← Help centre

Plan and security

What your plan gates and what it never gates, and how two-factor works here.

What a plan gates

Only creating things: how many statements you can commit, how many accounts you can keep open, how many rows you can hand-enter, and the generated artefacts — wealth statement, IRIS worksheet, export package.

What a plan never gates

Anything you already have. Reading your ledger, exporting it as CSV, opening a stored document and downloading a package you already generated all keep working on a lapsed plan. A lapsed subscription loses the free tier's quotas, never its data.

A few details that follow from that:

  • The import quota is spent at commit, not at upload. Previews are unlimited, because seeing your own statement parsed is the point.
  • Deleting an import returns the slot.
  • Editing or deleting a wealth-register row is never gated; only adding a new one is.

Two-factor

Setup is two steps: the secret is stored, but 2FA does not turn on until a live code proves the app is working. Recovery codes are shown once — save them then, because they are stored hashed and cannot be shown again.

Turning 2FA off requires a current code.

There is no QR code yet; enter the key manually or paste the otpauth:// URI into your authenticator.

Try it on your own year

Import a statement and see the balance chain verify it. The free tier is enough to find out whether this suits you.

Start free