WalletWallet

Privacy Policy

Last updated: August 6, 2026

Wallet is built and operated by Tech And Graphics (“we”, “us”) to collect, track, and settle mobile-money payments on behalf of our clients. This policy explains what data the platform processes, why, and how it is protected.

1. Who this applies to

This policy covers authorized administrators who sign in to the dashboard (“admins”), integrator applications that call the client API (“clients”), and the end customers whose phone numbers and payment details are used for charges (“payers”). Access to the dashboard is provisioned by an administrator — there is no public sign-up.

2. Information we collect

  • Account identity — username and role for admins, managed through our identity provider (Keycloak).
  • Client credentials — client IDs and hashed secrets issued to integrator apps, plus webhook URLs and secrets.
  • Payment data — amounts, currency, mobile numbers, operator references, charge status, and timestamps.
  • Ledger and payout records — per-client balances and disbursement history for reconciliation.
  • Audit and session data — sign-in activity and administrative actions, kept for accountability.

3. How we use this information

We use this data to initiate and verify payments through our payment provider, maintain accurate client balances, secure access to the platform, investigate misuse, and improve reliability. We do not use payer phone numbers or payment content for advertising, and we do not sell personal data to third parties.

4. Who we share it with

Payment requests are transmitted to our upstream payment provider solely to complete collections and payouts. Account authentication is handled by our Keycloak identity server. We do not share payment or account data with any other third party except where required by law.

5. Data retention

Payment, ledger, and audit records are retained for as long as needed for settlement, reconciliation, and legal or regulatory compliance. Administrators can request deletion of their own account data, subject to what we are required to retain for audit purposes.

6. Security

Administrative access requires authentication through Keycloak; client API access requires a short-lived token issued with client credentials. Merchant payment keys stay on the server. Traffic is encrypted in transit, sensitive endpoints are rate-limited, and administrative actions are logged. No method of transmission or storage is perfectly secure, but we work to protect data against unauthorized access, alteration, or loss.

7. Cookies

The dashboard uses a session cookie to keep admins signed in and a local preference for light/dark theme. We do not use third-party advertising or analytics cookies.

8. Payers

If your phone was charged through this platform, that payment was initiated by one of our clients, who is responsible for the transaction and for having a valid basis to charge you. Please reach out to that organization directly for requests regarding your number or payment history.

9. Your rights

Depending on applicable law, you may have rights to access, correct, or delete personal data we hold about you. Admins should contact their administrator; payers should contact the client that initiated the charge. You may also contact us using the details below.

10. Contact

Questions about this policy: tag.mw or your Tech And Graphics account contact.