on your behalf all sit in a space
reserved for your business alone. It is not a shared filing cabinet with your name on a
folder. It is a separate room.
When your bookkeeping work runs, it runs in there, against your numbers, and it cannot
see out.
06
There are no doors between rooms
The business two rooms over cannot reach into yours, and yours cannot reach into
theirs. This is the question every careful buyer asks, usually in the form of "what
happens when another customer of yours gets breached."
The answer is that they are in their room. There is no corridor.
07
What we never do with it
- We do not train anything on your business. Your numbers do not make some
model smarter for the next customer. The companies whose models we use are held to
the same rule in our contracts with them.
- We do not sell it or share it. Not aggregated, not anonymized, not as a
"market insight" report.
- We do not send anything without you. Every email, post, filing and reply
waits for you to release it. You read it, you approve it, it goes.
- We do not keep it when you leave. Export whatever you want, whenever you
want. Two months after you stop, it is deleted.
08
And the part most companies leave out
We are new. We have not been through a formal security audit yet, and we are not going
to imply otherwise. If that is a requirement for you, we are the wrong choice today and
we would rather tell you now than three months in.
We also do not accept medical or patient information on any plan, at all. A dental or
medical practice is welcome here for the back office, the vendor contracts, the hiring
and the website. The clinical side stays in the system built for it.
The unvarnished technical
detail lives here, including what is not built yet.