Collecting bank statements and financial documents from bookkeeping clients

To collect bank statements, credit card statements, receipts and invoices from bookkeeping clients each month, send each client a ShieldFive document request: one link that lists the documents for that period, which the client opens on a phone or computer and uploads to without creating an account. Each file is encrypted in the client's browser before upload, so ShieldFive stores only ciphertext and never holds your keys.

Specs

Updated .

ShieldFive document request specs for collecting bookkeeping documents
Client needs an account?No. No account, no sign-in, no app. The client needs the link and the PIN.
PINRequired, at least 4 characters, chosen by you and sent separately from the link.
Max file size5 GB per file.
Max per requestAbout 2 GB in total by default.
Files per request25 by default, adjustable from 1 to 100.
File typesAny type: PDF statements, phone photos of receipts, spreadsheets and CSV exports.
ChecklistUp to 100 requested items per request. You write the list; reuse it each month with Send this checklist to another client.
Link expiryUp to 7 days on the free plan. 7, 30 or 90 days, or no expiry, on Firm seats and during the 14-day trial; 30 days by default.
Reminders to youAn email when files arrive, and a reminder to follow up if nothing has arrived after about 3 and 7 days. Every plan.
Reminders to the clientOn Firm seats and during the trial, if you add the client's email: at most 2, after about 3 and 7 days, while required items are missing. One click stops them.
Your brandingYour firm name and logo on the upload page and the client reminder, on Firm seats and during the trial.
Plans14-day trial with everything unlocked, no card. Then free with 1 open request at a time, or a Firm seat at €29 per month (€290 per year). Clients never pay and do not use a seat.
EncryptionClient-side, in the client's browser, to your firm's public keys. File names and the checklist are encrypted too. ShieldFive never holds the keys.

Steps

  1. Unlock your vault, open Requests and choose Request documents.
  2. List what you need for the period, one per line, naming the account and the month: "Business checking statement, September", "Credit card statement, September", "Receipts over $75", "Sales invoices issued". End a line with "(optional)" to mark it optional.

  3. Set a PIN and an expiry that covers your close date. Add the client's email if you want ShieldFive to remind them.

  4. Select Create secure link. Send the link in your month-end email or message, and give the PIN another way, such as by text or on the phone.

  5. The client uploads a PDF download or a phone photo into each slot. They can send what they have and come back to the same link for the rest. If a document came another way, or is not needed this month, mark that item received or not needed.

  6. When you are emailed that something arrived, open Requests and use Download & decrypt. Revoke the link once you have everything; received files stay in your vault.

  7. Next month, open the request and choose Send this checklist to another client to start a new link with the same list. You can reuse it for the same client or a different one.

Compared with email, file-sharing links and client portals

Collecting bookkeeping documents: email, file-sharing links, client portals and ShieldFive compared
Email attachmentsGeneric file request (Dropbox, OneDrive)Client portalShieldFive document request
Client needs an account?NoNoUsually a login; some portals also accept uploads by linkNo. A link and a PIN
List of what you needIn the email textOne upload box per requestVaries by portalOne upload slot per document, required or optional
Who can read stored filesBoth mail providers, and anyone with mailbox accessThe provider can decrypt by defaultUsually the vendor holds the keysOnly your firm. ShieldFive stores ciphertext
Turn it offCannot recall a sent attachmentClose the requestRemove accessRevoke the link, or let it expire
Also does billing, e-signature, workflowNoNoUsually yesNo. It only collects documents

Limits

  • ShieldFive does not send the link for you. Part of the decryption key is in the # fragment of the link and never reaches our servers, so you send the link yourself, and it has to arrive complete. The client-reminder email cannot contain the link for the same reason.

  • There are no recurring requests. Each month you create a new link, though Send this checklist to another client copies the list for you.

  • It collects documents. It does not connect to bank feeds, read statements or post transactions to your accounting software.

  • Clients choose files, not folders. The page has to stay open while files encrypt and upload.

  • Nothing identifies the uploader automatically. If you need to be certain who sent a document, confirm it with the client through a channel you already trust.

  • The upload page is code ShieldFive serves, so the client trusts that code at the moment of upload, as with every browser-based encryption product.

Full details of every limit are in Requesting documents from a client. For the workflow in short, see Document requests for bookkeepers, and for why email is a poor channel for financial records, Email vs secure file sharing.