Our Security Promise

Your financial data deserves the best protection. Here's how we ensure it.

"At BankSync, we take a boundary-first approach to financial data security: pass-through by default, stored only for features you enable, and protected carefully while it is inside systems we control."
- The BankSync Team

Penny checks the fence line

BankSync protects the BankSync Boundary. Customer destinations, exported copies, banks, brokerages, open banking providers, and other outside services have their own walls, guards, and rulebooks.

Our 8-Point Security Approach

1

Pass-Through by Default

BankSync is designed to move authorised financial data from your provider to the destination you choose. By default, full banking datasets are processed transiently. We retain financial data only when a feature you enable requires storage, such as a future BankSync Tables feature or another managed destination, or where needed for support, security, compliance, backups, or legal requirements.

This means: we minimise what sits inside the BankSync Boundary, protect stored feature data with the same security discipline as the rest of our platform, and treat customer destinations and independent providers as separate environments with their own controls.

2

Enterprise-Grade Data Providers

BankSync partners with industry-leading open banking and financial data providers trusted by major banks and financial institutions worldwide, and complies with the highest security standards.

Bank-level encryption

Secure Stack

Regular security audits

3

Strictly Read-Only Access

BankSync can only read your financial data, never modify it. We cannot:

  • Move money or initiate transfers
  • Change account settings or passwords
  • Access investment trading features
  • Apply for financial products

This read-only approach is a fundamental security feature that protects your accounts even in worst-case scenarios.

4

Global Open Banking Standards

We support regulated open banking standards across multiple regions, allowing you to connect to your bank without sharing login credentials. Open banking uses bank-approved APIs rather than passwords, the most secure connection method available.

🇺🇸 United States & Canada

ChaseBank of AmericaWells FargoTD BankRBCScotiabank+ 11k more

🇬🇧 United Kingdom & 🇪🇺 Europe

BarclaysHSBCLloydsMonzoDeutsche BankBNP Paribas+ 5k more

🇦🇺 Australia

CBAWestpacANZNABMacquarie+ more
5

Transient Data Architecture

For pass-through syncs, financial data is processed in short-lived worker environments and forwarded to the destination you configure. For managed features, including future BankSync Tables, stored financial data remains inside the BankSync Boundary until you export, share, sync, or otherwise send it elsewhere.

Technical detail: Pass-through data retrieved from your bank passes through an edge worker sync step and is discarded after forwarding to your destination. Stored feature data, operational metadata, encrypted tokens, logs, and backups are handled under our access controls and retention practices.

BankSync also retains operational metadata such as feed configuration, sync timestamps, and error logs so the service can run, recover, audit, and support your account.

6

Encryption in Transit and at Rest

All communication between your bank, BankSync, and your destination tools (like Notion) is encrypted using industry-standard TLS (Transport Layer Security) protocols. Data stored inside the BankSync Boundary is encrypted at rest.

Technical detail: We use 256-bit AES encryption and TLS 1.2+ for all data transmission, the same security standards used by major financial institutions worldwide.

7

Strong Authentication

BankSync leverages secure authentication methods and supports multi-factor authentication (MFA) to ensure only authorized users can access your BankSync account and configure connections.

We recommend enabling two-factor authentication on your BankSync account for an additional layer of security.

8

Our Business Is You, Not Your Data

BankSync's business model is straightforward: we charge a subscription fee for our service, not for your data. Within the BankSync Boundary, we don't sell your banking data, use it for advertising or data brokerage, disclose identifiable banking data for another party's independent commercial exploitation, or use customer banking data to train AI or machine-learning models.

You are our customer, not our product. Our success depends on providing a secure, reliable service that you trust with your financial connections.

What Happens When You Cancel?

When you cancel your BankSync subscription:

  • All your data remains in your tools: Any data previously synced to Notion or other destinations remains intact and under your control.

  • Bank connections are severed: We immediately disconnect from your financial institutions, ending all data access.

  • We delete your account: Your BankSync account data is removed from active systems subject to backup, legal, compliance, security, billing, and dispute-retention requirements.

You can request complete deletion of your account and data at any time by contacting our support team.

Secure by Design, Transparent by Choice

We built BankSync with security as our foundation, not as an afterthought. We're always happy to answer any questions about our security practices.

Contact Us With Security Questions

Ready to Securely Connect Your Accounts?

Start your 14-day free trial with BankSync and experience secure financial data syncing.

14-day free trial • Cancel anytime