Trust Center
Certified and annually reviewed by independent third-party auditors. Our certifications are issued and reviewed annually by independent third parties.

ISO 27001 is the international standard for information security management. Achieving certification means our systems, processes, and people have been independently audited against a rigorous global benchmark — not just a checklist we filled out ourselves. It covers everything from how we store your data to how we respond to incidents, and it requires us to re-certify every year.

We comply with the EU General Data Protection Regulation. That means we collect only what’s necessary, we tell you what we do with it, and you can access, correct, or delete your data at any time. We also maintain a signed Data Processing Agreement (DPA) for any business that needs one for their own compliance obligations.
Security built into every layer
Your data is protected at every level, from the moment you connect.
Our systems are monitored 24/7 for anomalies. Security events are alerted on automatically with defined escalation procedures.
Only authorised Cash Flow Frog personnel can access production systems, and only when it’s needed. All access is logged and reviewed.
Add extra protection to your account. Cash Flow Frog supports authenticator apps and SMS codes. Enable it in settings — see the 2FA guide below.
We conduct independent penetration tests on a recurring basis to identify and fix vulnerabilities before they can be exploited.
We maintain a documented incident response plan. If a breach ever occurred, we’re required to notify affected users within 72 hours.
Our servers are hosted on enterprise-grade cloud infrastructure with redundancy, backups, and physical security controls.
Ready to take control of your cash flow?
Learn more & sign up here

We will never sell your data or share it with third parties for marketing. Here’s exactly what you can expect.
Export your forecasts, scenarios, and account data at any time from your account settings.
Close your account and we’ll permanently delete your data. No dark patterns, no waiting period.
Your financial data is used only to power your forecasts. It is never sold or shared with advertisers.
When you connect QuickBooks, Xero, or Sage, we request read-only access — we can never write or change your books.
Everything in one place
Current certificate issued by accredited body
Current certificate issued by accredited body
Current certificate issued by accredited body
Current certificate issued by accredited body
Current certificate issued by accredited body
Current certificate issued by accredited body
Have a security question?
Our team responds to security enquiries within one business day.
