Privacy Policy
Last updated: March 9, 2026
1. Introduction
Tayp ("we", "our", "us") is committed to protecting your privacy. This policy explains how we collect, use, and safeguard your personal data when you use the Tayp mobile application and related services. Tayp enables users to remotely top up mobile wallets (such as Nita and AmanaTa) in West Africa.
2. Data We Collect
We collect the following types of data:
- Identity data: full name, email address, phone number, and date of birth
- KYC verification data: identity document information processed by our verification partner (Veriff) to comply with regulatory requirements
- Payment data: payment card details processed securely by Stripe — we never store full card numbers
- Transaction data: wallet top-up history, amounts, recipient information, and transaction status
- Technical data: IP address, device type, operating system, and app version
- Usage data: app interaction logs, connection timestamps, and feature usage patterns
3. How We Use Your Data
We use your data to:
- Process your wallet top-up requests and manage your account
- Verify your identity (KYC) and ensure platform security
- Process payments securely via Stripe
- Execute wallet top-ups via our partner Nita in West Africa
- Improve our services, performance, and user experience
- Send transaction confirmations, notifications, and service updates
- Comply with applicable legal and regulatory obligations
- Prevent fraud, money laundering, and unauthorized use
4. Data Sharing
We never sell your personal data. We may share your information with:
- Stripe: for secure payment processing (card charges and refunds)
- Nita: our wallet top-up partner in Niger, to execute wallet credits on behalf of recipients
- Veriff: our KYC verification partner, to validate your identity documents
- Supabase: our infrastructure provider for secure data storage
- Legal authorities: if required by law, court order, or to prevent illegal activity
5. Data Security
We implement industry-standard security measures:
- AES-256 encryption for data at rest
- TLS 1.3 for all data in transit
- Biometric authentication and 6-digit PIN code for app access
- PCI-DSS compliant payment processing via Stripe
- Regular security audits and vulnerability assessments
- Rate limiting and IP-based protection against abuse
6. Your Rights (GDPR)
Under GDPR, you have the right to:
- Access: request a copy of your personal data
- Rectification: correct inaccurate or incomplete data
- Erasure: request deletion of your data and account
- Portability: receive your data in a structured, machine-readable format
- Object: object to certain types of data processing
- Withdraw consent: withdraw consent at any time where processing is based on consent
You can delete your account directly from the app (Profile > Delete Account) or contact us at: privacy@tovopay.com
7. Data Retention
We retain your data for as long as necessary to provide our services and comply with legal requirements. Transaction records are retained for 5 years for regulatory compliance and audit purposes. You may request account deletion at any time through the app or by contacting us.
8. Cookies
Our website uses essential cookies to ensure proper functionality. We do not use tracking or advertising cookies without your explicit consent.
9. Children's Privacy
Tayp is not intended for use by individuals under the age of 18. We do not knowingly collect personal data from children. If we become aware that we have collected data from a child, we will delete it promptly.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes via the app or email. Your continued use of Tayp after changes constitutes acceptance of the updated policy.
11. Contact
For any privacy-related questions:
- Email: privacy@tovopay.com
- Website: https://tovopay.com