01
Account access
Authenticated routes use session checks. Server operations apply role and data-scope checks in workflows that require them. Credentials should remain private and unexpected activity should be reported.
02
Data control
Workflows are designed to limit access to necessary information and retain context around documents, changes and review states.
03
Sensitive operations
Selected tax and financial actions include confirmation or review steps; the product should not be interpreted as automatic authorization to file or make decisions.
04
Reporting concerns
If you identify a security concern or need information for a technical review, contact Zottio through the support channel.