Tothality
Your financial health score engine
Know your financial health score.
Fix what's hurting your business.Get your 0-100 score in 5 minutes. No spreadsheets.
Just connect your bank.
Most SME owners have no idea how healthy their business really is.You track revenue. You pay bills. But do you know:
• Your actual financial health score (0-100)?
• How your margins compare to competitors?
• What would change if a client paid 30 days late?Most don't. The average Swedish SME scores 54/100.
The top performers? 75+/100.That gap is where you bleed cash without knowing it. And the answer to help you get better lies within your transaction data.Tothality analyzes the data and turns them into actionable insights.
What You Get
Every subscription includes:✓ 0-100 health score
✓ 5 component scores (profitability, liquidity, stability, debt, risk)
✓ Expense analysis (where your money actually goes)
✓ Supplier risk assessment (are you too dependent?)
✓ Revenue profile (growth, seasonality, concentration)
✓ Actionable insights (what to fix THIS week)
✓ Monthly score tracking
✓ Industry benchmarks (how you compare)
Pricing
One plan. Everything included.399 SEK / monthCancel anytime. No hidden fees.
How It Works
Section 1: OverviewTothality AB provides automated financial health scoring for SMEs. Our service connects to your business bank account through licensed third-party providers, analyzes transaction patterns, and generates a 0-100 health score with actionable insights.Section 2: Step-by-Step ProcessStep 1: Account Creation
You create a secure user account
Choose your industry and business settings
Estimated time: 2 minutesStep 2: Bank Connection
Select your bank (Handelsbanken, Nordea, SEB, Swedbank, etc.)
You authenticate directly on your bank's official website
We never see or store your bank login credentials
The bank generates a one-time access token
Estimated time: 3 minutesStep 3: Data Processing
We retrieve read-only transaction data (last 12-24 months)
Our algorithm analyzes: revenue patterns, expense categories, cash flow stability, debt service capacity, and risk factors
All processing is automated with no human review of individual transactionsStep 4: Your Health Score
View your 0-100 financial health score
See 5 component scores: Profitability, Liquidity, Stability, Debt Service, Risk
Access actionable insights specific to your businessSection 3: Technical Information
Data access: Read-only. We cannot move money, approve payments, or modify account settings
Encryption: All data transmitted using TLS 1.2+ (bank-grade encryption)
Authentication: OAuth 2.0 (industry standard). You authenticate directly with your bank, not with Tothality
Session duration: Bank connection remains active for 90 days or until you revoke access
Removal: You can disconnect any bank at any time from your Settings pageSection 4: Third-Party Providers
Tothality AB uses Enable Banking (licensed AISP under PSD2) as our open banking provider. Enable Banking maintains regulatory compliance and bank connections on our behalf.Section 5: What We Analyze
Transaction dates, amounts, and descriptions
Account balances over time
Credit/debit indicators
Counterparty information (for supplier analysis)Section 6: What We NEVER Access
Bank login credentials (username/password)
Payment initiation capabilities
Personal accounts not explicitly connected by you
Card PINs or security codes
How We Handle Your Data
Tothality connects to your business bank account through licensed open banking provider Enable Banking. We access read-only transaction data to calculate your financial health score. We never receive your bank login credentials. Your data is used only for your score, your insights, and anonymized industry benchmarks. We do not sell your data to third parties. You can disconnect any bank at any time. All data is encrypted in transit and at rest.
Sign Up
Contact
Success!
Thank you for showing interest in Tothality AB. Your signup has been registered and we'll get back to you within 72 h.
Thank you!
Thank you for contacting Tothality AB. Your message has been sent and will be answered within 72 h.
Privacy Policy
Last Updated: 2026-06-031. Controller Information
Tothality AB (org. no. 559580-2991) is the data controller for personal data processed through the Service.Contact:
Email: [email protected]Address: Hornsbergs Strand 27A, 112 17, Stockholm, SwedenData Protection Officer: [Name or "Not applicable (SME exemption under GDPR Article 37)"]2. Personal Data We Collect
Category Specific Data Legal Basis Retention
Account Data Name, email address, company name, registration number Contract performance Active account + 90 days
Business Settings Industry, market (country), employee count, optional debt/crypto information Legitimate interest (service improvement) Active account + 90 days
Transaction Data Business bank account transactions (amounts, dates, descriptions, balances) Contract performance (to calculate health score) Active account + 30 days
Technical Data IP address, browser type, access timestamps Legitimate interest (security, analytics) 12 months
Payment Data Processed by Stripe (we do not store full card details) Contract performance Not stored by Tothality3. How We Collect Personal Data
3.1 Directly from you: Account registration, settings input, support requests3.2 From your bank (via Enable Banking): Transaction data after you provide explicit consent through OAuth3.3 Automatically: Usage data, technical logs4. Lawful Bases for Processing (GDPR Article 6)
Processing Activity Legal Basis Justification
Account creation and management Article 6(1)(b) - Contract Necessary to provide the Service
Bank data access and scoring Article 6(1)(a) - Consent You explicitly consent through OAuth flow
Anonymized benchmarking Article 6(1)(f) - Legitimate interests Industry benchmarks improve the Service for all users
Email communications Article 6(1)(f) - Legitimate interests Operational emails (not marketing without separate consent)
Security and fraud prevention Article 6(1)(f) - Legitimate interests Protecting your data and our systems5. Special Category Data (Article 9)
Transaction data may reveal financial status but does not generally constitute special category data under Article 9 (which covers race, ethnicity, political opinions, religious beliefs, health, sex life, or biometric data).6. Data Subject Rights (GDPR Articles 15-22)
You have the following rights:We respond within 30 days at no charge.
