Read-only, always
We connect through read-only OAuth. Helm can't move money, edit your books, or touch your login credentials.
Helm reads your most sensitive financial data, so we built security in from the first line of code. SOC 2 control principles shape how every number is ingested, stored, and retained.
We connect through read-only OAuth. Helm can't move money, edit your books, or touch your login credentials.
AES-256 at rest, TLS 1.3 in transit, and your own per-tenant namespace. No shared tables.
Revoke any connection from your dashboard and we drop the cached data within 24 hours. Close your account and everything is purged within 30 days.
Every metric ties back to the transaction or ledger entry it came from. Nothing is a black box, and the trail is there when your auditors or investors ask.