Skip to content

Ten questions before you connect Claude to Tally

Where client data goes, what it can change in your books, what it costs and who answers if something goes wrong.

Tapish Khandelwal·3 October 2026·For release 0.4.1·12 min read

ComplyEaze Bridge is an open-source extension that lets Claude Desktop read the TallyPrime on your own computer. These are ten questions to put to any tool like it before it goes near client books.

Release 0.4.2 is out. This post describes release 0.4.1. If you install 0.4.2:

  • Remove the older extension in Claude Desktop first: 0.4.2 installs beside an older one instead of replacing it (seen with 0.4.1 on a Mac and expected for earlier versions; not tried on Windows). Keep ComplyEaze Bridge’s data folder, which both versions use.
  • Enter your settings again, including the Terms setting, which every tool needs. Posting starts off, and Response redaction starts at none, so set it again if you had shortened or masked names.
  • Its posts no longer tag the narration, and it matches a posted voucher another way. Check what it posted with verify_import, never voucher_presence, before entering anything again by hand. The one-voucher post the extension makes has not been run live with this matching. From the first post 0.4.2 sends to Tally, even one Tally refuses or never answers, do not run 0.4.1 or earlier on that computer: they stop preparing, posting and checking vouchers.
  • If you asked 0.4.1 or earlier to read a ledger, such as its movement or vouchers, by a name that differed from its spelling by a symbol, an accent or words run together, the figures may be for a different ledger with the same letters and digits. Ask again with 0.4.2.

The changelog has the rest.

The answers are for release 0.4.1. They come from our own README, Security and privacy page, Privacy Policy and Terms of Use, and the security answers rest mostly on reading the source of release 0.4.0. Where we have not measured something, the answer says so.

The short version

What Claude reads goes to your AI provider, and we do not receive it through ComplyEaze Bridge. Posting into Tally is off in a new installation (check it if you upgraded), and ComplyEaze Bridge cannot undo a post; you correct it in Tally. Nobody independent has audited its security.

1Does ComplyEaze see my client’s books?

Through ComplyEaze Bridge, we do not receive your client’s Tally data. Our Privacy Policy says we receive none of your Tally data, your conversations or the files the extension keeps on your computer, unless you send something to us yourself, for example in a support request or bug report. We read the code of release 0.4.0 for anything in ComplyEaze Bridge’s own code that uploads data or reports usage, and found nothing. For 0.4.1 we updated only the answers its changes altered: network destinations and what it reads and installs. That was a reading of the source. We have not captured the network traffic of the running program, we have not measured whether the PDF library bundled in the package (PDFium) opens any connection, and nobody outside has audited it.

Point at, or tab to, a step to see it in the picture.

Your computerClaude Desktopwhere you askComplyEaze Bridgeruns hereTallyPrimeyour client’s booksthe logYou123456the conversation leaves: your question (step 1), then the answer (step 6)Your AI providerAnthropic, for ClaudeYour computerClaude Desktopwhere you askComplyEaze Bridgeruns hereTallyPrimeyour client’s bookslogYou123456Your AI providerAnthropic, for Claude
  1. You ask Claude Desktop. Your question goes to your provider as part of the conversation.
  2. Claude calls a tool in ComplyEaze Bridge, which runs on your computer.
  3. The tool asks TallyPrime through Tally’s own connection, at an address that means “this computer”.
  4. Tally answers, and a line goes into a log on your computer.
  5. The answer goes to Claude Desktop. It can hold a party’s name and an amount.
  6. Claude Desktop sends it to your AI provider, as part of the conversation. This is where what it read from the books leaves the computer.

Besides your AI provider, we know of two other routes. If you forward Tally’s port, the traffic follows that forward. And releases 0.3.0 and 0.4.0 had a flaw with Windows network paths that could send your Windows sign-in response to another computer (no Tally data). Release 0.4.1 refuses a path that begins with two slashes or backslashes, but not a mapped network drive, a link or a mounted network volume, so remove 0.3.0 or 0.4.0 and install 0.4.1 or later, and keep statements and password files on the computer’s own disk.

Both routes in detail

If you forward Tally’s port, as some Mac users do to reach a Windows virtual machine, the traffic between ComplyEaze Bridge and Tally follows that forward. And in 0.3.0 and 0.4.0 the bank-statement tool could be given a Windows network path, meaning a file on another computer. Windows then connects to that computer and may send the signed-in user’s network sign-in response to it. No Tally data goes. It needed the assistant to be talked into using such a path, your approval of that call or an “always allow” setting, and outbound file-sharing or WebDAV traffic. Release 0.4.1 refuses a path that begins with two slashes or backslashes. A drive letter mapped to a network share, a link partway along a path, and on a Mac a mounted network volume still pass, so keep statements and password files on the computer’s own disk. If you have 0.3.0 or 0.4.0, remove it and install 0.4.1 or later. The extension does not check for updates itself. The advisory is GHSA-vm5g-r3p7-wxx7, rated medium (low on macOS).

