ATO-readySOC 2 alignedBuilt in Australia

Secure onboarding, consents, and payments—inside your firm's own client portal.

Onboard gives your practice a branded workspace where clients can register, submit TFN/ABN details securely, invite directors/partners/trustees, sign required authorities, purchase services, and pay online—without the email back‑and‑forth.

Request a demo

Get a private demo link and a walkthrough tailored to your practice size.

AES‑256 encryptionABN checks via ABRStripe paymentsRole-based access

"Client dashboard + Admin overview (example screens)"

Who it's for

Designed for Australian accountants who handle real-world structures.

If your clients include individuals, companies, trusts, and partnerships—and you're collecting sensitive identity and tax information—Onboard is built for the workflows and compliance realities you deal with every week.

  • Practices that want clients to complete intake and partner details themselves.
  • Firms that need a clear audit trail for consents and signatures.
  • Teams that want modern client experience without hiring developers.

The Problem

Email and spreadsheets don't scale in a TFN world.

Client onboarding becomes a bottleneck when details are scattered across inboxes, PDFs, and follow‑up calls. It's slow for clients, expensive for staff time, and creates avoidable risk when highly sensitive information is passed around without strong controls.

1

Admin drag

Repeated follow-ups, missing fields, manual checks.

2

Data exposure

TFNs and financial records stuck in messages and attachments.

3

Low visibility

Unclear status across accounts, partners, and approvals.

4

Weak defensibility

Limited audit trail and access governance.

Product Promise

One portal. Cleaner onboarding. Faster approvals.

Onboard turns client intake into a guided, self‑serve journey—then gives your team a controlled back office to manage everything.

1

Client intake that completes itself

Clients verify, choose account type (Individual / Company / Trust / Partnership), enter details via encrypted forms, and invite the right people to contribute—directors, trustees, beneficiaries, partners, spouses.

Account setup screen
2

Consents and payments captured in the workflow

Clients can select services, pay securely via Stripe, and complete digital consents with legally defensible evidence (timestamps and more).

Service selection and checkout screen
3

Your firm stays in control

Use the admin dashboard to manage accounts, track revenue and GST, handle tickets, and assign role-based access so the right people see the right data.

Admin dashboard overview
Request a demo

Core Capabilities

Built for clients on the front—and your team behind the scenes.

Client portal capabilities

  • Fast registration and verification (email + OTP).
  • One login to manage multiple account types.
  • Secure TFN/ABN and personal detail capture via encrypted forms.
  • Partner and director invitations via branded emails.
  • Digital consents and signatures with a complete audit trail.
  • Service progress tracking and support tickets.

Practice admin capabilities

  • Dashboard analytics across users, accounts, tickets, and revenue.
  • User management with search, status controls, and permissions.
  • Stripe payments, revenue tracking, GST calculation.
  • RBAC with default roles plus custom roles.
  • Built-in website CMS (update content without a developer).
  • Configure templates, email, SMS, and payment settings.

How It Works

How onboarding runs on Onboard

1

Verify and set up the right account

Clients verify quickly, then create the correct structure—Individual, Company, Trust, or Partnership—without your team manually mapping it.

2

Collect details from every required party

The client invites directors/partners/trustees. Each person completes their own details, reducing errors and follow-up.

3

Convert to paid work—with signatures and traceability

Clients purchase services, pay via Stripe, and complete consents digitally. Your team sees progress and exceptions in one admin view.

Differentiator

Australian-specific by design.

Many portals are built for generic "global" workflows. Onboard is designed around Australian requirements so your onboarding doesn't need workarounds.

  • TFN handling designed for ATO-ready processes.
  • ABN validation via the ABR.
  • GST-aware revenue tracking.
  • Multi-account and multi-partner structures for trusts and partnerships.
  • AUD currency and Australian data patterns.

Security & Compliance

Security controls you can explain to a client—and defend in an audit.

Onboard is engineered to protect sensitive client information with strong encryption, modern authentication patterns, and access governance. It also produces a clear trail for consent and signature events—so you're not relying on "he said, she said" emails.

