How to prevent unwanted AI actions in Exact Online
An invoice created by accident, a customer record with incorrect data, these are scenarios that keep you up at night. Here is how to prevent them.
An invoice that gets created by mistake. A customer record overwritten with the wrong data. A credit invoice on the wrong debtor. These are the scenarios that keep you up at night when you consider connecting AI to your accounting.
And rightly so. But the solution is not to avoid AI, it is to set up AI properly. In the first article of this series we discussed why responsible AI use starts with conscious choices. This article goes a step further: how do you concretely prevent the AI from doing things you do not want?
Nothing happens without your permission
The most important protection is simple: the AI connector performs no write action without your explicit confirmation. No invoice created, no record changed, no entry deleted, unless you give your approval.
Here is how that works in practice:
- You give an instruction. For example: "Create a sales invoice for customer Ecolux, 10 hours of consultancy at 150 euros."
- The AI shows a preview. You see exactly what will be created: customer name, amount, description, VAT code. Everything laid out.
- You confirm or correct. Is it right? Then you confirm and the invoice is created. Is something off? You say "no" or adjust the data. Nothing changes in your records.
- Extra warnings for risks. For amounts above 10,000 euros you get an additional warning. For delete actions you get yet another confirmation.
This is not an optional setting. It is a fixed part of the connector that cannot be switched off. Every mutation, whether creating, changing or deleting, goes through this confirmation step.
Ask good questions, get better results
The AI does exactly what you ask. That sounds like an advantage, and it is. But it does mean the quality of your question directly affects the result.
Be specific. "Show invoices" can produce all sorts of things. "Show outstanding invoices from January 2026 for customer Joanknecht" gives you exactly what you are looking for. The more concrete your question, the smaller the chance of unwanted results.
Name the entity. The AI works with customers, invoices, general ledger accounts and items. If you say "look up Joanknecht", the connector knows you mean a customer and remembers that context. If you then ask "show outstanding invoices", the AI automatically filters on that customer.
Break complex actions into steps. Do you want to create a credit invoice? First ask to show the original invoice. Check the data. Only then ask to create the credit invoice. Step by step.
Look first, then act
The most powerful habit you can develop: always ask to show data first before you make changes. This sounds obvious, but it makes a big difference.
Suppose you want to make an address change for a customer. Do not immediately ask "Change the address of Bakkerij Janssen". First ask: "Show the details of Bakkerij Janssen." You then see the current address, the customer number and any outstanding invoices. Only after that do you submit the change.
De koppeling helpt je hierbij. Wanneer je een klant opzoekt en er is precies één match, dan onthoudt de AI die context. Vraag je vervolgens om facturen, dan worden automatisch de facturen van die klant getoond. Zijn er meerdere matches, bijvoorbeeld drie bedrijven met “Janssen” in de naam, dan vraagt de AI welke je bedoelt voordat er iets gebeurt.
The connector helps you with this. When you look up a customer and there is exactly one match, the AI remembers that context. If you then ask for invoices, the invoices of that customer are shown automatically. When there are multiple matches, for example three companies with “Janssen” in the name, the AI asks which one you mean before anything happens.
Everything is recorded
Every interaction with the connector is logged automatically. Which question was asked, which tool was called, which parameters were passed, and whether the action succeeded or failed. This is not an optional feature, the audit log always runs.
That gives you two benefits. First, you can find out exactly what happened afterwards. If a colleague asks “who created that invoice?”, the answer is in the log. Second, it works preventively: knowing that everything is recorded encourages careful use.
Do’s and don’ts
| Do | Don’t |
|---|---|
| “Show outstanding invoices for customer Ecolux” | “Show invoices” (too broad) |
| Request data first, then make changes | Immediately “Create an invoice” without context |
| Check the preview before you confirm | Confirming blindly without reading the details |
| “Look up customer Bakkerij Janssen” and then “Show invoices” | Cramming everything into one sentence without checking |
| “Change the VAT number to NL123456789B01” | “Change the customer details” (too vague) |
| Use a test administration for new actions | Experimenting in your production administration |
What if something does go wrong?
Suppose you accidentally created an invoice that should not have been created. The audit log shows exactly what happened, including all parameters. You can find the invoice through the AI (“show the last created invoice”) and then create a credit invoice, again with the confirmation step.
The connector prevents most mistakes through the confirmation process. But mistakes that are confirmed by the user themselves are human errors. The audit log ensures they are always traceable and recoverable.
Staying in control is a habit
Responsible AI use is not a technical configuration you set up once. It is a way of working. Asking specific questions, checking data before you change it, reading previews before you confirm. The connector enforces the most important steps. The rest is discipline that you build up with experience.
In the next article we take a closer look at data privacy: which data does the AI process exactly, where is it stored and what about the GDPR?
Ready to get started? Start your free trial →
Frequently asked questions
No. The connector does not perform any write action without your explicit confirmation. You first see a preview of what will be created, changed or deleted, and only after your approval does it actually happen. This confirmation step is a fixed part of the connector and cannot be disabled.
For every change the AI shows a preview with all the details: customer name, amount, description and VAT code. If something is not right, you say no or you adjust the data, without anything changing in your administration. For amounts above 10,000 euro and for deletion actions you also get an extra warning.
Be specific: do not ask for invoices in general, but for outstanding invoices of a certain customer over a certain period. Name the entity involved, first ask to show data before you change anything, and split complex actions into separate steps that you check in between.
Yes. Every interaction is automatically recorded in an audit log that always runs: the question asked, the tool called, the parameters passed and whether the action succeeded. This way you can always find out who created which invoice and when.
Through the audit log you see exactly what happened, including all parameters. You ask the AI to show the last created invoice and then create a credit invoice, again with a confirmation step. Mistakes remain traceable and recoverable this way.