Skip to content
Trust Centre

What Reveal can see, and what it can't.

Reveal is the financial evidence and context layer between the systems where financial activity happens and the systems where accounting work gets done. This page is written for three readers: a client deciding whether to connect, a practice owner doing due diligence, and an IT or compliance reviewer. Each section starts in plain English. Technical detail sits underneath.

Only approved sourcesThe client chooses what to connect, and can disconnect it any time.
Read-only emailReveal can't send, modify or delete email.
Evidence, not inboxesYour accountant sees financial documents with their source. Never a mailbox.
Credentials encryptedTokens and logins are encrypted before storage and never shown back.
CLIENT-APPROVED SOURCES · BRIGHTWATER WORKWEAR
EMAILGmailOAuth · read-only
SUPPLIER PORTALSAmazon BusinessEncrypted credential
MESSAGINGWhatsApp BusinessBusiness Platform
CLOUD STORAGESharePoint1 approved location
DIRECTUploads2 documents
REVEAL PROCESSING BOUNDARYOAuth, encrypted credential or approved location, as each source requires. Reveal retrieves and processes evidence inside this boundary; privacy controls skip sensitive topics and sender domains.
Credentials AES-256-GCMPrivacy controlsEvery access logged
RELEVANT EVIDENCEAmazon Business · £212.35Adobe · £49.99Vodafone · £86.40Print Supplies · £1,420.00
HFAccounting workspace · Hartwell FinchRelevant financial evidence, not the underlying source interface
REVEAL PERSONNELIndividual identityMFARole-restrictedSensitive reads logged
Layer 1 · Connected sources

Defined access to the sources a client approves

Email (Gmail, Outlook / Microsoft 365, Yahoo Mail, AOL Mail, IMAP) with read-only mailbox access, supplier portals, WhatsApp Business, OneDrive and SharePoint, and uploaded documents. Each source is approved explicitly and can be disconnected at any time.

  • Reveal can't send, modify or delete email.
  • Only sources the client approves are connected.
  • The practice never receives a general mailbox browser.
Trust Centre → Email access
OverviewPUBLISHED

Overview

Reveal connects only to sources a client approves, retrieves financial evidence from them, and gives the practice that evidence with its context. Never the underlying mailbox, supplier account or drive.

Ask about this
For clients: what you're connecting →Why Reveal may need a supplier password →For practice owners: UK GDPR →For IT: credentials and encryption →
Connected sourcesPUBLISHED

Email access — Gmail, Outlook / Microsoft 365, Yahoo Mail, AOL Mail and IMAP

Reveal connects to email to retrieve financial evidence. It can't send, modify or delete messages. Relevant evidence is surfaced into Reveal; your accountant is not given a general inbox browser.

ProviderHow it connectsReveal can
GmailGoogle OAuthRead the mailbox, read-only
Microsoft 365 / OutlookMicrosoft authenticationRead mail, read-only
Yahoo MailYahoo-family provider authenticationRead mail
AOL MailYahoo-family provider authenticationRead mail
IMAP / compatibleMailbox or app credential, IMAP over TLSRead only; never uses SMTP
Ask about this
Connected sourcesPUBLISHED

Supplier portal access

Supplier portals don't offer read-only connections the way email providers do. To retrieve invoices, Reveal signs in to the supplier account with the client's approval. That login is protected as carefully as a mailbox permission, and the practice never gets a browser into the account.

  • Credentials are never displayed through Reveal
  • A rejected supplier password is deleted immediately
  • The stored supplier credential is deleted on disconnect
  • If the supplier asks for a one-time code, Reveal asks you for it. It's used for that sign-in only and isn't kept
  1. 01Client connects the supplier accountSigns in with the supplier, with their approvalCLIENT
  2. 02Sign-in encryptedHeld separately from product data and never displayedENCRYPTED
  3. 03Reveal retrievesOnly supported financial documents, such as invoices and receiptsREVEAL
  4. 04Financial evidenceLinked to the payment, with source and timeEVIDENCE
  5. 05Accounting workflowThe practice sees evidence. Never the login, never the accountPRACTICE
Ask about this
Connected sourcesPUBLISHED

WhatsApp Business

Reveal connects to a WhatsApp Business account through the WhatsApp Business Platform. It never logs in to personal WhatsApp. The business connects explicitly, and receipts or invoices sent to that business number can feed Reveal as evidence.

