Email Settings - Set which users to receive Bank account change notification
Ability to select which users receive the notifications when there are changes to a Bank account.
Purpose: Ensure that the right users are informed and can review. Acts as a useful audit, and prevent risk of fraud.
-
Jack Moore
commented
As part of our organisation's security and compliance measures, we need to ensure an extra layer of protection when it comes to bank account changes. To enhance the security of our financial transactions, we urgently request the implementation of an independent email notification system.
Specifically, we need Xero to send an automated and independent email to our designated senior manager whenever a bank account change request is initiated or processed through the platform. This additional notification will serve as a crucial safeguard against any unauthorised or fraudulent activity related to our finances.
Extremely disappointing that a platform like Xero already does not have this feature and that customers have to request it. This “idea” was raised in March 2022, it is now August 2023. One would think this is an easy feature to include. All other systems I have used have this “feature” already built in.
Why do we need to vote? This is a compliance issue, not a nice to have. -
Kiki Paul
commented
Really important internal financial control!
-
Tara Osborn
commented
Essential for audit purposes! Thank you
-
Penny Brown
commented
Xero Admin Team - do you have an ETA on this IDEA!!!!!
-
Tara Osborn
commented
required for our audit purposes
-
Kyle Stutter
commented
Agree
-
Tacia Strawbridge
commented
This is an important and simple governance feature against fraud and should be considered as a priority.
-
Rachel Armishaw
commented
I'm very concerned that this is not already a feature. I have previously been an MYOB user where this is standard. This leaves payees in the system very vulnerable to having their bank account details changed and those approving payments not being alerted. Please let me know if you are going to consider this as an update.
-
Ann-Marie Tulloch
commented
A must for financial controls in a business. As Finance Director for a £20m turnover business I need to know if one of my finance team members changes a bank account. We use bulk uploads to the bank so there's little other opportunity to pick up changes without trawling through the assurance dashboard, which cannot be filtered by date to focus on one financial year at a time.
Critical that a bank account change notification is sent to nominated individuals, not all bank admin as this can include and involve far too many people in the finance team with unnecessary email traffic.
Critical that the assurance dash board can be filtered by date or financial year. I don't need to see assurance for events that happened years ago.
-
Michelle Gradwell
commented
This isn't already happening, how insecure is this!. Yes get this done asap.
-
Penny Brown
commented
Get this done ASAP! For an accounting software product not to have this already implemented is beyond me. Worked in many accounting products and this was never an "idea" I had to ever vote on. Accounting 101...
-
Ian McIntosh
commented
Update - my new work around is to add an email rule at the Office 365 - Exchange Admin level. That way any email from Xero re a Bank Account change comes direct to me. If you use a bookkeeper that logs in with their own email I suggest you make them login with an email that you control.
The above only covers Contacts that have existing bank details changed.
As you don't get emails when new or existing Contacts have bank details added for the first time you really need to run the "History and Notes" screen report. (Accounting menu --> Advanced --> History and notes). In the Item section select "Contact", then search (Ctrl + F) for "bank" and you'll be able to locate all bank account changes with a link to the Contact that was changed.
-
Accounts NPS
commented
notify the person changed the bank account is useless if this is meant to prevent hacking and stealing
-
Ian McIntosh
commented
It's a no brainer way to protect businesses. Currently notifying the person who changes the bank details is like telling a burglar you've successfully set yourself up to burgle a house. The notification MUST go to another Admin. In my analogy, the homeowner, so they can take precautions.
I lost almost $2K to this issue as a below average bookkeeper changed a contact's bank details to another supplier's bank details. The bookkeeper was notified but I wasn't. Unfortunately, the recipient of the funds spent the money before we found out and we could only claim about $200 back from them after 12 months and a lot of trouble. We're a not for profit and the auditor was shocked by this weakness in Xero.
My work around now is to use an email rule in the staff member's Outlook program that auto forwards the Xero bank account change email to me. This isn't foolproof though.
Please safe guard businesses by having the supplier bank account change email go to both the user and the nominated admin(s). It just commonsense.
-
Nick Katris
commented
this is really important with phishing attacks being so prevalent
-
Shannon Toomey
commented
This would be a great feature to add to help try and stop fraud
-
Flora van der Meer
commented
Not sure why this feature is not already available. Would be a massive help to prevent fraud.
-
Stephen Tulevski
commented
Currently there is no secure link between our bank account and Xero. If our Xero account was compromised, the account details on the invoice could be altered to a fraudulent account. I would like to see if it is possible for clients to verify the authenticity of the account on the Xero invoice? Our business only uses one bank account and was hoping there is some capacity to verify the bank account linked to our Xero account.
-
Stephen Martin
commented
I receive notifications when a payroll account is changed by our bookkeeper so I am dumfounded that the same practice can't be implemented for changes to contact bank accounts. As a chartered accountant I can tell you this is a massive hole in Fraud prevention and needs rectified ASAP.
-
Alicia Smith
commented
Very frustrating receiving hundreds of these notifications because you are the person who administers Xero file access for an accounting firm. I don't need to know when a client's employee changes their bank account.