We don't process payments. We just collect approvals and produce proof. Here's how we keep that process safe.
This separation of duties is intentional. It reduces risk for you and simplifies compliance.
Approvers receive an email with a one-tap Approve or Reject button. The link is:
A common fraud pattern: a "vendor" emails new bank details. The business pays—to the wrong account.
PayGuard detects when vendor bank details differ from the last approved request:
We recommend verifying bank changes with the vendor via phone before approving.
Every action is logged: request created, approval sent, approved/rejected, receipt generated.
When approved, we generate a PDF receipt containing:
The hash allows anyone to verify the PDF hasn't been silently changed.
Users can only do what their role allows:
| Role | Can do |
|---|---|
| Owner/Admin | Everything: users, rules, settings, view all |
| Approver | Approve/reject requests assigned to them |
| Requester | Create requests, view own requests |
| Auditor | View requests, receipts, audit log (read-only) |
Have security questions?
Contact us