Right Article How to Exercise
Right to access 15 Email [email protected]
Right to rectification 16 Update profile in Settings or email
Right to erasure 17 Email request (subject to legal retention)
Right to restrict processing 18 Email request
Right to data portability 20 Email request (machine-readable format)
Right to object 21 Email request
Rights related to automated decision-making 22 Note: Health score is automated but not solely determinative (human review available)7. International Transfers (Chapter V)
All data is stored within the EU (Sweden). Our subprocessors (Enable Banking, Supabase, Render) are located in the EU or have EU adequacy decisions or Standard Contractual Clauses in place.8. Data Protection Impact Assessment (DPIA)
A DPIA has been conducted as required for systematic monitoring of publicly accessible areas (Article 35). Summary available upon request to supervisory authority.9. Supervisory Authority
Swedish Authority for Privacy Protection (Integritetsskyddsmyndigheten, IMY)Website: www.imy.se
Email: [email protected]
Address: Box 8114, 104 20 StockholmYou have the right to lodge a complaint with IMY.10. Changes to This Privacy Policy
We will notify users of material changes via email (to the address on file) and through a notice on the website at least 30 days before changes take effect.11. Contact
For privacy inquiries: [email protected]Data Protection Officer: [Name or "Tothality AB (SME exemption under Article 37)"]
GDPR
Section 1: What Data We AccessWhen you connect a business bank account, we access:
Data Type Purpose
Transaction dates Calculate time-based metrics (cash buffer, seasonality)
Transaction amounts Revenue, expense, and margin calculations
Transaction descriptions Expense categorization and supplier identification
Account balances Liquidity and cash flow stability metrics
Credit/Debit indicators Distinguish income from expenses.Section 2: How Data Is Collected2.1 You authenticate directly with your bank using your existing credentials on your bank's official website.2.2 Upon successful authentication, your bank generates a time-limited access token.2.3 Tothality (via Enable Banking) uses this token to retrieve read-only transaction data.2.4 We never see, store, or have access to your bank login credentials.Section 3: How Data Is StoredAspect Implementation
Storage location Sweden (EU) via Supabase/PostgreSQL
Encryption at rest AES-256
Encryption in transit TLS 1.2+ (bank-grade)
Retention period As long as your account is active. Upon account deletion, data is removed within 30 days
Backup policy Encrypted backups retained for disaster recovery (max 30 days)Section 4: How Data Is UsedYour transaction data is used for the following purposes only:
Primary purpose: Calculate your financial health score (0-100) and component scores
Secondary purpose: Generate actionable insights (pricing opportunities, cash flow tactics, cost reduction)
Anonymized benchmarking: Aggregated data (no identifying information) contributes to industry benchmarks. Example: "The average retail business has a cash buffer of 13 days."Section 5: Data SharingWe share your data with the following parties:
Party Data Shared Purpose
Enable Banking Transaction data (temporarily during fetch) Open banking connectivity (licensed AISP under PSD2)
Supabase Encrypted storage Database hosting
Render Encrypted application data Application hosting.We do NOT share your data with:
Advertising networks
Data brokers
Credit reporting agencies
Any other third party without your explicit consentSection 6: Your Data Rights (GDPR)Under the General Data Protection Regulation, you have the following rights:
Right Description
Right to Access Request a copy of all data we hold about you
Right to Rectification Correct inaccurate data
Right to Erasure ("Right to be Forgotten") Request deletion of your data (subject to legal retention obligations)
Right to Restrict Processing Limit how we use your data
Right to Data Portability Receive your data in a machine-readable format
Right to Object Object to processing based on legitimate interests
To exercise these rights: Email [[email protected]]Section 7: Data Retention
ScheduleData Type Retention Period
Transaction data Duration of active account + 30 days
Account connection tokens 90 days or until revoked
User profile data Duration of active account + 90 days
Anonymized metrics Indefinite (no identifying information)
Audit logs 12 monthsSection 8: Security MeasuresAll data encrypted in transit using TLS 1.2 or higher
All data encrypted at rest using AES-256
Database access restricted to authorized IP addresses
Regular security audits and penetration testing
Employee access strictly limited and loggedSection 9: Third-Party CertificationEnable Banking (our open banking provider) is a licensed Account Information Service Provider (AISP) under PSD2, regulated by [relevant financial authority].Section 10: Breach NotificationIn the event of a data breach affecting your personal or transaction data, Tothality AB will notify affected users within 72 hours of detection, as required under GDPR.
