Announcing Changes to Receipt URL Permissions

We wanted to take a moment to update everyone on a change we made to improve the security of receipt URL links in Expensify.
Going forward, users can only view receipts if they have sufficient permissions needed to view receipt images via the receipt URL. This directly affects customers who share receipt URL links for invoicing or auditing purposes.
What’s changed?
As of November 4, 2019, receipt URLs will only display receipt images to individuals with the required permissions. If you do not have the necessary permissions to view a receipt, you will receive a 403 error and the following message.
Permissions needed to view receipt images via URL
In order to view receipts via URL, you must meet at least one criterion from the list below.
You are the receipt owner
Be an auditor of the policy the receipt is submitted on
Be an admin of the policy the receipt is submitted on
The report submitter has shared the report with you
FAQ: I’m sharing receipt URLs with clients, how do I get them access to view the receipts now?
Sharing receipt images with others is an important functionality for many customers. To preserve the security of your expense information, it will now be necessary to ensure your client or auditor has access to the receipts in Expensify. You can do this in one of three ways.
Work with your IT department to grant the client or auditor an email they can use to access Expensify and the receipt images. This account will need a policy invite and the auditor role view receipt URL images.
If they already have an Expensify account, you can grant that account the necessary permissions to view receipt images. The account will need a policy invite and the auditor role at minimum to view receipt URL images.
If you don’t want to add them to your policy, you can ask them to create a free account using their email. Then, once this account exists, the report can be shared with them to grant them access to view receipt URL images.
A more manual alternative would be to download receipt images individually as needed by clicking the following button on an individual receipt:
Comments
The 2 proposed approach are not going to work for us
Can you please switch this feature OFF?
Else we might need to look for another expense management system.
- Spam
- Abuse
- Report
6 · Accept Answer Off Topic Insightful 6Vote Up AwesomeThis will be unmanageable for us.
An option to allow "public receipt sharing" should be made available per account/policy or a tie in with a cloud storage bucket could be made, images would be written to this bucket and the client can control these permissions.
- Spam
- Abuse
- Report
5 · Accept Answer Off Topic Insightful 5Vote Up AwesomeThe new receipt sharing options offered are not feasible for how our organization bills some expenses back to our customers. You expect an AP department at an organization that does not use Expensify to just set up a free account to view receipts- like it's that easy and they do not have to go through security processes on their end before starting to use a new software?
Have current Expensify customers asked for receipt security? This is the perfect example of how out of touch Expensify is with customers and how expense information is used.
- Spam
- Abuse
- Report
4 · Accept Answer Off Topic Insightful 4Vote Up AwesomeI would really like to advocate for you all and was hoping you could answer a few questions for me so I can share this feedback?
- Who is the main user of receipt URLs -- Is this a client, an auditor, or someone in your company who doesn't necessarily use Expensify?
- How are you currently utilizing the receipt URLs -- Are you exporting them to a spreadsheet and sharing a spreadsheet with your client?
- If you're sharing them with clients, how is the client using them? What are they using them for?
- If you knew that receipt URLs were going to stay secured as they currently are now, what other tools in Expensify would you need to continue using the system?
Thanks so much for the valuable feedback and for getting back to me!- Spam
- Abuse
- Report
0 · Accept Answer Off Topic Insightful Vote Up Awesome2. Receipt URLs are exported to a spreadsheet and are included with all of the expense details. A lot of our customers are public universities, so EVERY receipt is required to receive reimbursement for the travel expenses.
3. Our customers require EVERY receipt, and are using them to verify the expenses that are submitted. Sharing a link and having them open it to view the receipt was very convenient.
4. I really hope receipt URLs do not stay secure- what is the need for this? To continue using the system, a way to select expenses and download all selected receipt images to a PDF would be ideal in place of sharing a link. However, I do not follow why the link needed to be changed.
How was this changed effective 11/4 and communicated on 11/13? Today I was prepared to send out spreadsheets with links to 150 or so receipts to customers, but now I cannot do this and I have to get each image manually and create a PDF to satisfy our customer's requirements.
Please consider reversing this secure URL decision until other options are offered by Expensify. Your management of your product is disappointing.
- Spam
- Abuse
- Report
5 · Accept Answer Off Topic Insightful 5Vote Up AwesomeHi @Sheena Trepanier
#1 - Client Finance Teams (can be one person, can be a small team of backend processing team). They check the total invoice on expenses submitted versus the proof of receipts submitting.
#2 - We export them every month into a spreadsheet, filter by tags (which are clients / project), filter by billable, and send that filtered spreadsheet along with our invoices.
#3 - Back to #1 , they check one by one that receipts amount tally with what is softcopy of the receipts. If all is good and non-disputable, they will pay us the full amount.
