AI Compliance Library

CPA Firm AI Acceptable Use Policy — Circular 230, AICPA Ethics | Polygraf AI

Published on

CPA Firm AI Acceptable Use Policy

IRS Circular 230 due diligence, AICPA ET 1.700 client confidentiality — one policy covering both.

Managing partners, ethics leads, and technology committees at CPA firms of all sizes — from sole practitioners to regional firms — that use AI tools in tax, audit, advisory, or administrative workflows.

AI adoption in accounting surged from 9% to 41% in 2025, but the professional ethics framework — Circular 230, AICPA Code, state CPA society rules — has not changed. The question of whether entering client financial data into ChatGPT violates confidentiality rules has not been clearly answered for most practitioners.

A complete CPA firm AI policy covering: the professional ethics foundation (Circular 230 Section 10.22, AICPA ET Section 1.700), AI tool classification (approved for client work / administrative only / prohibited), specific requirements for tax preparation, audit, and advisory workflows, engagement letter AI disclosure framework, and annual training requirements.

Subscribe to our newsletter

NEWS & More

Insights & Updates from Polygraf.

Blog Posts

Every AI agent your company deploys creates a new identity. Most are unmanaged, over-privileged and never revoked. This is the identity crisis of 2026's breach wave.

Blog Posts

AI agents don't just respond to prompts - they plan, use tools, access memory, and take actions across enterprise systems. Each capability adds a distinct attack layer. Most enterprise security

To learn more about Polygraf, please get in touch.

At Polygraf, we envision a future where AI augments human capabilities without compromising safety, privacy, or ethical standards. Trust in our commitment to building this future with you.

Products

thank you

Your download will start now.

Thank you!

Please provide information below and
we will send you a link to download the white paper.