Skip to content
PayCheck

Legal

Privacy Policy

Effective August 6, 2026. Also see our Terms of Service.

Who we are

PayCheck ("we", "us") provides payment verification infrastructure for Ethiopian banks and wallets. This policy explains what information we collect when you use our website, console, API, and related services (the "Service"), and how we use it.

Information we collect

Account data: name, email, password hash or OAuth identifiers, company profile, and billing details you provide. Usage data: API requests, verification outcomes, app and API-key metadata, IP addresses, and approximate device/browser information. Payment verification data: receipt identifiers, amounts, destination account references, bank provider, and related attester payloads needed to confirm a transfer. Support data: messages you send to us by email or other channels.

How we use information

We use this information to operate and improve the Service, authenticate users, enforce quotas and security controls, process billing, investigate disputed or failed verifications, prevent fraud and abuse, and communicate about the Service (including security and account notices).

Legal bases and sharing

We process data to perform our contract with you, to pursue legitimate interests such as securing the platform, and where required by law. We may share data with infrastructure and payment providers that help us run the Service, with your company administrators when you join a company account, and with authorities when legally required. We do not sell personal information.

Retention

We retain account and verification records for as long as your account remains active and as needed for billing, dispute handling, security, and legal obligations. You may request deletion of account data subject to those obligations; verification logs tied to fraud prevention or financial records may be retained longer where necessary.

Security

We use industry-standard measures including encrypted transport (HTTPS), hashed passwords, scoped API keys, and access controls on console and platform operations. No method of transmission or storage is perfectly secure; please protect your credentials and rotate API keys if exposure is suspected.

Your choices

You can update profile information in the console, rotate or revoke API keys, and request account closure by contacting us. Depending on applicable law, you may also request access to or correction of personal data we hold about you.

Children

The Service is intended for business and adult users. We do not knowingly collect personal information from children under 16.

Changes

We may update this policy from time to time. Material changes will be reflected on this page with an updated effective date. Continued use of the Service after changes means you accept the revised policy.

Contact

Questions about privacy: [email protected].