2What does my AI provider see, and can I hide it?

It sees whatever Claude reads through the extension. For Claude, that provider is Anthropic. Depending on what you ask, that can be company, ledger and party names, vouchers with dates, amounts, narrations and GSTINs, outstanding bills, the trial balance and other statements, PAN and bank account details, the contents of a bank-statement PDF you ask it to read, and file locations that usually include your computer user name.

One setting, “Response redaction”, helps a little. It can shorten party and ledger names to their first two and last two characters, or it can remove narrations. It cannot do both. It does not mask amounts, company names, GSTINs, PAN numbers, references, email addresses, phone numbers, postal addresses, IFSCs or group names, and a name written inside a narration stays as it is. A shortened name can still point to a person. Out of the box, nothing is masked.

Change the setting and see a simplified view of what your AI provider receives. A Receipt from the site’s synthetic demo book; the narration was added for this example.

A simplified view of the answer your AI provider receivesReceipt · 12 March 2026
Company
Demo Traders Pvt Ltd (synthetic)never masked
Party
Nevrika Agro FoodsNe…ds
Ledger lines
Dr Example Bank LtdEx…td₹1,24,600.00never maskedCr Nevrika Agro FoodsNe…ds₹1,24,600.00never masked
Narration
Received from Nevrika Agro Foods against bill 112removed from the answerA name written inside a narration is not shortened.

Out of the box, nothing is masked.

Party and ledger names are shortened to their first two and last two characters, by the extension’s own rule; a name of four characters or fewer becomes “…”. The data is not anonymous.

Narrations are removed, but names stay in full. You cannot choose both.

“Response redaction” is a text field in the extension’s settings: you type one of the three values shown under the buttons exactly, and any other value stops the extension from starting.

Changed by the setting. Not masked by either setting, including amounts, company names, GSTINs, PAN numbers, references and contact details.

Whether your provider keeps this, trains on it or processes it outside India depends on the provider, your plan and your settings. We do not know yours. Ask it three things: Is it kept? Is it used for training? Where is it processed?

3Do I need my client’s permission?

Our Terms and Privacy Policy put that on you. You need each client’s authority to access their books with ComplyEaze Bridge and to share their data with your AI provider, and you must give any notice or get any consent that the law or your engagement requires. The Terms also make you responsible for any professional duty of confidentiality that applies to you, and name the Chartered Accountants Act, 1949, the Digital Personal Data Protection Act, 2023 where it applies, and your professional body’s code of ethics. We cannot tell you what your engagement letters should say.

4Can it change my books?

Reading does not write to them. Posting is off in a new installation. If you upgraded, check the setting, because an earlier default may still be saved as on.

When posting is on, it handles one Journal, Payment, Receipt or Contra voucher at a time. Each one waits for your approval in a separate window on your computer. An approval is used once, lasts at most fifteen minutes, and is dropped if the program restarts. No ComplyEaze Bridge tool lets the assistant approve a post, but software that can control your screen could still click the button, so do not run such software while a post is waiting. It creates no ledgers and posts no sales, purchase, tax or inventory entries.

Its requests can make Tally slow or unresponsive, sometimes until Tally is restarted, and that can affect other people on a shared Tally.

  1. Off

    Posting is off in a new installation. If you upgraded, check the setting.

  2. Waits

    Each voucher waits for your approval in a separate window on your computer.

  3. You approve

    An approval is used once, lasts at most fifteen minutes, and is dropped if the program restarts.

  4. Tally posts

    There is no undo; you correct it in Tally.

  5. Read back

    It does not compare every detail, and a match does not mean the entry is correct, complete or compliant.

One voucher, from off to read-back, as questions 4 and 5 describe it.

5What if it posts something wrong?

There is no undo. ComplyEaze Bridge has no tool to delete or reverse a voucher it posted, so you correct it in Tally. After a post it reads the voucher back and shows what arrived. A match means the details it compared were the same. It does not compare every detail, and it does not mean the entry is correct, complete or compliant.

A post can also land in the wrong place if a company or ledger is renamed, replaced or loaded in Tally at that moment. Leave companies and ledgers alone while a post is waiting. Take a backup, and try a test company first.

6Will it work with my Tally and my computer?

Windows (x64)Published for
Apple Silicon MacsPublished for TallyPrime must run on that same Mac, in a local Windows virtual machine or through approved local forwarding.
Intel MacsNo Not supported.
TallyPrime on the same computerNeeded With its HTTP gateway turned on.
A Tally on another machine, or Tally Cloud AccessNo It connects only to an address on your own computer.
A base currency other than INRNo Not handled; books with several currencies have further limits.
Very large booksLimits Reads can fail or take longer than the assistant waits.
TallyPrime editionsLimits Run on Silver 7.1 and Gold 7.1, mostly on synthetic companies; our README records no other named edition.
What it runs on, from our README and Terms.