1
AES‑256‑GCM encryption

For stored sensitive fields.

2
bcrypt hashing

For credentials.

3
JWT + HTTP-only cookies

For secure sessions.

4
RBAC permissions

Default and custom roles.

5
Rate limiting + secure headers

To reduce common web risks.

6
Digital signature evidence

IP address, timestamp, browser fingerprint, and document version.

SOC 2 alignedPrivacy Act-aware consent collectionATO-focused TFN/ABN workflowsPCI scope reduced via Stripe (no card storage)

Pricing & Packages

Simple, transparent pricing with a low operating footprint.

Client-hosted. No per-user fees. Enterprise-grade capability — typically AUD 25–45/month in infrastructure plus Stripe transaction fees.

Annual Software Licence

$499/year

Full access to Onboard with auto-renewing yearly subscription via Stripe.

  • 12-month licence from activation
  • Auto-renewal via Stripe
  • All product updates included
  • Standard support (chat/email)
  • Knowledge base access 24/7
Get started

Need something custom?

Any work outside the Standard VPS Plan is billed at AUD $99/hr under a formal Statement of Work (MSA → Discovery → SOW).

Discuss requirements

Estimated monthly infrastructure costs (AUD)

ServicePurposeMonthly (AUD)
Application HostingServer, DB, Frontend$22 – $40
SMS (Twilio)Phone verification$2 – $5
Emails (SendGrid)NotificationsFREE
Payments (Stripe)Client payments1.75% + $0.30/txn
Domain Name.com.au$15 – $30/yr
SSL + ABN LookupSecurity & validationFREE
TOTAL ESTIMATED~$25 – $45/mo

What's Included

Standard VPS Plan — your $1,499 deliverables.

Customer hosts Onboard on a single-tenant VPS (provisioned and paid by you). Bhalekar provides deployment support and app setup — not hosting. Shared hosting is not supported.

1

Deployment & Installation

  • Install Onboard using the supported release method
  • Configure runtime, environment, and app services per standard guide
2

Base Configuration

  • Admin account creation and initial system configuration
  • Standard roles/permissions setup (baseline)
  • Notification setup assistance (customer provides email/SMS credentials)
3

Security Baseline

  • TLS/HTTPS setup guidance (customer owns domain/DNS)
  • Basic hardening checklist guidance for standard install
4

Validation & Handover

  • Smoke testing checklist (login, core workflows, notifications)
  • Handover notes + runbook (restart, update, backup guidance)

Out of scope (billed at $99/hr under SOW)

Cloud deployments (AWS/Azure/GCP, Kubernetes, multi-node, HA/DR)
Load balancers, WAF, CDN, multi-region, multi-AZ HA
Non-standard OS, runtime, or database requirements
Complex SSO/IAM patterns beyond baseline
Extensive data migration or bespoke integrations
Custom reporting/dashboarding beyond standard features

Hosting Model

Client-hosted. Clear responsibilities.

Onboard runs on your infrastructure, under your domain. Nothing is hosted on Bhalekar servers. Here's what each side owns.

Your responsibilities

  • Provide and maintain VPS (uptime, OS patches, capacity)
  • Backups, disaster recovery, and monitoring
  • Domain/DNS and TLS certificates
  • Email/SMS provider accounts and credentials
  • Database operations and performance

Bhalekar responsibilities

  • Provide software releases and documentation
  • Deployment guidance for standard VPS architecture
  • Fix application defects (within supported versions)
  • Provide support per the chosen support tier

Impact

What changes in week one

Less chasing: clients complete intake and partner details themselves.
Cleaner records: structured data captured once, consistently.
Faster cashflow: payment at the time of service purchase.
Better defensibility: digital consent trail with evidence.
Better client experience: one portal for everything, available anytime.
Ready to scale: the workflow holds as your client count grows.

Proof

Feedback from real operators

Short quotes that describe a before/after operational change.

★★★★★

"We reduced onboarding back-and-forth dramatically. Clients now submit complete details and consents without repeated follow-ups."

P
Practice Manager
Mid-size accounting firm
★★★★★

"The audit trail for signatures gave us confidence in moving intake off email."

