Proposed Enhancements for Data Security in Tally

Discussion in 'Tally Developer' started by kishan agrawal, Nov 26, 2023.

    
?

What are your thoughts on the proposed data security enhancements for Tally

Poll closed Dec 3, 2023.
  1. Strongly Support

    75.0%
  2. Support with Minor Changes

    25.0%
  3. Neutral

    0 vote(s)
    0.0%
  4. Oppose with Reasons

    0 vote(s)
    0.0%
  5. Strongly Oppose

    0 vote(s)
    0.0%

  1. 2.1.png I'd like to share some ideas for potential enhancements to Tally's data security features. These suggestions aim to provide stronger protection and control over sensitive financial data.

    1. Email ID-Specific Data Access:

    • Proposal: Data in Tally should be accessible only through the specific email ID entered during the setup or designated in the settings. This means that if a user tries to access the data, they must use the registered email ID, adding a layer of security.
    • Benefit: This ensures that only authorized users can access the data, reducing the risk of unauthorized access and data breaches.
    2. Mandatory Online Verification for Data Access:

    • Proposal: Implement a system where Tally must be connected to the internet to access data. This connection would facilitate real-time verification and authentication before data access is granted.
    • Benefit: Such a system would prevent unauthorized offline access to data, making data theft or misuse more difficult.
    3. Email Alerts for Data Access:

    • Proposal: Set up an alert system where the data owner receives immediate email notifications whenever their data is accessed. These alerts should include details like the time of access and the email ID or Tally serial number used for access.
    • Benefit: This feature would enable data owners to monitor access to their data in real-time, providing an additional security layer and immediate notification in case of any unauthorized access.
    The implementation of these features would greatly enhance the security and integrity of data within Tally, offering reassurance to businesses and individuals about their data's safety and privacy.

    I believe these enhancements align well with the evolving digital landscape and the increased need for robust data security measures. I look forward to hearing the community's thoughts and feedback on these suggestions.








    Poll Title: Your Opinion on Proposed Data Security Enhancements in Tally

    Along with my post on suggested enhancements for data security in Tally, I'd like to gather your opinions through this poll. Your feedback is valuable in understanding the community's perspective on these proposed changes.

    Question: What are your thoughts on the proposed data security enhancements for Tally?

    1. Strongly Support: I believe these enhancements are crucial for improving data security in Tally.
    2. Support with Minor Changes: I agree with the proposals but have some minor suggestions.
    3. Neutral: I'm undecided about the effectiveness of these enhancements.
    4. Oppose with Reasons: I do not agree with the proposed enhancements and will explain why in the comments.
    5. Strongly Oppose: I believe these enhancements are unnecessary or could negatively impact Tally's usability.
    Instructions for Participation:

    • Please select the option that best represents your view.
    • Feel free to elaborate on your choice or provide additional suggestions in the comment section below.
    • The poll will remain open for [specified duration], and I encourage everyone to participate and share their views.
    Thank you for your time and input. Your feedback is crucial in shaping a more secure and user-friendly Tally experience.
     
    sattam likes this.



  2. The Core Issue:
    In the current business environment, especially after the introduction of GST in India, there's an increasing reliance on computer operators for data entry and management. This reliance becomes a vulnerability when we consider the high turnover rate in such positions. Employees often switch jobs, leaving their roles after just a few months. This frequent change brings in new individuals who need access to sensitive financial data.

    The Security Risk:

    New Personnel Access: Each time a new operator is introduced, they need access to the existing data for continuity of work. This necessity creates a point of vulnerability, as each new person brings a potential risk of data mishandling or misuse.

    Ease of Data Transfer: The current system in Tally, although secure to an extent, does have loopholes. An operator with access to sensitive data can easily copy it onto external devices like pen drives or send it via email. This ease of data transfer poses a significant threat to the confidentiality and integrity of financial information.

    Lack of Traceability: Once the data leaves the secure environment of the office computer or network, tracking its spread or misuse becomes nearly impossible. This lack of control and traceability is a major concern for businesses that handle sensitive financial data.
     
    sattam likes this.


  3. NiravMerchant

    NiravMerchant Active Member


    2.
    good thought but few of security is Already Available in Maker
    1- OTP Login for Users.. - which give addl security and log of User's login
    when ever user Open's of Tally, he/ she will be asked for OTP to access data.
    2- Data freeze : The Add-on will make Data More secure - as it binds the data on Mahine ID - and there are some questions asked to Admin in Co Creation/ Alteration screen. so with the combination of Machine id, Tally serial No. and Security question it is securing the data.
    so even if Any User Copies the data / even the person knows admin level pwd.. he cannot open the data

    U can check on Internet- if it might help
     


Share This Page