You cannot point it at a Tally on another machine or at Tally Cloud Access. If Tally’s port is forwarded elsewhere, the traffic follows the forward and ComplyEaze Bridge cannot tell. Do not forward it across the internet. It is not yet code-signed, so your computer may warn you before opening it.

7What does it cost?

ComplyEaze has not set a price for it. We do not sell licences to it, and there is no account, subscription or licence key with us. The code of a release you download stays under the licence it was published with, Apache-2.0 for current releases. We have not decided whether to charge for anything in future.

You bring your own TallyPrime licence and a Claude Desktop plan under Anthropic’s terms. On 1 October 2026 we ran a candidate build of 0.4.0 (not the published file) on Windows with a Claude account that had no paid plan, on one synthetic company, and we make no claim about other plans or larger books. We do not promise support or updates.

8What has been tested?

Before each release we check that the package starts, lists its tools and parses a synthetic encrypted bank statement. That check does not run against TallyPrime.

The runs named in this answer, in short
  1. September

    An unpublished macOS build

    Reads ran on an unpublished macOS build in September, and not every read has its own recorded run.

  2. Late September

    Development builds

    Posting ran on development builds (22 to 28 September).

  3. 1 October

    A candidate build of 0.4.0, Windows 11, TallyPrime Silver 7.1, one made-up company

    With the Terms setting off a call was refused and nothing was read, and with it on six tools answered. We declined one post in the approval window and nothing was sent. We approved another, and Tally took one Journal, which the read-back found. That was one run. The record is our notes and screenshots, which we have not published.

  4. 2 October

    A Mac, a CI build of 0.4.1

    Two tools have answered through Claude Desktop once, after the Terms setting was on; that is not yet a controlled test.

Against a real TallyPrime, our README lists the runs one by one, mostly with the build, the Tally edition and the date. This log restates the ones named in this answer; none of them is a controlled test of every path.

We have not yet run the published 0.4.1 file in Claude Desktop. We have not yet run, in a controlled test, posting with a published package against a live TallyPrime, each way of declining in the Windows approval window (we tried one), posting on TallyPrime Education, or posting on Gold with its approval step recorded.

9What does it leave on my computer, and how do I remove it?

It keeps files on your computer. A log keeps entries for every result: the time, the tool, Tally’s internal code for the company, sizes and fingerprints. It is designed to hold no amounts or names, though sizes can hint at a name’s length, so treat it as confidential. The import journal, the import files and the bank-statement proposals do hold amounts and names, unmasked.

None of it is deleted automatically, and removing the extension may leave it behind. Do not simply delete the folder. The journal is how ComplyEaze Bridge refuses to send a recorded batch twice, and how it reports on a post. Check Tally, then move the whole folder into an encrypted archive; section 7 of the Privacy Policy gives the steps. On a Mac the folder is restricted to your user. On Windows it takes the folder’s normal permissions, and we have not measured what that comes to. Administrators and backup software may be able to read it, so use a device password and full-disk encryption.

You can ask the extension what it has stored. That report counts files and their age and deletes nothing. To stop posting, switch “Allow voucher posting” off in the extension settings and restart Claude Desktop. We have not measured whether the restart is needed.

  • The log

    The time, the tool, Tally’s internal code for the company, sizes and fingerprints. Sizes can hint at a name’s length, so treat it as confidential.

    No amounts or names, by design
  • The import journal and import files

    Copies of the vouchers it prepared or posted.

    Amounts and names, unmasked
  • Bank-statement proposals

    Voucher proposals from bank statements.

    Amounts and names, unmasked
What it keeps on your computer, from the answer to question 9.

10Has anyone independently checked it, and who answers if it goes wrong?

Nobody independent has audited it. We run checks in CI and the code is open source, but that is not an outside review. It is not code-signed or notarized. Each package has a SHA-256 file and a provenance record, and from 0.4.0 a build attestation, which says which workflow run and commit produced a file. It does not say the code is safe.

Our Terms provide it “as is”: Claude and the extension can be wrong, nothing either produces is accounting, tax, audit or legal advice, and you check results in Tally before you rely on them. The Terms also limit our liability, including for loss caused by Claude or Tally, and require you to cover some claims against us, including your clients’. The Questions page answers “How far does your liability go?” and “Who pays if my client makes a claim?” in plain words; sections 13 to 15 of the Terms are what apply. Indian law applies, and disputes go to the courts at Alwar, Rajasthan (section 18). Read sections 13 to 18 before client work.

If you try it, take a backup, use a test company first, and check what you get in Tally.

Take the ten questions to any tool

The same questions, for any vendor. Tick them off as you get an answer; the list prints on its own.

ComplyEaze Bridge is not a product of, or endorsed by, Tally Solutions, Anthropic or ICAI. Email contact@complyeaze.com · Questions and answers · Download and release notes · Terms of Use · Privacy Policy · Security and privacy · Security policy

Read next

Who approves a post to TallyPrime, and what is still weak

ComplyEaze Bridge is an MCP server for TallyPrime. Posting is a separate setting, off for a new install. When it is on, a native window asks a person to approve each voucher.