Support & Documentation

How Saral connects to Xero, what moves where, and how to get help.

1. Connecting your Xero organisations

  1. New customers: choose a plan at /subscribe and click Sign up with Xero — your account is created from your verified Xero identity, and your organisations connect in the same flow, up to your plan’s entity allowance.
  2. Existing customers connect (or add) organisations from Settings → Xero. One consent covers every organisation you select on Xero’s screen; each becomes its own entity in Saral.
  3. Multi-entity groups: each Xero organisation maps to one Saral company inside your group, and reports consolidate across them. The mapping is by organisation, never guessed.
  4. Returning users can also Sign in with Xero from the login page once their Xero identity is linked (Settings → Security).

2. How data flows

Your Xero orgs
system of record for accounting
OAuth 2.0 + webhooks
Saral
EU-hosted · tokens encrypted · tenant-isolated
signed sessions
Your team
reports, approvals, operations
← reads: invoices, payments, bank, journals, contacts, reportswrites you initiate: invoices, payments, journals, contacts →

Xero stays the system of record. Saral mirrors what it needs for cross-entity reporting and operations, and only ever writes what a person (or a rule you configured) explicitly asks it to push. Every write is verified after posting.

3. What Saral reads from Xero

Per connected organisation: sales and purchase invoices with credit notes and payments; bank transactions and transfers; manual journals; contacts; the chart of accounts, tax rates and tracking categories; fixed assets; invoice attachments; and Xero’s own financial reports (P&L, balance sheet, trial balance, aged balances, bank summary). Reads are incremental — webhooks in near-real-time, plus nightly delta polls as the safety net.

4. What Saral writes to Xero

  • Bills and invoices you approve for posting (document processing, self-billing, intercompany recharges) — pushed to the specific organisation you chose, never anywhere else.
  • Payments and batch payments created from your payment runs.
  • Draft manual journals from year-end and allocation workflows — always drafts, for your review in Xero.
  • Contact updates you initiate, and tracking-category options where you use project tracking.

5. Sync schedule and manual sync

Webhooks apply Xero-side changes within minutes. Nightly delta syncs catch anything missed, and a nightly parity check counts Saral against Xero and self-repairs drift. You can trigger a manual sync any time from Settings → Xero (per organisation), and a full historical re-pull is available to account owners. Sync health, last-run times and any problems are visible on the same screen — errors are shown as errors, never as zeros.

6. Permissions (OAuth scopes) explained

When you connect, Xero shows exactly what you are granting. Saral requests: identity (openid profile email) to know who you are; offline_access so sync works without re-consenting; accounting scopes for invoices, payments, bank transactions, manual journals, contacts, settings and attachments; the assets scope for the fixed-asset register; and read-only report scopes for the financial statements. Saral deliberately does NOT request Xero’s premium journals scope. Signing in (as opposed to connecting) asks for identity only. If you use a module that needs no accounting write, the unused permissions are simply never exercised — and every scope maps to a customer-facing feature.

7. Reconnecting and disconnecting

  • Reconnect from Settings → Xero if a connection lapses (for example after changing Xero passwords or removing the app). Reconnecting restores sync; nothing is lost in between.
  • Disconnect any organisation from Settings → Xero. Saral immediately clears its stored tokens AND revokes its own access at Xero; if Xero is unreachable the revocation is retried automatically until confirmed. Your already-synced data stays in Saral until you delete it.
  • Removing Saral inside Xero (Settings → Connected apps) has the same effect from the other side — Saral detects it and marks the organisation disconnected.

8. Cancellation and data deletion

Cancel any module or your whole subscription from your own settings — no call needed. Access runs to the end of the paid period. Afterwards: 30 days of read-only export access, 60 more days of offline retention, then permanent deletion at 90 days, with reminders first. Xero connections are revoked as part of offboarding. Full detail in the terms and privacy notice.

9. Common issues

  • “Connection needs attention” — the Xero grant lapsed (password change, app removal, long inactivity). Fix: Settings → Xero → Reconnect; one consent restores every organisation on the grant.
  • A push failed — the item stays in its queue with the reason shown (for example a Xero validation error such as a locked period or archived contact). Fix the cause and push again; nothing is double-posted.
  • Numbers look behind — check Settings → Xero for the last sync time and run a manual sync. Xero rate limits can delay large backfills; Saral paces itself and resumes automatically.
  • Can’t sign in with Xero — your Xero identity may not be linked yet: sign in with your password and link it under Settings → Security.

10. Contact and escalation

Email accounts@getsaral.co.uk — include your company name and, for sync questions, the organisation and an example document. We aim to respond within one UK business day; suspected security issues are prioritised ahead of everything else and can be sent to the same address marked “SECURITY”.