Privacy Policy

Effective date: 24 June 2026

This Privacy Policy explains how KRYX Pay and the KRYX app ("KRYX", "we", "us", or "our") collect, use, share, retain, and protect personal data when customers and merchants use our website, mobile app, dashboard, payment request tools, QR payment flow, and related services.

1. Who We Are

KRYX is a payment request and merchant/customer payment experience. Customers can scan payment QR codes or open payment links, review merchant and amount details, and confirm payments. Merchants can create payment requests, receive payment confirmations, and view transaction activity.

Privacy contact: support@kryxpay.com. Security contact: security@kryxpay.com.

2. Data We Collect

Depending on how you use KRYX, we may collect:

3. Payment Card Data

KRYX does not store full card numbers, CVV, PIN, OTP, or full PAN. Card entry and payment processing are handled by regulated payment providers such as Paystack. We may store safe payment metadata and encrypted reusable authorization references when needed to support saved-card or FastPay-style payments.

4. Biometrics

If you enable Face ID, Touch ID, fingerprint, or similar biometric confirmation, biometric checks are handled by your device. KRYX does not receive or store your biometric template. We only receive confirmation that the device authentication succeeded or failed.

5. How We Use Data

We use data to:

6. Sharing Data

We may share data with:

We do not sell personal data. We do not use personal data for third-party targeted advertising.

7. Retention and Deletion

We keep personal data only for as long as needed for the purposes described in this Policy, including account operation, payment records, fraud prevention, dispute handling, legal compliance, audit, tax, and accounting requirements.

You can request account deletion by visiting our account deletion page or by emailing support@kryxpay.com. Some records may be retained where required for legitimate legal, security, fraud-prevention, accounting, dispute, or regulatory reasons.

8. Security

We use administrative, technical, and organizational safeguards designed to protect personal data. These include HTTPS, secure token handling, access controls, audit logs, rate limiting, encryption for sensitive stored references, and secure payment processing through third-party payment providers. No system is perfectly secure, but we work to reduce risk and respond quickly to security issues.

9. International Processing

KRYX may use service providers or infrastructure located outside your country. Where data is transferred internationally, we take steps designed to protect it in line with applicable law.

10. Your Rights

Subject to applicable law, you may request access, correction, deletion, restriction, portability, or objection to certain processing of your personal data. You may also withdraw consent where processing is based on consent. To make a request, email support@kryxpay.com.

11. Children

KRYX is not intended for children. Users must be legally able to use payment services in their jurisdiction. We do not knowingly collect personal data from children.

12. Changes

We may update this Privacy Policy from time to time. If changes are material, we will take reasonable steps to notify users. The latest version will always be available on this page.

13. Contact

Questions or requests: support@kryxpay.com. Security reports: security@kryxpay.com.