Follow us on Twitter

KashFlow Quick Access FAQ: Security

If I have to put in a password / memorable word, how come KashFlow Quick Access does not?

For a normal user logging into KashFlow you are asked to provide your username, password and then random letters from your memorable word. If you go into your settings and enable API access and Remote Login to your account then our clever little widget is able to speak with KashFlow and generate a link straight past the logon screens.

KashFlow remote login links are 'use it once then it's dead' and will expire after 120 seconds if they are not used. Since the KashFlow Quick Access app fires off the link straight away, there is no chance that your session can be hi-jacked by anyone else, including other users of your PC.

Are my login credentials stored safely?

Your credentials are stored within your own user profile on your PC and  encrypted using the same kind of triple DES encryption used by your on-line bank.

Can other users of my PC get into KashFlow?

Other users on your PC could install the KashFlow Quick Access application and re-use the same licence key (it's per PC, not per user) and they will have their own settings file. Anyone that uses your login will be able to launch the application and therefore access KashFlow. You should never share your login with users you do not trust.

What information is collected by GoldFigure?

The only information we collect from the KashFlow Quick Access application is a secure key identifying your own computer, this is the registration key you provide for activation. We do not snoop or collect any information from your computer while you use the software.