FTA Audit

How to Prepare Bank Statements for an FTA Tax Audit in the UAE

By BayanSheet team

An audit notice from the Federal Tax Authority tends to arrive at the worst possible time, and the first thing it makes you do is count. How many bank accounts did the business run across the periods named in the notice? How many of those statements can you still lay hands on? And, the question that decides how the next few weeks go: do the numbers on the statements agree with the numbers on the returns you filed?

Bank statements sit at the centre of almost every FTA review because they are the one record you did not write yourself. Invoices, ledgers and returns are your account of what happened; the statement is the bank's. An auditor tracing declared sales to cash received, or supplier payments to input tax claimed, ends up in the bank statement every time. That makes the statements the first documents worth getting into order, and this guide is a seven-step checklist for doing exactly that — with the original PDF kept as the legal record and a reconciled Excel copy as the working file you actually hand across.

This is not tax advice. The regulatory points below were checked against the FTA's published rules as of September 2026 and are summarised, not quoted. Rules, dates and penalties change; confirm anything that affects your business with the FTA or a registered tax agent.

What the FTA is entitled to ask for

Under the Tax Procedures law (Federal Decree-Law No. 28 of 2022) and its executive regulation (Cabinet Decision No. 74 of 2023), a taxable person has to keep the records that support their accounting entries — and bank statements are the plainest example — for five years after the end of the tax period they relate to. Records connected to real estate must be kept longer, and if you file a voluntary disclosure in the fifth year, the retention period is extended by a further year. In plain terms: an audit in 2026 can reach back to periods you may have stopped thinking about in 2021.

Two more points shape how you prepare, as of September 2026:

  • Form matters. FTA Decision No. 4 of 2026, effective 30 July 2026, sets out what an electronic or photocopied record has to look like to be acceptable: complete and identical to the original, pages in their original sequence, readable on screen, and the FTA may request access to the system where the records are stored. A cropped screenshot of a statement page, or a spreadsheet with the "boring" rows deleted, is not a record in that sense.
  • The returns the statements have to support are on fixed clocks. VAT returns are due within 28 days of the end of the tax period — quarterly for most businesses, since the monthly cycle applies above AED 150 million in turnover. The Corporate Tax return for a financial year ending 31 December 2025 is due by 30 September 2026 under the nine-month rule, and a late return attracts a penalty of AED 500 per month for the first twelve months, rising to AED 1,000 per month after that. An audit typically asks you to show how the figures on those returns were built; the bank statements are how you show it.

The seven-step preparation checklist

1. Collect native PDFs for every account and every period — not scans

Start with a list: every current, savings, card and loan account the business used in the periods under review, including any account that was closed since. Then download the bank's own PDF statement for each period from online banking. Statement-cycle periods are better than custom date ranges because the opening and closing balances are printed on the document, which is what makes step 2 possible.

Avoid scans and photographs. A native PDF from the bank carries a real text layer, so it can be converted and checked; a scan is just pixels. BayanSheet has no OCR and will refuse an image-only PDF rather than guess at what it says — a refusal you would rather have on your desk than a silently wrong spreadsheet in an auditor's hands. If an old period exists only as a scan, keep the scan, but mark it as unreconciled in your index (step 4).

2. Convert each statement to Excel and reconcile it

Work through the statements one by one at the converter. Every conversion is checked against the statement's own printed figures using the only equation that matters here:

Opening balance + total credits − total debits = closing balance

BayanSheet also runs a per-row running-balance check, so a single dropped or duplicated line is flagged at the row where the chain breaks rather than surfacing as an unexplained difference weeks later. If the statement reconciles, no row was lost and no amount was misread badly enough to matter — that is arithmetic, not a claim. If it does not, see the section on reconciliation gaps below before you go any further.

The whole conversion runs inside your browser and nothing is uploaded — which matters when the file is a complete banking history. Switch your Wi-Fi off and convert a statement anyway; it still works, because there is nowhere for the file to go.

3. Keep the original PDF — always

The Excel file is the working copy. The PDF is the record. Never let a reconciled spreadsheet tempt you into discarding the source, because the auditor's question is not "does your sheet add up?" but "does your sheet match the bank's document?" — and only the PDF can answer that. Store the PDF and its Excel twin side by side, named identically apart from the extension.

4. Index everything by tax period

Build one index sheet with a row per statement: account, period covered, opening balance, closing balance, whether it reconciled, and the filename of the PDF and the Excel. Group the rows by tax period — quarter for VAT, financial year for Corporate Tax — so that an auditor asking about Q3 2024 can be handed exactly the statements that cover it, with balances that chain from one statement to the next. A gap in the chain (a closing balance that does not equal the next opening balance) is a missing statement, and it is far better to find it yourself than to have it found for you.