C
Compliance Lead
Tax advisory practice
★★★★★

"Payments at purchase time improved cash collection and reduced admin overhead."

O
Operations Director
Multi-partner firm

Licence & Governance

Transparent licence model with clear boundaries.

Your licence is scoped, renewable, and enforced through the application — so both sides know exactly where they stand.

1

12-month validity

Licence key/token valid for 12 months, tied to your organisation and environment ID.

2

Automatic renewal

On successful renewal payment, licence extends by 12 months automatically via Stripe.

3

Scope control

Locked to organisation/tenant, environment, and optional domain/server fingerprint.

4

Grace period

14-day grace period after failed payment before system enters Suspended Mode.

Allowed (does NOT void licence)

  • Configuration changes (env variables, settings)
  • Branding updates (logos/themes) if supported
  • API-based integrations and webhooks
  • Normal infrastructure changes (server sizing, OS patching)

Prohibited (voids licence)

  • Modifying application code, binaries, or container images
  • Reverse engineering, decompiling, or tampering
  • Bypassing licence checks, signatures, or validation calls
  • Removing or altering licence enforcement components

Support Plans

Choose the support level that fits your practice.

Standard support is included with every licence. Upgrade to Premium for a dedicated account manager and priority SLA.

FeatureStandard
Included in $499/yr
Premium
$799/yr
Knowledge base access (24/7)
Chat/Email support (12–18:00 AEST, Mon–Fri)
Product how-to guidance
Standard upgrade assistance
Troubleshooting app issues
Dedicated Account Manager
Phone support
Priority response targets (SLA)
Severity-based escalation path

Professional Services

Your portal, your workflow, your brand — at $99/hr.

Onboard is productised but not rigid. Bhalekar Consulting delivers scoped enhancements via a formal delivery model: MSA → Paid Discovery → SOW.

1

Custom workflows

Tailored approval chains and process automation.

2

Bespoke integrations

HRIS, CRM, IdP, and third-party connectors.

3

Data migration

Pipelines to move existing client data securely.

4

Custom analytics

Reports and dashboards beyond standard features.

5

Cloud architecture

AWS/Azure/GCP deployment design and implementation.

6

White-label branding

Logo, colours, domain, and email customisation.

Updates & Future

Always improving, always supported.

Your subscription keeps you on the latest version with a clear path to the future — including a free standard transition when SaaS becomes available.

1

Active subscription updates

All product updates available to customers with an active subscription.

2

Supported versions

Current version and last 2 minor releases receive fixes and security patches.

3

Major upgrades

Migration included under standard scope; complex migrations billed at $99/hr.

4

SaaS transition

When SaaS is available, active customers get a free standard transition (export/import + base config).

FAQ

Frequently asked questions

Yes. Clients can create Individual, Company, Trust, and Partnership accounts, and invite the relevant parties to complete their own details.

Consents are signed digitally and recorded with evidence such as timestamp and IP address, creating a clear audit trail.

Payments are processed through Stripe, and the platform does not store card data.

Yes. Onboard supports role-based access control with default roles and custom roles with fine‑grained permissions.

Yes. Onboard supports white‑label branding including your logo, colours, and domain.

The annual software licence is AUD $499/year. Standard VPS implementation is a one-time AUD $1,499. Premium support is available at AUD $799/year. Typical infrastructure costs run AUD 25–45/month plus Stripe transaction fees.

Onboard is client-hosted only — nothing is hosted on Bhalekar servers. You provision your own single-tenant VPS and Bhalekar provides deployment support and app setup.

There is a 14-day grace period. After that, the system enters Suspended Mode where admin functions are disabled and new transactions are blocked, but read-only access and data export remain available.

No. Modifying application code, binaries, or container images voids the licence. However, configuration changes, branding updates, API integrations, and normal infrastructure changes are all allowed.

Get the Onboard demo for your practice

See the complete client journey—from verification and account setup through secure TFN/ABN intake, partner invitations, digital consents, and Stripe payments—plus the admin dashboard your team uses to manage work and revenue.

Request a demo