Privacy Policy

Your privacy and data security are our top priorities. Learn how we protect your information.

Last updated: February 22, 2026
Google Play Compliant
Apple App Store Compliant

Overview

Shariz (“we,” “our,” or “us”) is committed to protecting your privacy. This Privacy Policy explains how we collect, use, and safeguard your information when you use our mobile application for planning group events, managing contributions, processing payments, and facilitating escrow transactions across Africa.

Information We Collect

Personal Information

  • Account Data: Name, email address, phone number
  • Profile Information: Profile picture, display name, preferences
  • Contacts: Access to contacts (with permission) to find friends using Shariz

Financial Information

  • Bill Data: Restaurant names, bill amounts, itemized expenses
  • Event Contributions: Contribution amounts, escrow deposits, and withdrawal records
  • Payment Method References: Tokenized references to payment methods — we do not store card numbers, which are handled directly by our licensed payment providers
  • Wallet & Transaction History: Wallet balances, transaction records, and payment history
  • Split Calculations: How expenses are divided among participants

Device Information

  • Device ID: For app analytics and crash reporting
  • App Usage: Feature usage statistics to improve the app
  • Location: Optional location data for nearby restaurant suggestions

Camera Permission

Why We Need It

  • Scan bills for automatic entry
  • OCR text processing
  • Enhanced convenience

How We Protect It

  • Local device processing
  • End-to-end encryption
  • Easy deletion options

Your Control

  • Completely optional
  • Manage anytime in settings
  • Delete data on demand

How We Use Your Information

Core Functionality

Plan group events, manage contributions, process payments, and facilitate escrow transactions

Communication

Send notifications about bill updates and payment requests

Improvement

Analyze app usage to enhance features and performance

Security

Detect and prevent fraudulent activity

Event Management

Create and manage group events, track contributions, and facilitate escrow payments

Data Sharing

With Participants

Bill details are shared only with people you explicitly add to bills. Contact information is shared only when you send friend requests.

With Service Providers

Shariz does not store payment card numbers or banking credentials. These are handled directly by our licensed payment providers.

  • M-Pesa (Safaricom/Vodacom) — mobile money payments in Kenya, Tanzania, Mozambique, DRC, Ghana, Lesotho, and Egypt
  • Flutterwave — card and mobile money payments across 13 African countries
  • Paystack — card payments in Nigeria, Ghana, South Africa, Kenya, and Egypt
  • TradeSafe — escrow and wallet services in South Africa
  • Yoco — card payments in South Africa
  • Stitch — bank-to-bank payments in South Africa
  • PayShap — instant payments in South Africa
  • Cloud Storage: Encrypted data backup and synchronization
  • Analytics: Anonymized usage data for app improvement

Legal Requirements

We may disclose information when required by law or to protect our rights.

Payment Providers & Financial Data

Third-Party Payment Processing

All payments on Shariz are processed by licensed third-party payment providers. Shariz acts as a technology platform facilitating connections between users and these payment providers. We do not process payments directly.

Escrow Services

Escrow funds for event contributions are held by TradeSafe, a licensed escrow provider in South Africa. Shariz does not hold or manage escrow funds directly. TradeSafe is responsible for the safekeeping and release of escrowed funds in accordance with their licensing obligations.

What We Store

Shariz stores transaction references and metadata (such as transaction IDs, amounts, timestamps, and status) to provide you with transaction history and support. We do not store raw payment credentials, card numbers, bank account numbers, or mobile money PINs. These are handled exclusively by the respective payment providers.

Deletion of Transaction History

Users can request deletion of their transaction history. However, certain transaction records may be retained as required by financial record-keeping regulations in the countries where we operate (see Data Retention section below).

Data Security

Encryption

All sensitive data is encrypted in transit and at rest using industry-standard protocols.

  • • 256-bit SSL encryption
  • • Secure payment processing
  • • PCI-DSS compliant

Protection

Industry-standard security measures protect your data at all times.

  • • Limited access controls
  • • Regular security audits
  • • Continuous monitoring

Data Retention

Account Data

Retained while your account is active, plus 30 days after a deletion request to allow for recovery.

Transaction Records

Retained for 5 years as required by financial regulatory obligations.

Bill Scanning Images

Deleted after processing. Bill scan images are not stored long-term.

Analytics Data

Anonymized after 12 months. Aggregated analytics may be retained indefinitely.

Escrow Records

Retained for 7 years per South African financial regulations governing escrow transactions.

Regulatory Compliance

POPIA (South Africa)

Shariz complies with the Protection of Personal Information Act (POPIA). Users have the right to access, correct, and delete their personal information. Our Information Officer can be reached at privacy@shariz.app.

Kenya Data Protection Act

Shariz is compliant with the Kenya Data Protection Act for M-Pesa and other Kenyan operations, ensuring that personal data of Kenyan users is processed lawfully and protected appropriately.

Nigeria Data Protection Regulation (NDPR)

Shariz complies with the Nigeria Data Protection Regulation for Paystack and Flutterwave operations in Nigeria, safeguarding the personal data of Nigerian users.

Cross-Border Data Transfers

Data may be transferred between countries where our payment providers operate. All cross-border transfers are protected by appropriate safeguards, including contractual obligations and technical security measures, to ensure your data remains protected regardless of where it is processed.

Financial Services Regulation

Payment processing on Shariz is handled by providers licensed by their respective financial regulators, including the South African Reserve Bank, the Central Bank of Kenya, the Central Bank of Nigeria, and other relevant authorities in the countries where we operate.

Your Privacy Rights

View Data

Access all personal information we have about you

Update Information

Modify your profile and preferences anytime

Delete Account

Request complete account deletion

Data Export

Download your data in a portable format

Questions About Your Privacy?

We're committed to transparency. Reach out with any questions about this Privacy Policy.

We typically respond within 24 hours

Consent

By using Shariz, you consent to the collection and use of information as described in this Privacy Policy.