Terms & Conditions
Last Updated: [Current Date]1. Agreement to TermsBy accessing or using Tothality AB's services (the "Service"), you agree to be bound by these Terms & Conditions ("Terms"). If you disagree with any part, you may not access the Service.2. DefinitionsTerm Definition:
"Tothality" Tothality AB, company registration number 559580-2991
"User" Any individual or entity that creates an account
"Business Account" Bank account owned by the User's registered business
"Health Score" Algorithm-generated 0-100 financial health metric
"Open Banking Provider" Enable Banking (PSD2 licensed AISP)
3. Account Registration3.1 You must be at least 18 years old and a authorized representative of the business entity you register.3.2 You agree to provide accurate, current, and complete information during registration.3.3 You are responsible for safeguarding your account credentials. Tothality AB cannot and will not be liable for any loss or damage from your failure to comply with this security obligation.4. Service Description4.1 Tothality provides automated financial health scoring based on read-only access to your business bank account transaction data.
4.2 The Service includes:
Financial health score (0-100)
5 component scores (profitability, liquidity, stability, debt service, risk)
Expense categorization and analysis
Supplier risk assessment
Revenue profile analysis
Actionable business insights4.3 The Service does NOT include:
Financial advice (you should consult qualified professionals for financial decisions)
Payment initiation or fund transfers
Tax preparation or filing5. Open Banking Authorization5.1 By connecting a bank account, you authorize Tothality AB and our open banking provider (Enable Banking) to access read-only transaction data from that account.5.2 You authenticate directly with your bank. Tothality never receives or stores your bank login credentials.5.3 You may revoke access at any time through the Service Settings page or directly through your bank.5.4 Bank connections remain active for up to 90 days or until you revoke access.6. Subscription and Payment6.1 The Service is offered on a monthly subscription basis at 399 SEK/month (or current price stated on tothality.com).6.2 Subscription fees are billed in advance on a monthly recurring basis.6.3 You may cancel your subscription at any time through your account Settings. Cancellation takes effect at the end of the current billing period.6.4 Refunds are not provided for partial months.7. Data Processing and Privacy7.1 Transaction data is processed to generate health scores and insights only.7.2 Data may be used in anonymized, aggregated form for benchmarking purposes (see Privacy Policy for details).7.3 Tothality AB complies with the General Data Protection Regulation (GDPR). See our Privacy Policy for detailed information.8. Intellectual Property8.1 The Service, its original content, features, and functionality are owned by Tothality AB and are protected by Swedish and international copyright laws.8.2 The health score algorithm, analysis methodologies, and proprietary insights are trade secrets of Tothality AB.9. Limitation of Liability9.1 TO THE FULLEST EXTENT PERMITTED BY LAW, TOTHALITY AB SHALL NOT BE LIABLE FOR ANY INDIRECT, INCIDENTAL, SPECIAL, CONSEQUENTIAL, OR PUNITIVE DAMAGES.9.2 The health score is an analytical tool, not a guarantee of financial performance. Business decisions based on the Service are your sole responsibility.9.3 Total aggregate liability shall not exceed the amount paid by you for the Service in the 12 months preceding the claim.10. Disclaimer of Warranties10.1 THE SERVICE IS PROVIDED "AS IS" AND "AS AVAILABLE" WITHOUT WARRANTIES OF ANY KIND.10.2 While we strive for accuracy, we do not warrant that the health score or insights are error-free.11. Termination11.1 You may terminate your account at any time.11.2 We may suspend or terminate your account for violation of these Terms, including unauthorized access to others' data.12. Governing LawThese Terms shall be governed by and construed in accordance with the laws of Sweden, without regard to its conflict of law provisions.13. Changes to TermsWe may modify these Terms at any time. Continued use of the Service after changes constitutes acceptance of the new Terms.14. Contact InformationTothality AB
Hornsbergs Strand 27A, 112 17, Stockholm, Sweden
+46-76-393-6758
[email protected]Download: [Link to PDF version for customer records]
About Us
I've spent 5+ years in the financial sector and I know how powerful transaction data can be when read correctly. I decided to to utilize my expertise and turned it into Tothality, your financial health score engine.Our mission: Help every SME understand their financial health to improve their business.We help SMEs know their financial health
— so they can fix what's draining cash before it's too late.Most SME owners run their business on instinct.
You check your bank balance. You pay your bills. You hope nothing breaks.
But when we asked business owners "How healthy is your business financially?"
Most said: "I think we're doing fine. But I don't really know."
That uncertainty costs you money every single day.Tothality turns your bank data into clarity.
We connect to your business account (Handelsbanken, Nordea, SEB, etc.) and analyze every transaction.Then we give you:
→ A 0-100 health score
→ Score breakdowns based on profitability, liquidity, stability, debt, risk
→ Specific actions to improve each oneNo spreadsheets. No financial advisor. No guesswork.