Security & Trust

Your commercial data — protected, and in your control

Tibr Enterprise holds your estimates, costs, margins and client positions. Access, approvals and integrations are built so the right people see the right things, and every committing action leaves a trail.

Role-based access

Regular users, client admins and a restricted super-admin tier. Sensitive areas — PO/SCO admin, authorisation tiers, default quote items — are locked to the top tier, and per-user permissions (like Can Approve Invoices) gate who can do what.

Authorisation tiers

Purchase orders, subcontract orders and internal variations can require sign-off before they commit. A minimum-GP rule refers under-margin quotes to an authoriser, and the authoriser cascades from team to company default.

Audit trail & undo

AI Edit operations are reviewed before they apply and can be undone. Applying tender prices to an estimate is audited and reversible. Variation status and approvals are recorded — so you can always see who changed what.

Secure integrations

Xero and Sage 50 connect over OAuth — Tibr never stores your accounting password. Tokens expire and are reconnected in a click, and invoice push is scoped to the contacts you authorise.

AI data handling

Files you drop into AI Edit are processed securely and deleted after the session. You choose the model per task, every AI change is reviewed before it commits, and admins can see organisation-wide AI usage.

Tenant isolation

Every company's data is scoped to its own tenant. Modules such as Tibr Intelligence are opt-in per company, so your commercial figures are never visible outside your organisation.

Control where it counts

Nothing commits — or erodes — without you seeing it

The same controls that protect your security protect your margin. Approvals gate spend, the overspend report flags drift, and reconciliation keeps the number you quoted and the number you make in view.

  • Approval required before a PO or SCO is issued
  • Under-margin quotes referred for sign-off automatically
  • Internal variations approved by email before they count
  • Re-syncing Xero never silently un-matches your invoices

Every committing action, accountable

  • Who raised it, who approved it, when
  • Reviewable AI operations with one-click undo
  • Audited, reversible tender-to-estimate updates
  • Client-position status tracked on every variation
Hosting & data

Hosted on enterprise cloud infrastructure

Tibr runs on managed cloud hosting with encrypted connections, regular backups and isolated tenant data. If you have specific requirements around data residency, retention or access policies, we'll work through them with you before you commit.

Due diligence welcome

Bring your security questions.

We're happy to walk your IT and commercial teams through access, approvals, integrations and data handling.