  1. 01Connected WhatsApp Business accountConnected explicitly by the businessCLIENT
  2. 02Business message or documentA supplier sends a receipt or invoiceSENDER
  3. 03Provider eventDelivered by the WhatsApp Business PlatformPROVIDER
  4. 04RevealReads the document and its contextREVEAL
  5. 05Financial evidenceJoins the financial storyEVIDENCE
Ask about this
Connected sourcesPUBLISHED

OneDrive

A Microsoft Graph connection with a read-only, least-privilege approach. Connect the locations where financial evidence lives; Reveal retrieves supported evidence from those approved locations. It doesn't need edit or delete rights.

  1. 01Connect MicrosoftThe client signs in with MicrosoftCLIENT
  2. 02Approve the locations where evidence livesThe smallest useful scopeCLIENT
  3. 03Reveal reads supported filesRead-onlyREVEAL
  4. 04Financial evidenceSurfaced with its sourceEVIDENCE
Ask about this
Connected sourcesPUBLISHED

SharePoint

Give Reveal access to the smallest useful area. An authorised Microsoft administrator approves a specific SharePoint site, and Reveal gets read-only access to that site, not the whole organisation.

ConceptWhat it means
Provider permissionWhat Microsoft authorises Reveal to access
Approved retrieval scopeThe specific locations the business has approved
Practice visibilityThe evidence and context surfaced into Reveal
Ask about this
Connected sourcesPUBLISHED

Uploads

Documents added directly by the client or the practice join the same financial story, carrying who uploaded them and when.

Ask about this
AccessPUBLISHED

Access & visibility

Source access is not practice visibility. Reveal may need enough technical access to a connected system to retrieve evidence. That doesn't give the accounting practice access to that system.

  1. 01Connected sourceEmail, supplier portal, WhatsApp Business, OneDrive, SharePointSOURCE
  2. 02Approved technical accessOAuth, encrypted credential or approved location, as each source requiresBOUNDARY
  3. 03Reveal processingRetrieve, read, associate, explainREVEAL
  4. 04Relevant financial evidence and contextDocuments, payment, timing and reasonsEVIDENCE
  5. 05Accounting practiceNo mailbox browser, no supplier login, no drive explorerPRACTICE
Ask about this
AccessPUBLISHED

Reveal personnel access

Customer information may be accessed by authorised Reveal personnel where necessary to operate, support or secure the service. Access uses individual identities, multi-factor authentication and role-based controls, and sensitive access is recorded.

  • A separate identity for every authorised staff member
  • Multi-factor authentication enforced
  • Role-based access controls
  • Every sensitive customer-data read logged against the individual
  • Detailed technical controls are in Reveal's security pack, available on request from hello@revealos.com.
Ask about this
SecurityPUBLISHED

Credential protection

Connection credentials and access tokens are encrypted before storage, decrypted only when needed to connect to an approved source, and never displayed back through the product.

  • Credentials are held separately from evidence and product data
  • Stored credentials are deleted when a source is disconnected
  • Detailed technical controls are in Reveal's security pack, available on request from hello@revealos.com.
Ask about this
SecurityPUBLISHED

Encryption

Connections between Reveal, users and connected providers use encrypted transport such as TLS. Credentials and tokens are encrypted with AES-256-GCM before storage.

Ask about this
SecurityPUBLISHED

Authentication & privileged access

Practice users sign in with a passwordless magic link. Reveal staff and infrastructure accounts use multi-factor authentication, and production access follows least privilege.

Ask about this
SecurityPUBLISHED

Practice isolation

Information is scoped to the practice and client workspace it belongs to: clients, connections, evidence and ledger links. Internal privileged access is controlled separately.

PRACTICE AClients · connections · evidence · ledger links
SEPARATED
FROM
PRACTICE BClients · connections · evidence · ledger links
Ask about this
DataPUBLISHED

Data lifecycle

Follow a piece of evidence from connection to deletion. Choose a stage to see what's involved.

