How to use AI for accounting without breaking client confidentiality
Pasting sensitive trial balances and client data directly into public AI tools violates firm policies and engagement letters. Accountants need secure, siloed workflows that prevent confidential information from being exposed to external language models during technical work.
What people tried
Every workaround mentioned in the threads below. We haven’t tested any of them — and nobody here is claiming they worked.
- 1Outright banning the use of external AI tools for client data
- 2Using enterprise instances with data isolation clauses
- 3Using privacy-preserving enterprise tools like Microsoft Copilot approved by the firm
- 4Arguing that proper safeguards make AI usage a non-issue similar to using SharePoint.
- 5Considering whether to eat the cost of the subscription and pursue a different vendor
- 6Weathering the storm and seeing what impacts it has on employee participation
- 7Reviewing contracts with legal and information security teams before approval
In their words
Unedited, most upvoted first, each linked to the thread it came from.
“If you're just pasting client trial balances into the free ChatGPT window, you're already violating firm policy and probably some engagement letters too.”source ↗
“For those working in public accounting and use OpenAI or Anthropic products for the technical work, how are confidentiality silos maintained regarding PBC information in your firms?”source ↗
“if participation tanks it kinda defeats the whole point of having the platform. curious what other vendors you're looking at, most of them have equally vague TOS fine print these days”source ↗
“one of the partners said they had given GPT (or Claude, copilot… one of those) *complete access* to all the client data on the shared network in order for it to generate a priority list on who gets estimates with their statements this month. Complete. Access. Everything that was in the folders. BRUH.”source ↗
“brought to our attention by an employee that Culture Amp are reserving the ability to train generative AI models on our employee data.”source ↗
“while they keep explaining they don’t permit their GenAI vendors (so I’m guessing OpenAI and Anthropic) to train off of customer data, they won’t commit to not doing it themselves; all they say is they aren’t currently doing it today.”source ↗
Where this came up
People with this problem also raised
- 3Why do CRM apps share my customer data with other companies?
- 2How to secure sensitive form data in databases
- 4Why does a CRM get so messy as outbound volume grows?
- 2Why is keeping a professional network CRM updated so tedious?
- 5How do you keep track of clients, projects, deadlines, and follow-ups?
- 3Why do former employees still have active logins?