Financial compliance software, designed defensively.
Four pillars that define how Dost protects your finance data, your team, and your audit trail.
%20(1).png)
Control and compliance
Dost is a financial compliance software architected from day one around three principles: data hosted in the EU, role-based access at every layer, and encryption applied in transit and at rest. The same audit trail accounting software your finance team relies on, designed to be defensible to your auditors.












Real numbers, from real customers. Get your time back. Costs down. EBITDA up.
Four pillars that define how Dost protects your finance data, your team, and your audit trail.
Enterprise-grade infrastructure with EU data residency by default.
Our infrastructure is hosted on Microsoft Azure, primarily within the West Europe region. Access to infrastructure resources is governed through role-based access control (RBAC) to ensure permissions are granted on the principle of least privilege. Network firewall rules restrict access and protect the environment from unauthorised connections.
Hosted on Microsoft Azure, primarily in the EU Region
Role-based access control (RBAC) with principle of least privilege
Network firewall rules restricting unauthorised connections
Every connection encrypted, every secret protected, no exceptions.
All communication between clients and services is secured using HTTPS with TLS 1.2 or higher. Database and storage data are protected through encryption both in transit and at rest. Security credentials such as API keys and tokens are never hard-coded in application source code, they are managed through production environment configuration.
HTTPS with TLS 1.2 or higher on every client-service connection
Encryption in transit and at rest for the database and storage
API keys and tokens managed via secure environment config, never hard-coded
A Spanish entity governed by EU data protection law, with documented data flows and a published Privacy Policy.
Dost AI Solutions, S.L. is a Spanish company registered in the EU and fully subject to Regulation (EU) 2016/679 (GDPR) and the Spanish LSSICE. Personal data processed through our platform is governed by our published Privacy Policy, which documents every data flow, the legal basis for each processing activity, and the rights you can exercise as a data subject (access, rectification, erasure, restriction, portability, objection, and the right not to be subject to automated decisions). All processing of EU customer data takes place within the EU by default.
Spanish entity, fully subject to GDPR and LSSICE
EU-only processing for EU customers as the default
Documented data subject rights, exercisable through a written request
Audit trail accounting software at the platform layer, designed to be defensible from day one.
Every action inside Dost is logged with user, timestamp and document context. The audit trail is built into the platform layer, not bolted on, so your finance team can demonstrate who did what, when and why across the full document lifecycle. Combined with role-based access and encryption, it gives your auditors a clean reference history without manual reconstruction.
Every action logged with user, timestamp and document context
Audit trail built into the platform layer, not added after the fact
Clean reference history ready for finance audit reviews
We are transparent about the third-party services that may process data on our behalf.
Microsoft Azure
All Dost infrastructure is hosted on Microsoft Azure, primarily in the West Europe region. Microsoft Azure provides physical data centre security, network protection and a comprehensive set of compliance certifications. Microsoft is contractually committed to GDPR through Standard Contractual Clauses.
HubSpot
Used for email marketing, contact forms, newsletter subscriptions, webinar registrations and online appointment scheduling. HubSpot, Inc. is located in the USA and adheres to the EU-approved Data Privacy Framework. Data shared with HubSpot is limited to what users provide through the relevant forms on the Dost website.
Google Analytics
Used to analyse usage of the Dost website through cookies. Data collected, including IP addresses, is transmitted to Google, Inc. (USA), which adheres to the EU-US Privacy Framework approved by the European Commission. No personal Dost product data is shared with Google Analytics.
Dost is not a patchwork of disconnected modules. It is a single AI-native accounts payable automation platform connected to your ERP from day one.
Dost is built around AI from the ground up. It matches transactions, flags exceptions, and learns your matching rules automatically. No template setup, no training required.
No expensive development. No changes to your system. Dost connects bi-directionally with SAP, Oracle NetSuite, Dynamics 365, Sage and more, ready to work from day one.
Every action is timestamped, searchable and exportable. Full audit trail on every transaction — for both accounts payable and accounts receivable reconciliation.
Reconcile payments across all your offices, entities and currencies from a single platform. Multi-entity, multi-centre, multi-currency — with real-time cash visibility at every level.
Where is Dost data hosted?
Dost is hosted on Microsoft Azure, primarily within the West Europe region. EU customer data is processed within the EU by default, which provides full alignment with GDPR data residency requirements.
Is Dost GDPR compliant?
Yes. Dost AI Solutions, S.L. is a Spanish entity fully subject to Regulation (EU) 2016/679 (GDPR) and the Spanish LSSICE. The full Privacy Policy documents every data flow, the legal basis for each processing activity, the rights you can exercise as a data subject, and the contact channels to do so.
How does Dost protect data in transit and at rest?
All communication between clients and services uses HTTPS with TLS 1.2 or higher. Database and storage data are protected through encryption at rest. Security credentials such as API keys and tokens are managed through secure production environment configuration and are never hard-coded in source code.
How does Dost control access to customer data?
Access to infrastructure resources is governed through role-based access control (RBAC) based on the principle of least privilege. Network firewall rules restrict access and protect the environment from unauthorised connections. Internally, access to customer data is limited to personnel whose role requires it.
Does Dost have an audit trail?
Yes. Every action inside the platform is logged with user, timestamp and document context. The audit trail is integrated at the platform layer, designed so your team can demonstrate who did what and when across the document lifecycle. This is the foundation of audit trail accounting software for finance teams who care about compliance and traceability.
Who can I contact about security or privacy?
For any security or privacy inquiry, including data subject rights requests under GDPR, contact us at hello@dost.io. Written requests can also be sent to our postal address: Dost AI Solutions, S.L., 3rd Floor, 86-90 Paul Street, London, EC2A 4NE.
Who are Dost's subprocessors?
Dost relies on three main subprocessors: Microsoft Azure (infrastructure, hosting), HubSpot (marketing, scheduling) and Google Analytics (website usage analysis). All subprocessors are documented in this Trust page and in our Privacy Policy. Data transfers to subprocessors outside the EU are governed by approved transfer mechanisms such as the EU-US Data Privacy Framework.