---
title: Tallyfy Vault · Tallyfy Pro
description: Tallyfy Vault keeps the sign-ins that let Tallyfy AI do work for you inside apps like Slack. Every connection belongs to one person, so the AI acts as that person with the permissions they approved, instead of running everyone's work through a single shared account.
lastUpdated: 2026-09-17T00:00:00.000Z
source_url:
  html: https://tallyfy.com/products/pro/integrations/vault/
  md: https://tallyfy.com/products/pro/integrations/vault/index.md
---

## Letting Tallyfy AI work in your other apps as you

Tallyfy Vault is where your sign-ins to other apps are kept, so Tallyfy AI can do work for you in those apps. You sign in to Slack once, the way you normally would. After that, the AI can post a message or read a channel on your behalf.

The connection is yours. When the AI acts, it acts as you, with the permissions you approved and no others. It can’t do anything in Slack that you can’t do yourself.

### Why each person gets their own connection

The quick alternative is one shared account that everybody’s work runs through. Setting it up takes minutes, and it costs you three things.

* **Nobody can tell who did what.** Every message and file in the other app carries the shared account’s name, so that app’s own history records one actor for your whole company.
* **Everyone inherits everyone’s access.** A shared account ends up holding every permission anyone ever asked for. The person who wanted to read one channel can now post in all of them.
* **One lapse stops everybody.** When that single sign-in expires or gets revoked, every person’s automation stops at the same moment.

Tallyfy takes the slower road on purpose.

![Why each person gets their own connection](https://tallyfy.com/products/d2-diagrams/docs/pro/integrations/vault/index-0.svg)

**What to notice**

* On the left, Slack only ever sees one name, however many people sit behind it.
* On the right, Slack sees Jane and Raj, so Slack’s own history stays useful to you.
* Revoking Raj on the right leaves Jane working. On the left there is nothing to revoke except everything.

### What you can do here

* [Connect an app](https://tallyfy.com/products/pro/integrations/vault/connect-an-app/), and fix one that has stopped working.
* [See which apps you can connect](https://tallyfy.com/products/pro/integrations/vault/supported-apps/), and how an admin adds one Tallyfy doesn’t ship.
* [Read where your access actually goes](https://tallyfy.com/products/pro/integrations/vault/security-model/) once the AI starts working.
* [Hold your organization’s own encryption key](https://tallyfy.com/products/pro/integrations/vault/admin-key-management/), rotate it, or destroy it.

### What’s coming

These are decided and not built. Treat them as the direction of travel rather than as something you can use.

* Vault will make the call to the other app itself, so your access stops passing through anything else on the way.
* Rules will sit on a template step, so a step can say what the AI may do at that point.
* An organization will be able to own a connection, rather than a connection always belonging to a person.
* The audit record will be exportable, and provable against tampering.
* Your own identity provider will decide who is allowed to connect what.

## Related articles

[**Vault > How your access is protected**](https://tallyfy.com/products/pro/integrations/vault/security-model/)

The AI model never receives your access to another app. Tallyfy Vault hands a short-lived token…

[**Vault > Connect an app**](https://tallyfy.com/products/pro/integrations/vault/connect-an-app/)

Connect an app to Tallyfy from Settings then Connections, so Tallyfy AI can work in that app as…

[**Vault > Apps you can connect**](https://tallyfy.com/products/pro/integrations/vault/supported-apps/)

The app catalog is the list of apps you can connect so Tallyfy AI can work in them as you. Slack…

[**Pro > Integrations**](https://tallyfy.com/products/pro/integrations/)

Tallyfy connects with your existing business software through many methods, from a full REST API…

## Was this helpful?