@Jason_Richards_25 that this doesn’t need to be secured. Can you please explore (with urgency) if you can turn this off, and perhaps let policy admins decide consciously that they want to expose their receipts publicly? By default its turned off for security purposes.
Just so you know the IMPACT to us as a business - now our expenses reimbursements are on hold cause clients cannot see the proof of receipts anymore. And I have about 200-300 expenses (PDFs). So we not getting paid for the expenses and will cause cash flow issue to us.
I don’t have an IT team or temps to do the manual work - but that’s the whole idea to use a simple cloud based application like Expensify.
I also have another thread going and explain why some of the workaround do not work.
(A) - Work with your IT department to grant the client or auditor an email they can use to access Expensify and the receipt images. This account will need a policy invite and the auditor role view receipt URL images.
Reply: Auditor role will then see every single receipt for every single employee I have. I have average of 20-30 clients (some of them competitors). Also clients just needs to see the expenses we incur for them, so they don’t need to be auditor for my policies.
(B) If they already have an Expensify account, you can grant that account the necessary permissions to view receipt images. The account will need a policy invite and the auditor role at minimum to view receipt URL imagesSame as above point (A)
(C) If you don’t want to add them to your policy, you can ask them to create a free account using their email. Then, once this account exists, the report can be shared with them to grant them access to view receipt URL images.Employee submits 1 report a month. In the report there are company benefits like mobile claims, travel, and then client(s) specific expenses which we mark reimbursable. One employee works across clients and internal stuff and it’s ‘tag’ in the receipt itself. End of the month - I pull a report and filter by tags and send the spreadsheet and supporting docs for our invoices. So I cannot share reports to the clients.
- Spam
- Abuse
- Report
5 · Accept Answer Off Topic Insightful 5Vote Up Awesome- Spam
- Abuse
- Report
5 · Accept Answer Off Topic Insightful 5Vote Up Awesome- Who is the main user of receipt URLs -- Is this a client, an auditor, or someone in your company who doesn't necessarily use Expensify?
- How are you currently utilizing the receipt URLs -- Are you exporting them to a spreadsheet and sharing a spreadsheet with your client?
- If you're sharing them with clients, how is the client using them? What are they using them for?
- If you knew that receipt URLs were going to stay secured as they currently are now, what other tools in Expensify would you need to continue using the system?
@cslim and @Jason_Richards_25 -- thank you so much both of you, for taking the time to provide the information I requested.I have shared this feedback with the team and am following the discussion closely. As I learn more information that is relevant to this change I'll be following up with everyone on this thread. Talk to you soon!
- Spam
- Abuse
- Report
0 · Accept Answer Off Topic Insightful Vote Up Awesome- Spam
- Abuse
- Report
6 · Accept Answer Off Topic Insightful 6Vote Up Awesome- Spam
- Abuse
- Report
5 · Accept Answer Off Topic Insightful 5Vote Up Awesome- Spam
- Abuse
- Report
6 · Accept Answer Off Topic Insightful 6Vote Up AwesomeExtremely doubtful @Sheena Trepanier and team Expensify will actually be doing anything about this, but we may as well put in a little effort. They made the decision with little care for how it would affect customers, so why would our concerns cause a change after the fact?
@Sheena Trepanier Is there an update on advocating for your customers?
- Spam
- Abuse
- Report
4 · Accept Answer Off Topic Insightful 4Vote Up Awesome- Spam
- Abuse
- Report
3 · Accept Answer Off Topic Insightful 3Vote Up AwesomeOur use-case is almost identical to the one described by @Jason_Richards_25
If a solution cannot be found, we will be forced to explore alternative systems; this is not something I say lightly, as the years of history and ~50 Expensify users to retrain will be a substantial effort on our side.
The lack of advanced warning to a substantial change such as this is incredibly worrying.
- Spam
- Abuse
- Report
4 · Accept Answer Off Topic Insightful 4Vote Up Awesome- Spam
- Abuse
- Report
1 · Accept Answer Off Topic Insightful Vote Up 1AwesomeInstead of making changes that nobody is asking for, how about adding ones that we are? (ie. monthly spending tracking/limits across all reports, improved tag management, etc.)
- Spam
- Abuse
- Report
4 · Accept Answer Off Topic Insightful 4Vote Up AwesomeThanks for the update but unfortunately no ETA is not great. Let me (and I hope I speak for the rest of the Expensify customers) give you a date to come back to us.
Please let us know an update by end of this week (22nd Nov). If there is no update, I will take that the this "security" feature remains. This will be a deal breaker for us and we will be migrating off Expensify. We as a business already has expenses unpaid and stuck - that's for September and October, and now November as we continue to use Expensify. We cannot operate like this for another month.
