04

electronic invoicing

One invoice can have several readers

The map separates the regulated chain from access added by management software, accountants, banks, finance and AI assistants.

Snapshot taken on 22 August 2026. No upload, no tracker and no data transmission.

auditable model
v1.0.0
actor categories
13
zero collection
local

ACCESS MAP

Who can see your invoice?

Enable the services you use. The map separates the mandatory chain from access added by software, accountants, banks or an AI assistant.

local · no data sent

Your setup

Regulatory snapshot taken on 2026-08-22 · v1.0.0

Potential access chain

8 visible actors5 with the full document2 with data or technical access
mandatoryfull document

Your company

Authorised users create, approve or view the full document.

Internal permissions should follow actual need.source
optionalfull document

Software, ERP or compatible solution

It processes the full document when used to create, import or synchronise the invoice.

It may be separate from the approved platform that actually carries the flow.source
mandatoryfull document

Sender approved platform

It receives or creates the invoice, runs checks, routes it and extracts tax data.

The visible brand may rely on a support platform.source
mandatorypotential technical access

Infrastructure and any subcontractors

They may have potential technical access to service data.

Technical access does not mean routine human reading.source
mandatoryrouting only

Central directory

It identifies the customer platform and receiving address.

Its purpose is routing, not invoice content.source
mandatoryfull document

Recipient approved platform

It receives the full document and makes it available to the customer.

One PA may hold both roles when both companies use the same operator.source
mandatoryfull document

Customer company

It views the invoice, may refuse it and processes payment.

Purchasing, approval and accounting rights may be separated.source
mandatorystructured data

Tax authority

It receives the structured file, statuses and, where relevant, transaction and payment data.

This is not necessarily the PDF or complete file exchanged between platforms.source
Method and limitations

This map describes access categories. It does not replace your provider contract, DPA or audit.

// what the tool shows

Possible access

The result distinguishes full documents, structured files, routing and technical access. It also identifies mandatory and optional branches.

// what it cannot know

Your real architecture

Only your contract, DPA, subprocessor list and account permissions can identify the exact organisations and people accessing your data.