clarafin
Sign in
Back to Clarafin
CLARAFIN · SECURITY

Security, explained.

A clear view of how we approach protection, access and AI.

Last updated: 8 September 2026

Encrypted connections

The website and app are accessed over HTTPS. This protects information in transit between your browser and the service.

An extra sign-in factor

The app includes support for authenticator-based two-factor authentication (TOTP). When enabled, an additional code helps protect your account if your password is compromised.

Household-based access

Clarafin uses household-scoped database access rules. They are designed to limit which financial records a signed-in user can read or change.

Documents and permissions

The document feature includes encrypted file storage and permission checks for supported AI extraction. Its availability is controlled during development and the initial release.

AI needs context

Clara processes information to answer questions and assist with your finances. Depending on the feature, this can include financial information or document content sent to an external AI provider.

Honest limits

Clarafin is in development. These are descriptions of the product’s security approach, not an independent security certification. AI processing means we do not claim that all information is end-to-end encrypted or inaccessible to the service.

A Swiss product. Clear about processing.

Clarafin is developed for life in Switzerland. This does not mean that all infrastructure or AI processing is located in Switzerland. Website hosting and app data processing are separate; international providers can be involved. Ask us about the current setup before sharing sensitive information.

Questions or a security concern?

Contact our team. Describe what you noticed without sending passwords, account credentials or financial documents by email.

info@clarafin.ch