Platform
The agentic platform under the finance work.
Your systems, your models, your procedures and your controls, with a record of every step.
01Connected systems
Works in the systems your finance team already runs.
Agents query your ERP, bank feeds, spend tools, CRM and data warehouse live, and change a record only through the actions you allow, once someone approves.
- Reads live, nothing copied
- Writes back, after approval
Query the data warehouse
Pull the trial balance
Read the bank feed
Match card transactions
Age open payables
Find the vendor's invoice
Post a purchase invoiceApproved
Attach the invoice PDFApproved
Update an opportunityApproved
Log a note on the accountApproved
Send the close updateApproved
Reads live, nothing copied
Query the data warehouse
Pull the trial balance
Read the bank feed
Match card transactions
Age open payables
Find the vendor's invoice
Writes back, after approval
Post a purchase invoiceApproved
Attach the invoice PDFApproved
Update an opportunityApproved
Log a note on the accountApproved
Send the close updateApproved
- Queried live, never copiedAgents query each system when the work needs it. Nothing is synced, indexed or copied into a separate store.
- Read-only where it should beMost systems connect for reading only, and database connections open a read-only session at the database itself.
- Changes wait for approvalEach action that changes a record asks for approval by default. Admins can require it for more actions, per agent.
- Nothing posts to the ERP on its ownA Business Central write needs the connection set to read-write and a one-time approval in the app, from someone with approval rights who didn't request it.
- Credentials encryptedConnection credentials are encrypted with AES-256-GCM, with the key held in AWS Secrets Manager in your account.
- Your own OAuth appsConnections sign in through OAuth apps your company owns, not an app shared across Rebase customers.
What Rebase does in each system.
Every system with tools today, and whether agents only read it or can also change records there.
Business CentralReads & writesQuery any entity, pull financial reports and document lines, and post journals, invoices and attachments once approved.
QuickBooksReadsAccounts, journal entries, bills and invoices, plus QuickBooks' own trial balance, P&L and aged payables.
OdooReadsThe general ledger and trial balance, invoices, bills, payments and bank statement lines, with AR and AP aging.
PlaidReadsAccounts, live balances and dated transactions from your banks: the bank side of every reconciliation.
RampReadsCard transactions, vendor bills, vendors and the GL accounts Ramp codes them to.
BrexReadsExpenses, card and cash transactions, statements, vendors and coding fields.
BILLReadsBills, vendors, payments and vendor credits, with an AP aging worked out from them.
SnowflakeReadsExplore schemas and query the warehouse where your operational and finance data meet.
PostgreSQLReadsQuery Postgres directly or through an SSH bastion, on a read-only session.
Oracle DatabaseReadsQuery an Oracle database directly or through an SSH bastion, on a read-only session.
SalesforceReads & writesSearch and query accounts and opportunities, and update records once approved.
Zoho CRMReads & writesQuery and search every module, log notes on accounts, and update records once approved.
GmailReadsSearch the inbox, read threads, and pull the invoice or statement attached to them.
SlackReads & writesRead channels and threads, and post the close update where your team already works.
02Skills
Your processes become skills. Every agent follows them.
A skill is a written method: when it applies, the steps and the checks. Agents load it when the work calls for it. Rebase ships a library for finance work and documents, and your team adds its own.
- Supplier invoice checkChecks an invoice against the ERP before it's paid.
- Supplier invoice recordingEnters a checked invoice, posted only once approved.
- Ledger questionsAnswers questions about the numbers, with sources.
- Invoice set reconciliationMatches two invoice lists and explains every gap.
- Month-end close taskWorks a close task from brief to reviewer.
- Excel workbooksBuilds workbooks and verifies every formula.
- Word documentsWrites memos and reports, then verifies them.
- PowerPoint decksBuilds decks and checks the layout holds.
- PDF documentsProduces reports ready to print or send.
Built-in skills ship and stay current. Write your own, or clone one and make it yours.
- A library we keep currentRebase maintains the built-in skills and updates them with every release. They can't be edited in place, so they never drift.
- Write your ownSet down how your team does a task: when it applies, the steps and what to check. Your skills sit beside the built-ins.
- Start from oursClone any built-in skill and adapt it to your accounts, thresholds and review steps.
- Assigned, not assumedAn agent uses only the skills assigned to it, and a skill can limit which tools the agent may use while following it.
- Loaded when neededOnly a skill's name and purpose sit in the agent's context. The full method loads when a task calls for it.
- Your call who shapes themCreating and editing skills is a permission of its own, so you decide who changes how agents work.
The built-in library.
Every skill Rebase ships today, grouped by the work it serves.
Close and review
- Month-end close taskWorks any close task from its brief through to the reviewer.
- Bank reconciliationTies the bank statement or feed to the cash ledger.
- Trial balance reviewChecks the trial balance and ties control accounts to their subledgers.
- Manual journal reviewTests manual journal entries for support and approval.
- Payroll accrual reviewReviews the payroll accrual against its support.
- PTO and benefit accrualsReviews paid time off and benefit accruals.
Payables and spend
- Supplier invoice checkChecks a supplier invoice against the ERP before it's paid.
- Supplier invoice recordingEnters a checked invoice in the accounting system, once approved.
- Invoice set reconciliationMatches two invoice lists that should agree and explains every gap.
- AP aging reviewReviews AP aging and searches for unrecorded liabilities.
- Vendor debit balancesReviews vendor credits, deposits and prepayments.
