Encrypted in transit and at rest
Every request runs over HTTPS/TLS, and your data is stored on managed Postgres infrastructure with encryption at rest.
Esgrey Alliance is built around shared money, which means access control is the product — not an afterthought. Here is exactly how your information is protected and what you stay in control of.
Every request runs over HTTPS/TLS, and your data is stored on managed Postgres infrastructure with encryption at rest.
Access rules are enforced in the database itself, not just in the interface — a query can only ever return rows your account is entitled to.
Every workspace is a separate tenant. Nothing is shared between workspaces unless you explicitly invite someone into yours.
Financial partners get exactly the permissions you toggle on — view, comment, edit, approve — and nothing more. You can change or revoke them at any time.
Your workspace stays completely private until you invite someone. Invitations can be revoked, and access ends immediately when you do.
Permission changes, decisions and workspace settings are written to an audit timeline so you can always see who did what, and when.
Sign-in is handled by a managed auth provider with hashed credentials and Google sign-in. We never see or store your Google password.
Write to security@esgreyalliance.com and we will respond. You can also read our Privacy Policy, Terms and Refund Policy.
Start free