Your data is safe, portable, and 100% yours
DualEntry meets IFRS/GAAP standards and follows all regulatory and industry rules, backed by certifications and third-party reviews. You always control your data. Built-in permissions let you choose exactly what each user can access.

Security

SOC 2 Type I
We ensure ongoing compliance with SOC 2’s rigorous reporting standards for safeguarding your data security and privacy.

SOC 2 Type II
We ensure ongoing compliance with SOC 2’s rigorous reporting standards for safeguarding your data security and privacy.

TLS 1.2 encryption
We ensure compliance with TLS 1.2 encryption standards to safeguard your data during transmission, ensuring privacy and security across all connections.

AES at rest and in transit
AES encryption secures your data both at rest and in transit, ensuring robust protection against unauthorized access.
Cloud security
Network architecture
Our multi-layered network design uses separate security zones for different system sensitivities—including DMZs to control traffic between the internet and your internal networks, plus extra monitoring and access controls.

Vulnerability management
Our security team runs ongoing automated scans to spot threats before they become issues. We use compatible vulnerability-scanning tools and have clear SLAs for fixing issues based on their severity.

Encryption protocols
Your data is encrypted in transit (HTTPS/TLS) and at rest (AES-256). We also use a Data Classification and Handling policy to protect data according to its sensitivity.

Change management
Every software change is tracked, approved, and tested through a strict change management process. Our logging and monitoring systems quickly spot any unauthorized changes to your production environment.


Penetration testing
DualEntry’s infrastructure is regularly put through penetration tests via partnerships with leading security firms. Plus, we offer a bug bounty program for ongoing vulnerability assessment.
Privacy

GDPR compliant
We comply with GDPR to ensure your data is processed with transparency and protection across the EU and UK.

CPRA compliant
Our practices align with CPRA, enhancing privacy rights and data protection for California residents.

CCPA compliant
We adhere to CCPA standards, meaning it is our priority to safeguard our customers’ privacy, providing transparency in the way we handle your data.

CTDPA compliant
We comply with CTDPA to ensure your data is processed with transparency and protection.

CPA compliant
We comply with CPA to ensure your data is processed with transparency and protection.

MTCDPA compliant
We comply with MTCDPA to ensure your data is processed with transparency and protection.

OCPA compliant
We comply with OCPA to ensure your data is processed with transparency and protection.

TDPSA compliant
We comply with TDPSA to ensure your data is processed with transparency and protection.

UCPA compliant
We comply with UCPA to ensure your data is processed with transparency and protection.

VCDPA compliant
We comply with VCDPA to ensure your data is processed with transparency and protection.
Data availability and continuity
DualEntry has high service availability through network redundancy, rigorous backups, and disaster-recovery plans. Our global security team is available 24/7. We follow industry frameworks like NIST and PICERL, and regularly test our incident-response plans.

Authentication solutions

Two-factor authentication
To prevent unauthorized access, we use two-factor authentication (2FA) for agents and administrators. Activate via SMS or an authenticator app.
Multiple authentication options
Choose from multiple authentication methods, including native authentication, SSO, and SAML. Keep high security standards across your business, without compromising convenience.
AI security

Secure data handling
All data processed by DualEntry, including DualEntry AI, is protected with SOC 2 compliance and is only accessible to your business. Our zero data retention policy guarantees data deletion post-output.

Model integrity
Our AI models (from OpenAI and Anthropic) are pre-trained and never use your data to learn or improve. Your financial data always stays under your control.
AI data privacy
DualEntry AI has been built with privacy at the forefront, enabling compliance with regulations like GDPR and CCPA. All our AI features meet stringent privacy laws.
