How LedgerBox handles your documents.
LedgerBox encrypts your documents, stores them in the United States, and isolates them by organization. Your documents do not train a model.
Where a document goes
LedgerBox stores and processes each document in the United States.
-
LedgerBox stores the file
LedgerBox stores the file in the United States. The file is private and encrypted.
-
LedgerBox extracts the rows
LedgerBox extracts data from each page. Your document stays in the LedgerBox environment.
-
LedgerBox verifies the rows
LedgerBox compares statement rows with the opening and closing balances. It flags values that do not match.
-
You export the result
Export the rows as Excel, CSV, QuickBooks CSV, QBO, or JSON. You can also post rows to QuickBooks Online.
We value privacy
We do not train models on your documents. LedgerBox does not use customer documents to train, fine-tune, or evaluate a model.
The extraction provider cannot use your documents to train or improve a model. LedgerBox does not sell documents or share them for advertising.
Contact contact@ledgerbox.io if your contract must include this requirement.
No human at LedgerBox reads your documents
LedgerBox has no human review step. LedgerBox does not employ or contract document reviewers. LedgerBox flags a row for your review when it cannot verify the row.
The extraction provider checks content for abuse. These checks do not store content. Authorized provider staff can review a retained sample when an abuse check flags it.
Retention and deletion
- Documents stay until you remove them
- LedgerBox does not delete workspace documents on a schedule. The same policy applies to each plan.
- Delete removes workspace access
- Delete a document to remove it from the workspace. Organization members cannot read or export it after deletion.
- Request stored file removal
- App deletion does not erase the stored file by default. Contact contact@ledgerbox.io to erase the file and its extracted rows.
- Client portal files can expire
- Set a retention period in Settings, Client portal. LedgerBox erases the uploaded file after extraction. It keeps the extracted document in your workspace.
Security controls
LedgerBox applies controls for encryption, tenant isolation, least privilege, change management, access, audit, backups, and recovery.
- Encryption
- LedgerBox encrypts documents and rows in transit and at rest. Each connection uses TLS 1.2 or later.
- Tenant isolation
- Each document belongs to one organization. LedgerBox checks the organization before it returns data.
- Least privilege
- Each service has its own identity and can access only the resources that it needs.
- Change management
- Each production change uses version control, automated tests, and a recorded deployment.
- Access and audit
- Only service operators have administrative access. LedgerBox records their actions.
- Backups and recovery
- LedgerBox backs up the database each day and retains the backups.
The privacy policy lists each vendor that processes data. Contact contact@ledgerbox.io for a vendor review.
Vendor review information
- SOC 2 reports
- Contact support@ledgerbox.io if your vendor review requires a signed SOC 2 Type I or Type II report.
- No self-serve data processing agreement
- Contact contact@ledgerbox.io if you need a data processing agreement.
- No single sign-on
- Accounts use email and password or a social login. LedgerBox does not support SAML or SCIM.
- No published accuracy number
- LedgerBox does not publish one accuracy percentage for all documents. It shows the verification result and flagged rows for each document.
Policies and contact
Read the privacy policy for data terms. Read the terms for the service contract. Read the cookies for site cookies. View pricing for billing information. Contact contact@ledgerbox.io.