Why does Moss ask me to re-authenticate Exact Online?
Moss connects to Exact Online via OAuth — a secure, token-based method. OAuth uses short-lived access tokens (renewed automatically) and a longer-lived refresh token. Re-authentication is needed when the refresh token itself becomes invalid.
Common causes:
The refresh token reached its maximum lifetime
Your IT admin revoked Moss's permissions in Exact Online's app settings
The connection was inactive for an extended period
What will I see in Moss?
When re-authentication is required, the Settings → Accounting page will show a warning state for your Exact Online integration. An Authorize button appears at the top of the page.
If the connection is still active but Moss is alerting you proactively, you will see a Re-authenticate link instead.
How do I re-authenticate?
Go to Settings → Accounting in Moss.
Click Authorize (or the Re-authenticate link if shown).
You will be redirected to the Exact Online login page.
Log in with your Exact Online credentials and grant Moss permission.
You will be redirected back to Moss automatically — the connection is restored immediately.
Tip: Re-authentication is also a good opportunity to link the Exact Online integration to a different user account — for example, a shared service account with higher permissions, or to avoid disruption when the user who originally connected the integration is leaving the company.
Which Exact Online permissions does the connecting user need?
The user who authenticates must have sufficient rights in Exact Online to allow Moss to read and write accounting data. Typically this means the user needs access to:
Purchase invoices / journals
Bank accounts / bank journals
Suppliers (creditors)
If exports fail after re-authenticating, check whether the re-authenticating user has these permissions in Exact Online.
What happens to exports that failed while the connection was expired?
Re-authentication restores the connection going forward, but any exports that failed while the token was expired will not be retried automatically. You will need to re-trigger those exports manually in Moss.
Still seeing errors after re-authenticating?
Check the following:
Does the user who re-authenticated have the required permissions in Exact Online (e.g. manage invoices, manage bank accounts)?
Was Moss's access revoked at the application level in Exact Online? If so, an admin may need to re-approve the Moss app in Exact Online's app management settings.
If the issue persists, contact support@getmoss.com.
