Cloture
Security & trust

Your books, protected

Cloture holds your most sensitive financial data. Here's how we keep it safe, correct, and yours.

Encryption

Sensitive fields like bank account details are encrypted at rest (AES‑256); everything moves over TLS. Passwords are hashed, never stored in plain text.

A ledger that can't drift

True double‑entry. Control accounts are sub‑ledger‑driven, closed periods are locked against posting, and the trial balance always ties out — correctness by construction, not by spreadsheet.

Daily backups

Your database is backed up automatically every day with point‑in‑time recovery, so a mistake or incident never means lost books.

Role‑based access & audit

Granular roles and capabilities, multi‑step approval workflows, and a full audit log of who changed what — so you control access and can prove it.

Tenant isolation

Every record is scoped to your organization. Queries are isolated per tenant and verified against cross‑tenant access, so your books are only ever yours.

Your data is yours

We never sell your data and never use your books to train AI models. Export your data or delete your account anytime; deletions purge within 30 days.

Our commitments

Not marketing claims — what we actually do, and write into customer contracts.

We never sell your data

No advertisers, no data brokers. Full stop.

We never train AI on your books

Your ledger, documents, and reports are processed for you — not used to improve our or our vendors' models. Our AI vendor contracts include no‑training clauses on API inputs.

We protect what's sensitive

Bank details encrypted at rest, TLS in transit, hashed passwords, daily backups.

We disclose subprocessors transparently

The full list of third parties that handle your data is in our Privacy Policy and kept current.

We respond to incidents quickly

Any security incident affecting your data is disclosed within 72 hours with impact and remediation details.

Compliance & enterprise

We're an early‑stage company and transparent about where we are on formal compliance.

Today

  • GAAP & IFRS‑compliant double‑entry ledger
  • PIPEDA (Canada) & GDPR‑aligned data handling — access, portability, deletion
  • Encryption of sensitive fields, daily backups, and a full audit trail
  • Custom Data Processing Agreements (DPAs) on request
  • Subprocessor list in our Privacy Policy

On the roadmap

  • SOC 2 Type I audit (target: within 12 months)
  • SSO / SAML for Enterprise
  • Regional data‑residency options for Enterprise
  • Customer‑managed encryption keys for Enterprise

For enterprise buyers

Need a security questionnaire, a custom DPA, or a review call? Email security@getcloture.comand we'll respond within one business day.

Responsible disclosure

Found a vulnerability? Email security@getcloture.com with “Security” in the subject line and steps to reproduce. We respond within 48 hours and ask for reasonable time to remediate before public disclosure.

Close the books. Period.

See Cloture on your own numbers. We'll bring a sample of your books over and show you a month closed — usually in one call.