Home / Security
Security & trust

Your books stay yours, and every change stays explainable

Bookkeeping data is some of the most sensitive information a business has. KikoBooks is built so your data is isolated, your ledger can’t be quietly rewritten, and an AI co-worker never acts beyond the permissions and approvals you set.

Isolated by organization

Every record belongs to one organization, and every read and write is scoped to it. Your data never mixes with another business or firm.

Encrypted in transit and at rest

KikoBooks runs on Microsoft Azure. Traffic is HTTPS-only, and the database and file storage are encrypted at rest.

Secrets kept out of reach

Connection tokens and service credentials live in Azure Key Vault, never in code. API keys are exchanged for short-lived tokens and never shown to an AI model.

An immutable ledger

Posted entries are never edited or deleted. Corrections are new reversing entries or credit memos, so every number traces back to its source.

Role-based permissions

Owners, staff, accountants, reviewers, and client users each see and do only what their role allows.

Governed AI

Kiko works through the same permission-checked commands as your team and cannot write to the ledger directly. Judgment calls need human approval, and every decision leaves a trace.

Revocable API access

API keys for MCP and integrations can be scoped, set to expire, and revoked from settings at any time.

Verified connections

Stripe, BILL, Gusto, Brex, Ramp, and QuickBooks connect through their official OAuth or API flows, and incoming webhooks are signature-checked before they are processed.

Spend you control

AI usage runs from a prepaid wallet with budgets and low-balance limits. When a limit is hit, non-essential AI work pauses until you approve more.

Security reviews for your firm

If your firm or company needs a security questionnaire or vendor review before you adopt KikoBooks, email info@accountant.world and we’ll work through it with you.

Report a vulnerability

Found a security issue? Email info@accountant.world with the subject “Security vulnerability report” and the steps to reproduce it. Please give us a reasonable time to fix it before disclosing, and don’t access data that isn’t yours.

Bookkeeping with an AI co-worker you can audit

Start free and see every decision Kiko makes and every approval you give.