- Spam
- Abuse
- Report
4 · Accept Answer Off Topic Insightful 4Vote Up Awesome- Spam
- Abuse
- Report
3 · Accept Answer Off Topic Insightful 3Vote Up AwesomeThis change must be due to the new Expensify card, either a regulatory requirement or a way to push customers to it.
- Spam
- Abuse
- Report
2 · Accept Answer Off Topic Insightful 2Vote Up AwesomeI can totally understand why some customers don't want their receipts to be public on the web. If you can't even imagine why then you don't care at all about privacy. I envy your life.
But to change existing behavior like this, without warning, and without a way to revert back for those who are willing to accept the privacy implications, is pretty anti-customer behavior.
Our use case is that we have a years-old procedure of exporting reports via CSV and then a custom script processes that CSV file in order to:
We started a project a while back to use the API (which didn't exist when we first started using Expensify) to get what we need instead of using manual CSV exports, but we didn't get that project over the finish line. I hope the API provides the ability to get receipt images. If getting them manually via the web app is the only way now, that's really not cool.
Interestingly, e-Receipts are still publicly available. While not as likely to have incriminating information like the restaurant server's phone number on the married CEO's receipt, e-Receipts can still leak information that some people would rather be private.
So right now some receipts require authentication and some don't, with no way for the customer to control the behavior for either type. I doubt that any customer asked for this particular outcome.
Please give us a policy setting for receipt privacy! Please! I think the default should be that they're private and require authentication, but don't force that on your customers. Let customers choose to be more risky if they want to be. Give them a big warning or make them sign a waiver or something, but give 'em the choice, especially when the system operated that way for years.
Please!
- Spam
- Abuse
- Report
3 · Accept Answer Off Topic Insightful 3Vote Up AwesomeThanks for joining the conversation and providing another perspective on the issue of privacy!
We hear you and understand this change might not work for everyone. As was mentioned earlier in the thread, we're working through feedback to see if there is enough demand for the feature to be reversed.
This isn't going to happen overnight because it does take time to gather enough user cases on both ends of the spectrum so we can understand customer demand. We'll keep you informed on this thread so keep an eye out 👀
- Spam
- Abuse
- Report
0 · Accept Answer Off Topic Insightful Vote Up AwesomeWe will now need to reconsider our subscription as value has diminished significantly.
- Spam
- Abuse
- Report
5 · Accept Answer Off Topic Insightful 5Vote Up Awesome- Spam
- Abuse
- Report
3 · Accept Answer Off Topic Insightful 3Vote Up Awesome- Spam
- Abuse
- Report
0 · Accept Answer Off Topic Insightful Vote Up AwesomeWhile we're still working on gathering feedback and looking at our options, have you tried to see if a report PDF would be a good workaround? When you download a report to PDF, you get all the line item data as well as all the receipt images.
You can choose to only have receipt thumbnails or you can choose to add full page receipt images to the PDF. You can then share that PDF file with anyone who needs it. You can also break out the images/pages to customize which receipt images you send off. [Neat tool here.]
Since the report PDF downloads a local copy to your computer, it does not have the receipt security limitation (the limitation only affects receipt URLs).
This won't help all use cases mentioned here, but I hope it benefits at least a few of you.
- Spam
- Abuse
- Report
0 · Accept Answer Off Topic Insightful Vote Up Awesome- Spam
- Abuse
- Report
4 · Accept Answer Off Topic Insightful 4Vote Up Awesome@Susanna_De_Bari1
@samuel
@cslim
@Layne
@guyellis1988
@StephanieL789
@Robert
Everyone vote up on previous and new comments as this is how Expensify views feedback as important or not.
- Spam
- Abuse
- Report
3 · Accept Answer Off Topic Insightful 3Vote Up Awesome- Spam
- Abuse
- Report
5 · Accept Answer Off Topic Insightful 5Vote Up Awesome(C) If you don’t want to add them to your policy, you can ask them to create a free account using their email. Then, once this account exists, the report can be shared with them to grant them access to view receipt URL images.
Employee submits 1 report a month. In the report there are company benefits like mobile claims, travel, and then client(s) specific expenses which we mark reimbursable. One employee works across multiple clients and internal stuff and it’s ‘tag’ in the receipt itself. End of the month - I pull a report and filter by tags and send the spreadsheet and supporting docs for our invoices. So I cannot share reports to the clients.
You suggestion would be mean we share non-client related receipts to the client which is not required, sharing data which is not required.
Having 1 report per claimable client is not workable either, employees have to managed 3-4 reports per submission, making it not user friendly at all.
- Spam
- Abuse
- Report
4 · Accept Answer Off Topic Insightful 4Vote Up Awesome- Spam
- Abuse
- Report
0 · Accept Answer Off Topic Insightful Vote Up Awesome