# Who can see your documents

> Only the people in your account, according to their role, and whoever you authorise on a specific application. Our staff, only for the human review you bought.

- Canonical: https://help.enisa.ai/en/seguridad-y-privacidad/quien-puede-ver-tus-documentos
- Updated: 2026-08-08
- Language: en-US
- Versión en español: https://help.enisa.ai/seguridad-y-privacidad/quien-puede-ver-tus-documentos.md

Your documents on enisa.ai are seen by **your people, and no one else**: the people in your account according to their role, whoever you authorise on a specific application and — only for the human review you bought — the assigned consultant. Here is the detail of what each case means.

## Your account is a sealed compartment

Everything you upload belongs to your account, and only your account's users can see it. There is no case in which another enisa.ai customer sees your documents, your analyses, or your applications: every request to the system is checked against your account, and what is not yours does not exist for you.

Within the account, access follows the [roles you have assigned](/cuenta-y-facturacion/invitar-usuarios-y-roles): a member only reaches the companies they are added to, and within each company their role defines whether they manage, edit, or only read.

## Access from outside your account: only if you grant it

An external person (an advisor, your accountancy firm) can be given access to **one specific application** — as a collaborator or view-only — without joining your account. They see that application and nothing else: not your other documents, not your companies, not your billing. Every grant is explicit and revocable; when revoked, their access dies on the spot.

## What about the enisa.ai team?

Our staff **does not browse your data**. The exception is the one you purchased: when you buy an application with **human review**, the consultant assigned to your file accesses that application to review it — that is literally the service. That access is individual, tied to your specific application, and recorded like any collaborator's.

## Sessions and passwords

If you suspect someone has access to your user:

1. Go to **Settings → My user → Password**.
2. Change the password. Changing it **closes all your open sessions** on every device, including the current one.
3. You can also click **Close all sessions** without changing the password.

And if the extra person is an invited user, remove them from **Users**: they lose access immediately.

## Common issues

### My advisory firm manages several companies — do they see other clients' data?

Each account is independent. Your firm sees your account with the role you gave them, and their other clients' accounts with the roles those clients gave them. Nothing mixes.

### Can I see who changed what in an application?

Yes: the application records the activity and changes of every person with access.

### I revoked someone — are they really locked out?

Really. Revocation takes effect immediately; for that person, the file ceases to exist.
