Skip to main content

Trust

Trust Center

Security, compliance, and data handling at Fincore — in one place.

SOC 2 Compliant

Compliance

AICPA SOC 2

Fincore has been SOC 2 Compliant since June 18, 2026. Our controls for security, availability, and confidentiality are independently audited, and we maintain compliance on an ongoing basis. Enterprise customers can request our latest report under NDA by contacting support@fincore.ai.

Data protection

All customer data is encrypted in transit using TLS 1.3 and at rest using AES-256. Financial information and integration credentials are stored in managed, encrypted database services with strict access controls, and secrets are held in a dedicated key-management vault.

AI & data use

Fincore does not use your data to train, fine-tune, or build evaluation datasets for any model — ours or our LLM providers'. LLM providers are engaged under enterprise terms contractually configured for zero data retention: your data is not stored on the provider side after a request is processed and is never available for training.

Integration security

Fincore connects to your systems using least-privilege, read-only patterns:

  • Service-to-service OAuth 2.0 (client credentials) — no interactive user login and no administrative or write permissions.
  • Your administrators build the required security roles in your own environment from Fincore's published specifications — nothing authored outside your organization is installed.
  • All connector activity executes as a dedicated service identity, cleanly separated from human users in your audit logs.
  • You can revoke access at any time in your own tenant — disabling the service identity or revoking consent takes effect within minutes.

See how this works in practice for the Fincore Connector for Dynamics 365 Finance & Operations.

Data handling & agreements

Data processing locations, retention, sub-processors, and our data processing agreement are described in Fincore's security packet, available from your account contact alongside the SOC 2 report.

Resources