Purpose
Approve access with the provider, or enter a supplier or IMAP credential
Information
An OAuth token or a credential
Source permission
Read-only for email; approved locations for cloud storage; sign-in for supplier portals
Practice visibility
Never sees tokens or credentials
Credentials
Encrypted with AES-256-GCM before storage; never displayed
Control
Revocable at the provider or in Reveal
Ask about this
DataPUBLISHED

Retention & deletion

Disconnecting and deleting are different things, so here they are side by side.

  • Disconnecting stops future retrieval and deletes the stored credential or token. Evidence already retrieved remains available to the accounting practice until the practice instructs Reveal to delete it or the applicable retention period expires.
  • If you created an IMAP app password, revoke it with your email provider too.
InformationKept for
Connection credentials and OAuth tokensWhile the connection is active. Deleted on disconnect
Temporary 2FA codesNot retained
Evidence documents and extracted dataUnder the practice's retention instructions while it uses Reveal, including after a client disconnects; deleted within 90 days after termination unless earlier deletion is requested or retention is legally required
Unmatched retrieval working dataUp to 90 days
Security and audit logs12 months
Support information180 days
Account and profile informationThe relationship plus up to 90 days
Billing and contractual recordsUp to six years where required by law
Backups30 days
Ask about this
Privacy Notice ↗
DataPUBLISHED

Auditability

Important access and actions leave a trace.

  • Source connected or disconnected
  • Evidence retrieved
  • Document viewed or downloaded
  • Matching and association decisions
  • Ledger actions
  • Privileged and administrative access, attributed to the individual
Ask about this
AI & vendorsPUBLISHED

AI & model processing

Reveal is AI-native, and we explain what AI does and where your information goes. It reads documents, extracts data, understands evidence, associates and matches it, assists supplier-portal navigation, explains its reasoning, powers Ask Reveal and keeps working in the background.

  • Reveal does not train cross-customer Reveal models on client information unless separately authorised.
  • External model providers' retention and training settings are disclosed separately, below.
ProviderPurposeLocationTraining
Mistral AIOCR when Reveal's own reader can't reliably extract a documentEU by defaultTraining disabled
Anthropic (Claude API)AI reasoning, including Ask RevealUnited StatesNot used for training
Reveal-hosted PaddleOCRLocal OCR for supported documents and imagesReveal infrastructureNo external retention or training
Ask about this
AI & vendorsPUBLISHED

Subprocessors

The companies that process information on Reveal's behalf. Reveal assesses each provider before customer data is routed through it. The full register, with what each receives, retention and transfer safeguards, is in the Data Processing Agreement and available on request.

  • International transfers are covered by Standard Contractual Clauses with the UK Addendum, or equivalent safeguards
  • Not treated as subprocessors: Google, Microsoft, Yahoo/AOL and connected accounting systems, when they are the source or destination the customer chose. Stripe acts separately for Reveal billing.
ProviderPurposeLocation
RailwayApplication hosting and databaseEU West (Amsterdam)
Cloudflare R2Document and backup storageEU
ResendEmail deliveryUnited States
BrowserlessSupplier retrieval infrastructureUK and United States
PostHogProduct analyticsEU (Frankfurt)
Mistral AIDocument OCREU
AnthropicAI processingUnited States
SlackInternal alertsUnited States
Ask about this
AI & vendorsPUBLISHED

Security operations

What's in place to run Reveal securely. Reveal doesn't claim certifications it hasn't confirmed. Report a security concern to the privacy and compliance contact, hello@revealos.com.

  • Detailed technical controls are in Reveal's security pack, available on request from hello@revealos.com.
Ask about this
CompliancePUBLISHED

UK GDPR

The accounting practice generally acts as Controller for its client processing. Reveal acts as Processor when processing client information on the practice's instructions, and separately as Controller for its own account and billing information. This is a summary, not legal advice.

Ask about this
Data Processing Agreement ↗
CompliancePUBLISHED

Review our documentation

Formal legal documents live on app.revealos.com. Reveal's security pack (technical controls, data flows and the full subprocessor register) is available on request.

Ask about this
Privacy Notice ↗Terms of Service ↗Data Processing Agreement ↗Legal & Privacy ↗Subprocessors →Security pack · password on request →Contact · hello@revealos.com →