Security
Access you can inspect, limit and withdraw.
CashLense reads from systems you already trust. Nothing is written back during founding access, and every connection is revocable from the provider side.
Read-only by default
Founding accounts can read from connected sources. CashLense cannot change campaigns, charge customers or send messages.
No API keys to hand over
Each provider authenticates you on its own screens and returns permissioned access through OAuth. We never receive your passwords.
Scoped and revocable
Requested scopes are the minimum needed to resolve journeys. You can disconnect any source at any time from the provider or from CashLense.
Auditable write actions
Any future write action, such as bid changes or lifecycle updates, requires explicit approval and is recorded with the operator, time and payload.
Provenance on every claim
Milestones and amounts carry the system that reported them, so you can tell settled payment data from inferred acquisition data.
Data you can remove
Disconnecting a source stops collection. On request we delete resolved journeys and imported events for your account.
