Email Settings - Set which users to receive Bank account change notification
Ability to select one or two users to receive the notifications when there’s some changes in a Bank account.
Purpose: Because some staff in Xero doesn’t need to know if there’s changes within the bank account.
-
Les Harvey
commented
I've been chasing for some years. Maybe if Xero used their own product to run one of their own businesses it would be higher up the priority list!
-
Lisa Rogatski
commented
I definitely agree with Miléna Hubert, this is critical. The notification should be instantaneous not something you have to search for in a report somewhere.
-
Miléna Hubert
commented
As a CFO, I can't understand why this is not a Critical fix to do. Segregation of duties is one of the key pillars of healthy finance teams and we take this very seriously.
-
Rachel Armishaw
commented
This is extremely disappointing that the product team are not planning for an update that is very much in demand. Security of payments should be a priorty for any accounting system.
-
Matt McAlpine
commented
I agree, this is really dissapointing, and seems an easy fix. The person making the change does get an email notification, so not sure why it would be difficult to extend that to advisors also. We get asked about this at each of our audits.
MYOB has this feature, and we may need to switch back to using them, at least they take security seriously.
https://www.myob.com/au/support/myob-business/product-account/ways-you-can-protect-your-accountright-company-file/accountright-settings-have-been-changed-email-notification -
Kyle Stutter
commented
I appreciate the update but agree with others that this is a critical feature. It is separation of duties 101. Sadly, Xero is not the company it once was.
-
Genevieve Loving
commented
Thank you for your response regarding the visibility of changes to supplier bank account details.
We appreciate the transparency around this not being a current development priority. However, we would like to reiterate that this feature is not simply a “nice to have” — it is a critical security measure. As a small business, we rely heavily on Xero to safeguard our financial operations, and unfortunately, the lack of a clear and proactive audit trail for bank account changes exposes us to significant fraud risk.
While we understand that bank account admin permissions and the Assurance Dashboard provide some level of control, they do not go far enough. What is missing is immediate visibility, notification, and alerting when sensitive changes are made — particularly in the context of rising cyber threats and internal fraud risks.
We urge your product team to reconsider the priority of this feature, not just as an enhancement, but as a fundamental part of financial governance and small business protection. Xero has built a reputation on trust and reliability — addressing this gap is essential to maintaining that trust.
-
Graeme Teasdale
commented
@Kelly Middleton given you understand the appetite for it from your paying customers and I'm guessing that you understand the security and compliance issues that not having this causes, why does Xero choose not to implement it?
I get an email every time an employee changes their bank account so why can I not with a change to contact bank details?
Regarding the Bank Account Admin Permission and this statement
- If you change any digits of a contact's bank account, you’ll receive an email notification to check that the change is valid.
In this instance, and please correct me if I'm incorrect, but the User who changes the account is the person who gets the email. That is utterly pointless regarding preventing fraud.
As a business owner who has been the victim of fraud due to the actions of an employee at an accounting firm, the above options you suggest are only great after the fact, only after the fraud has been discovered, we are wanting security functionality to prevent fraud. Why does Xero have no appetite to do this?
-
Genevieve Loving
commented
I find it odd that this very small measure it is not implemented by a program that cites being security conscious
-
Cherie Wood
commented
Was this not already a notification that used to happen? If so then why was it removed?
-
Matt McAlpine
commented
Hi, I fully support this proposal, and hope it can be implemented asap. I believe MYOB has this functionality? There has been a lot of fraud cases in news recently in regards to changing supplier bank accounts, or adding new suppliers, this would be another step to increasing visibility on any activity like this.
-
Felicity West
commented
This shouldn't be too difficult to implement.
-
John Sheehan
commented
Yet another basic thing Xero SHOULD do, but doesn't, so try exporting a list of emails to excel, then grab the email list by selecting all the emails in that column and drop into Outlook email BCC and it will intuitively list them for bulk use.
-
Beryl Barras
commented
We are a relatively large organisation any being notified of changes in bank accounts for suppliers would streamline our invoice approval process significantly and reduce the potential for fraudulent behaviour.
-
Gareth Talamini
commented
Please implement this! Agree with the other requesters that this function is an important anti-fraud measure.
-
Megan Renshaw
commented
Following this up! Very important. It already happens for Payroll Changes, should be implemented for all bank changes.
-
Renee Auckram
commented
Hi Xero - Has this functionality been added as yet? This thread began in 2022 and surely should be considered as critical as it pertains to financial security. As with many comments below, the ability to nominate who receives this notification is essential. Looking forward to receiving an update.
-
Melody Deng
commented
Please implement, it's critical to improve internal controls.
-
Penelope Gardiner
commented
Please implement, to strengthen internal controls of Xero.
-
Samantha Davies
commented
As the accountant and the administrator, I find it bizarre that the person changing the bank details gets the notification and not a nominated individual/Group.
There is no blocking on Xero for us to stop people editing just the bank details so anyone can change it and for me to verify the bank details we have to take this offline so we can make sure nothing has been amended. This functionality surely needs to be added.