Privacy Policy

We acknowledge the importance of your privacy. The following content tells you how we collect and use your information.

Who We Are

Effective 15 August 2026.

This Privacy Policy is issued by Bechellente Limited ("Bechellente," "we," "us," "our"), a company registered in England and Wales under company number 15892202.

Bechellente is the data controller for the personal data described in this Policy, across all of our products and our website. This Policy applies to:

  • bechellente.com, our corporate website;
  • Core Ledger, our cloud accounting, bookkeeping, payroll and tax-compliance product; and
  • any other product we release under the Bechellente umbrella in the future, unless that product publishes its own separate privacy notice.

Where a section below applies to only one product, it says so explicitly. Everything else applies across all of them.

Contact us about privacy matters at: contact@bechellente.com

Personal Data We Collect

Visitors to bechellente.com. bechellente.com uses no cookies, no analytics, and no tracking scripts. The only personal data collected through the website is submitted voluntarily, through an early-access or waitlist registration form (name, email, phone number, organization, role) — used to notify you about upcoming product launches and to schedule an onboarding call if you request one.

Core Ledger accounts, administrators and authorized users. When your organization signs up for Core Ledger, we collect, via our shared Identity Service: your organization's name, registered address, phone number, email, tax identification number (TIN), registration number, industry, legal entity type, and logo; for each individual user we invite or who registers, first name, last name, email address, phone number, and profile photo (if provided); and role and permission assignments within your organization.

Employee/payroll data (processed on your organization's behalf). If your organization uses Core Ledger's payroll features, you may enter the following about your own employees. For this category of data, your organization is the data controller and Bechellente is the data processor — we process it strictly on your instructions, to provide the service.

  • Name, staff ID, email, phone number, department, date of employment.
  • Salary and compensation details: basic salary, housing/transport/other allowances, additional deductions.
  • Tax and statutory data: Tax Identification Number (TIN), PAYE tax band, pension and NHF contributions, National Health Insurance Scheme (NHIS) opt-in and amount, rent paid and rent relief status, life insurance premiums, state of residence.
  • Payroll history: monthly payroll run computations, net pay, gross pay, and payslips (generated as PDF documents and emailed to each employee).

This is sensitive financial and, in some cases, health-related data (e.g. NHIS enrollment), and it is handled under the access controls and confidentiality safeguards described in this Policy.

Customer and vendor data (processed on your organization's behalf). Also processed as a data processor on your instructions: names, emails, phone numbers, physical addresses, TINs, and (for vendors) a named contact person's details, entered by your organization to manage its own invoicing, purchasing, and withholding-tax obligations.

Financial and transactional records. Invoices, expenses, purchases, revenue records, journal entries, tax computations, fixed-asset and depreciation records, and bank transaction data, all scoped to your organization and processed as a data processor on your instructions.

Bank account data. If you connect a bank account via Core Ledger's Open Banking feature, the connection and consent are handled by our shared banking service and its Open Banking partner. Core Ledger does not request or store your bank login credentials. It does receive and store your bank account number and confirmed transaction details from the banking service, which are used to convert bank activity into accounting records. If you instead upload a bank statement file, that file and its parsed transaction lines are stored by Core Ledger directly.

Documents you upload. Receipts, invoices, and bank statements you upload are stored as files plus associated metadata (filename, size, who uploaded it, when). If you use our invoice/receipt auto-extraction feature, the uploaded document is sent to a third-party AI service to extract structured data (see Service Providers and Legal Disclosures below); you should not upload documents to this feature that you are not comfortable transmitting to it.

Payment information. We do not collect or store your card or bank payment details. Subscription payments are processed by Paystack, who collect your payment details directly on their own hosted checkout page.

Information we generate about you. Login/session activity, and a field-level audit trail of changes made to key records (who changed what, when, and the before/after values), used for security, accountability, and dispute resolution within your organization.

How We Collect Personal Data
  • Directly from you or your organization, through account registration, forms, and file uploads.
  • Automatically, through your use of Core Ledger (audit logs, session data).
  • From your bank, via our Open Banking partner, if you choose to connect a bank account.
  • From your organization's own bulk data imports (CSV import of employees, customers, vendors, or transactions) — if you import personal data about third parties this way, you are responsible for having a lawful basis to give us that data.
International Data Transfers
Some of our service providers operate infrastructure outside the UK and Nigeria. Where we transfer personal data internationally, we apply appropriate contractual and technical safeguards as required by applicable data protection law. Our core application infrastructure is self-hosted within Bechellente's own cloud environment.
How Long We Keep Personal Data
  • Account and organizational data: for as long as your account is active.
  • Employee, customer, vendor, and financial/transactional records: for as long as your account is active. These may form part of your organization's own statutory accounting and tax records, so we recommend exporting anything you are required to keep before requesting account deletion — Core Ledger provides export tools for this purpose.
  • Audit logs: retained indefinitely, to preserve a complete accountability trail of changes made to your organization's records.
  • If you cancel your subscription, your data remains stored (with access suspended after your current billing cycle ends) unless and until you separately request account deletion.
  • If you request account deletion, your account enters a temporary deletion state at the end of your current billing cycle. You can restore your account at any point during the following 30 days; after that window, deletion becomes permanent and irreversible.
  • Early-access/waitlist submissions are retained until you're contacted about the relevant product launch or you ask us to delete your submission, whichever is sooner.
Your Rights

If you are in the UK, subject to UK GDPR, you have the right to: access your personal data; correct inaccurate data; request erasure; restrict or object to processing; data portability; and to withdraw consent at any time where we rely on consent. You can complain to the Information Commissioner's Office (ICO) at ico.org.uk.

If you are in Nigeria, subject to the Nigeria Data Protection Act (NDPA) 2023, you have equivalent rights: access, rectification, erasure, restriction, data portability, objection, and the right to lodge a complaint with the Nigeria Data Protection Commission (NDPC).

To exercise any of these rights, contact us at contact@bechellente.com. Where you are an employee, customer, or vendor of one of our platform customers rather than our own direct customer, we recommend contacting that organization directly, as they are the data controller for that data; we will support them in fulfilling your request.

Cookies

bechellente.com currently sets no cookies.

Core Ledger (the application, once you're logged in) uses:

  • A functional, non-personal cookie to remember whether your navigation sidebar is expanded or collapsed.
  • Authentication session cookies, set by our login system, which store your encrypted session (including your organization identifier) so you stay logged in. These are essential to the service and cannot be disabled if you want to use Core Ledger.

If we introduce analytics or marketing cookies on either property in the future, we will update this section and, where legally required, request your consent first via a cookie banner.

Security
We apply access controls, role-based permissions, encryption in transit, and detailed audit logging to protect your data. Each customer's data is kept separate and is accessible only to that customer's own authorized users. In the event of a data breach, we will notify affected customers and relevant regulators as required by applicable law.
Children's Data
Our products are business tools intended for use by adults acting on behalf of an organization. We do not knowingly collect personal data from children.
Changes To This Policy
We will post material changes here with an updated "Last updated" date, and, where the change affects how we process your personal data, we will ask you to re-confirm your acceptance the next time you log in, rather than relying on continued use alone.
Contact Us
Bechellente Limited (company number 15892202, registered in England and Wales) — contact@bechellente.com