Built For Trust

Enterprise-grade security for your firm.

If you believe you’ve found a vulnerability, email security@accrual.com with details. We investigate promptly and appreciate coordinated disclosure.

Secure by design

SOC 2 Type II

Accrual has undergone a SOC 2 Type II audit. Reports are available under NDA.

Full isolation

Strict data segregation between customers with role-based access control.

Reliable by default

Daily encrypted backups with geographic redundancy and tested recovery procedures.

AI privacy

No model training

We do not use your inputs, outputs, or documents to train underlying models.

No selling or sharing

We do not sell or share information about your firm or clients with third parties.

Transparent by design

AI-assisted steps are traceable so reviewers can see sources, changes, and rationale.

Data control

US-only hosting

All customer data is stored in the United States.

Encryption everywhere

HTTPS/TLS for every connection; AES-256 at rest; HMAC and modern standards throughout.

Customer deletion

Remove your data at any point.

Security operations

Auditing & monitoring

End-to-end logs for access and changes; Regular vulnerability scanning and penetration tests.

Incident response

A comprehensive, rehearsed program with rapid triage and customer notification.

Hardened infrastructure

Secure cloud environments with enterprise-grade providers, network segmentation, and strict key management.

Identity management

Single sign-on

Authenticate with Microsoft or Google SSO.

Passwordless login

Log in via email with secure one-time codes.

Scoped API tokens

Issue least-privilege tokens for automations and integrations.