5. Tie the return totals to the bank movements

This is the step that turns a tidy archive into an audit-ready one. For each VAT period, place the totals from the filed return beside the relevant bank movements: sales receipts against declared taxable supplies, supplier payments against the purchases behind your input tax. They will not match to the dirham — VAT is invoice-driven, and timing differences, part-payments and non-VAT movements are normal — but you should be able to explain the bridge between them. The same exercise for the Corporate Tax year is described in preparing bank statements for UAE Corporate Tax, and the VAT side in more detail in bank statement to Excel for a UAE VAT return.

6. Note every unexplained gap — before the auditor does

Any movement you cannot immediately account for — a transfer between accounts with no matching entry, a deposit with no invoice, a debit with no supplier — goes on a list with what you did about it. Some will resolve with ten minutes of research; some will turn out to be genuine errors that belong in a voluntary disclosure, which is a conversation for a registered tax agent. Either way, a written list of known issues reads very differently to an auditor than the same issues discovered cold.

7. Package it for the auditor

Finish with a folder per tax period containing the original PDFs, the reconciled Excel copies, the index sheet and the gap notes, plus a short cover note listing the accounts included and any statements that could not be reconciled and why. Keep a copy of the package exactly as delivered.

What a reconciliation gap actually means

A statement that does not reconcile is not a reason to panic, but it is a reason to stop. The gap means the rows in your spreadsheet do not add up to the balances the bank printed, and there are only a handful of causes: a row was dropped or duplicated during extraction, a decimal or a digit was misread, a debit landed in the credit column, or a description that wrapped onto a second line was split into a phantom transaction. All of them are extraction problems, and all of them are visible once the tool tells you which row broke the chain.

What you must not do is export the sheet anyway and hope nobody totals it. BayanSheet flags an unreconciled file visibly instead of exporting it silently, precisely so that a spreadsheet handed to an auditor never disagrees with the PDF it was built from without you knowing. If a statement will not reconcile after a second look — a scanned page in the middle of a native PDF is the classic cause — record it as unreconciled in the index and hand over the PDF as the primary record for that period. Our bank reconciliation from PDF statements guide walks through the month-end version of the same discipline.

Common mistakes

  • Handing over only the Excel file and treating the bank's PDF as disposable — the PDF is the record; the sheet is the working copy.
  • Filling a missing month with a scan or a screenshot and hoping nobody totals it. An image-only file cannot be reconciled; say so in the index.
  • Deleting "irrelevant" rows to make the sheet tidier. A record that is not complete and identical to the original is not a record.
  • Sorting or re-dating rows so the sheet no longer follows the statement. Add columns for your classifications instead of editing the bank's.
  • Discovering a gap in the balance chain during the audit instead of in step 4.
  • Fixing a genuine error in a filed return inside the spreadsheet. That is a conversation for a registered tax agent, not a cell edit.

Start with one period

The fastest way to find out how much work you are facing is to take the oldest period in the notice and run the seven steps on it. Download the PDFs, convert and reconcile them at the converter — the first 10 pages are free and nothing leaves your browser — and see whether the balances chain and the return totals bridge. If you bank with Emirates NBD, FAB, ADCB or Dubai Islamic Bank, the dedicated converter pages apply the same balance check to those banks' statements; every other bank goes through the same reconciliation on the generic converter. More guides for UAE accountants are on the BayanSheet blog.

Frequently asked questions

What bank records does the FTA ask for in a tax audit?

In practice the auditor wants the bank statements for every business account across the tax periods under review, in a form that can be traced back to the bank's original and tied to the figures on your VAT and Corporate Tax returns. Under the Tax Procedures law and its executive regulation, the records that support your accounting entries — bank statements included — must be kept for five years after the end of the tax period, and longer in certain cases. Confirm the exact scope of any request with the FTA or a registered tax agent.

Can I give the auditor an Excel file instead of the PDF statement?

Give both. The bank's original PDF is the record of authority; an Excel file is a working copy you produced from it. As of September 2026, FTA Decision No. 4 of 2026 requires electronic or photocopied records to be complete, identical to the original and in the original page order, and readable on screen — a spreadsheet that has been sorted, filtered or trimmed does not meet that description on its own. The auditor may also ask for access to the system where the records are stored.

Does a scanned statement count as a proper record?

A scan is only as good as its completeness and legibility, and it is the hardest form to work with: an image-only PDF cannot be converted or balance-checked by BayanSheet, which refuses such files rather than guessing. Download native PDFs from online banking wherever they are still available. If a scan is all that exists for an old period, keep it, but note that it could not be reconciled.

What if my converted statement does not reconcile?

A reconciliation gap means the extracted rows do not add up to the balances printed on the statement — usually a dropped row, a misread decimal or a wrapped description that became a phantom transaction. Do not hand that file to an auditor as if it were complete. Fix the extraction or note the gap explicitly; an honest note is far better than a clean-looking sheet that quietly disagrees with the PDF.

Is this tax advice?

No. This article explains how to organise bank records so an audit goes smoothly. Deadlines, penalties and record-keeping rules change, and how they apply depends on your business. Confirm anything that matters with the Federal Tax Authority or a registered tax agent.

← All guides