- Expense reviewReviews employee expenses and corporate card activity.
Analysis
- Ledger questionsAnswers questions about the numbers, with the sources.
- P&L variance analysisExplains what moved in the P&L, and why.
Documents
- Excel workbooksBuilds and edits workbooks, and checks every formula.
- Word documentsWrites memos and reports, then checks them.
- PowerPoint decksBuilds decks and checks the layout holds.
- PDF documentsProduces reports, invoices and statements ready to print or send.
03AI Gateway
Any model. Your keys. Your budget.
Every model call goes through the AI Gateway in your deployment. Choose the providers and models agents may use, bring your own keys, set spend limits and see what each call cost.
Anthropic
OpenAI
Google AI Studio
Amazon Bedrock
DeepInfra
OpenRouter
- Your own endpoint
- Bring your own keys
- Switch models any time
Daily and monthly spend limits
$186 / $1,000
- Seven kinds of providerAnthropic, OpenAI, Google AI Studio, Amazon Bedrock, DeepInfra, OpenRouter, and any OpenAI-compatible endpoint, including one you host.
- Your own keysRun on your own provider accounts and keys, switched on for your organisation during setup. Keys are encrypted at rest.
- Allowed models, per groupAccess groups list the providers and models their agents may use. Each agent belongs to one group.
- Daily and monthly limitsGive each access group a daily and a monthly spend limit in dollars. Once one is reached, further calls are refused.
- Cost on every callTokens, cost and latency are recorded for every model step and broken down by provider, model, agent and user.
- Prices you can checkCosts come from a model catalogue whose prices an admin can override to match your contract.
Keep inference in your own cloud.
Rebase runs in your AWS account. Point the gateway at a model there too, and the calls stay in your cloud as well.
Amazon Bedrock
Use models through Bedrock in your own AWS account, under the access you already manage there.
A model you host
Connect any OpenAI-compatible server you run, and agents call it like any other provider.
04Roles and permissions
Roles for the platform. Finance roles for the books.
Decide who can use, configure and approve what, down to the permission, and keep the separation of duties your auditors expect, enforced by the product.
- Dana RuizAdminControllerApproves
- Alex ChenAccountantApproves
- Mike KellerAccountantPrepares
Segregation of duties. Whoever prepared a journal entry can't approve it.
Custom roles down to the permission, and service accounts on the same roles.
- Custom rolesBuild roles from individual permissions. An admin can't grant a permission they don't hold themselves.
- Finance roles on the personMark who is a Controller and who has approval rights, apart from what their platform role lets them do.
- Separation of duties, enforcedWhoever requested a write or prepared a journal entry can't approve it. The account owner is not exempt.
- Single sign-onSign in through your identity provider over SAML or OIDC: Okta, Microsoft Entra ID, Google and others. People join by invitation.
- Service accountsGive automation API keys on the same roles as people. Acting as another user is refused unless a trust policy allows it.
- An owner who can't be locked outThe person who creates the organisation keeps every permission and can't be removed, so access can always be recovered.
05Activity log
Every change, on the record.
Sign-ins, members and roles, providers, integrations, agent changes and every write to your systems land in one activity log your admins can read.
Journal entry posted11:41
JE-4471 to Business Central · Rebase Agent
Journal entry approved11:41
JE-4471 · Dana Ruiz
Finance roles updated09:05
Alex Chen · by Dana Ruiz
Provider enabledYesterday
Anthropic · by Dana Ruiz
Sign-in succeededYesterday
Mike Keller
Append-only. No one can edit or remove an entry.
- Every kind of changeSign-ins, members and roles, service accounts, providers, integrations, agents, skills and writes to your ERP.
- Even viewing a credentialReading data isn't logged, with one exception: someone viewing a provider's credentials is.
- No edits, no deletionsThe product has no way to edit or remove an entry. It only ever adds to the log.
- Kept for a year, security for twoEntries are kept 365 days and security events 730, set for your deployment rather than by an organisation's admins.
- Read by permissionOnly people with the activity log permission can read it.
- Open any entryAdmins read the log in the app, with the detail of each change a click away.
06Agent traces
See every step an agent took, and what it cost.
Every agent run is traced: each model call, tool call, approval and sandbox step, with its timing, tokens, cost and errors, stored in your own deployment.
- llmclaude-sonnet-54m 12s
- toolskill_get7ms
- sandboxprovision_workspace5.3s
- toolbusiness_central_queryRetried
- toolbusiness_central_query906ms
- toolplaid_list_transactions610ms
- toolrun_code1.2s
Tokens, cost and errors on every span · stored in your deployment
- Every step, its own spanModel calls, tool calls, approvals, sandbox work, sub-agents and context compaction each get a span with its timing.
- Tokens and cost per stepInput, output, cached and reasoning tokens, and the cost in dollars, on every step.
- Errors, classifiedA failed step records the kind of error and its message, so a vendor outage reads differently from a bad query.
- Kept in your deploymentTraces are written to your deployment's own database. Nothing is sent to an outside tracing service.
- Payloads on your termsChoose per organisation whether traces keep inputs and outputs, and whether sensitive data is captured. It is off by default.
- Searchable in the appFind runs in the app and open any one as a timeline of its steps. Traces are kept 30 days, their payloads 7.
See Rebase work through a finance process that matters to your team.
Tell us where the work gets stuck. We’ll walk through how Rebase could help.