Privacy Policy
Your privacy and data security are our top priorities. Learn how we protect your information.
Overview
Shariz (“we,” “our,” or “us”) is committed to protecting your privacy. This Privacy Policy explains how we collect, use, and safeguard your information when you use our mobile application for planning group events, managing contributions, processing payments, and facilitating escrow transactions across Africa.
Information We Collect
Personal Information
- •Account Data: Name, email address, phone number
- •Profile Information: Profile picture, display name, preferences
- •Contacts: Access to contacts (with permission) to find friends using Shariz
Financial Information
- •Bill Data: Restaurant names, bill amounts, itemized expenses
- •Event Contributions: Contribution amounts, escrow deposits, and withdrawal records
- •Payment Method References: Tokenized references to payment methods — we do not store card numbers, which are handled directly by our licensed payment providers
- •Wallet & Transaction History: Wallet balances, transaction records, and payment history
- •Split Calculations: How expenses are divided among participants
Device Information
- •Device ID: For app analytics and crash reporting
- •App Usage: Feature usage statistics to improve the app
- •Location: Optional location data for nearby restaurant suggestions
Camera Permission
Why We Need It
- ✓Scan bills for automatic entry
- ✓OCR text processing
- ✓Enhanced convenience
How We Protect It
- ✓Local device processing
- ✓End-to-end encryption
- ✓Easy deletion options
Your Control
- ✓Completely optional
- ✓Manage anytime in settings
- ✓Delete data on demand
How We Use Your Information
Core Functionality
Plan group events, manage contributions, process payments, and facilitate escrow transactions
Communication
Send notifications about bill updates and payment requests
Improvement
Analyze app usage to enhance features and performance
Security
Detect and prevent fraudulent activity
Event Management
Create and manage group events, track contributions, and facilitate escrow payments
Data Sharing
With Participants
Bill details are shared only with people you explicitly add to bills. Contact information is shared only when you send friend requests.
With Service Providers
Shariz does not store payment card numbers or banking credentials. These are handled directly by our licensed payment providers.
- M-Pesa (Safaricom/Vodacom) — mobile money payments in Kenya, Tanzania, Mozambique, DRC, Ghana, Lesotho, and Egypt
- Flutterwave — card and mobile money payments across 13 African countries
- Paystack — card payments in Nigeria, Ghana, South Africa, Kenya, and Egypt
- TradeSafe — escrow and wallet services in South Africa
- Yoco — card payments in South Africa
- Stitch — bank-to-bank payments in South Africa
- PayShap — instant payments in South Africa
- Cloud Storage: Encrypted data backup and synchronization
- Analytics: Anonymized usage data for app improvement
Legal Requirements
We may disclose information when required by law or to protect our rights.
Payment Providers & Financial Data
Third-Party Payment Processing
All payments on Shariz are processed by licensed third-party payment providers. Shariz acts as a technology platform facilitating connections between users and these payment providers. We do not process payments directly.
Escrow Services
Escrow funds for event contributions are held by TradeSafe, a licensed escrow provider in South Africa. Shariz does not hold or manage escrow funds directly. TradeSafe is responsible for the safekeeping and release of escrowed funds in accordance with their licensing obligations.
What We Store
Shariz stores transaction references and metadata (such as transaction IDs, amounts, timestamps, and status) to provide you with transaction history and support. We do not store raw payment credentials, card numbers, bank account numbers, or mobile money PINs. These are handled exclusively by the respective payment providers.
Deletion of Transaction History
Users can request deletion of their transaction history. However, certain transaction records may be retained as required by financial record-keeping regulations in the countries where we operate (see Data Retention section below).
Data Security
Encryption
All sensitive data is encrypted in transit and at rest using industry-standard protocols.
- • 256-bit SSL encryption
- • Secure payment processing
- • PCI-DSS compliant
Protection
Industry-standard security measures protect your data at all times.
- • Limited access controls
- • Regular security audits
- • Continuous monitoring
Data Retention
Account Data
Retained while your account is active, plus 30 days after a deletion request to allow for recovery.
Transaction Records
Retained for 5 years as required by financial regulatory obligations.
Bill Scanning Images
Deleted after processing. Bill scan images are not stored long-term.
Analytics Data
Anonymized after 12 months. Aggregated analytics may be retained indefinitely.
Escrow Records
Retained for 7 years per South African financial regulations governing escrow transactions.
Regulatory Compliance
POPIA (South Africa)
Shariz complies with the Protection of Personal Information Act (POPIA). Users have the right to access, correct, and delete their personal information. Our Information Officer can be reached at privacy@shariz.app.
Kenya Data Protection Act
Shariz is compliant with the Kenya Data Protection Act for M-Pesa and other Kenyan operations, ensuring that personal data of Kenyan users is processed lawfully and protected appropriately.
Nigeria Data Protection Regulation (NDPR)
Shariz complies with the Nigeria Data Protection Regulation for Paystack and Flutterwave operations in Nigeria, safeguarding the personal data of Nigerian users.
Cross-Border Data Transfers
Data may be transferred between countries where our payment providers operate. All cross-border transfers are protected by appropriate safeguards, including contractual obligations and technical security measures, to ensure your data remains protected regardless of where it is processed.
Financial Services Regulation
Payment processing on Shariz is handled by providers licensed by their respective financial regulators, including the South African Reserve Bank, the Central Bank of Kenya, the Central Bank of Nigeria, and other relevant authorities in the countries where we operate.
Your Privacy Rights
View Data
Access all personal information we have about you
Update Information
Modify your profile and preferences anytime
Delete Account
Request complete account deletion
Data Export
Download your data in a portable format
Questions About Your Privacy?
We're committed to transparency. Reach out with any questions about this Privacy Policy.
Privacy Questions
Policy & data handling
privacy@shariz.app
General Support
App support & assistance
support@shariz.app
Contact Page
More contact options
Visit Contact Page →
We typically respond within 24 hours
Consent
By using Shariz, you consent to the collection and use of information as described in this Privacy Policy.