Data Security Policy
This policy describes the technical and organisational measures in place to protect your data and payments.
Last updated : 2026-09-20
Encryption
All communications with chinafrik.com are encrypted over HTTPS (TLS). Data is stored on secure infrastructure with strict access control and regular backups.
Payments
Online payments are processed entirely by Flutterwave, a PCI-DSS certified provider. ChinAfric stores no bank card or mobile money credentials.
Every transaction is re-verified server-side with Flutterwave (amount, currency, status) before an order is validated, and incoming notifications are authenticated by cryptographic signature.
Fraud prevention
Unusual orders are manually verified by phone or WhatsApp. We may request proof of identity for high-value orders, in line with know-your-customer (KYC) and anti-money-laundering obligations.
Access control
Access to customer data is limited to what is strictly necessary (order preparation, customer service). Every administrator access is authenticated, traced and logged, and rights are revoked as soon as they are no longer needed.
Data breach
Should a security incident affect your data, we commit to informing you within 72 hours, notifying the competent authority and our payment provider, and immediately taking corrective measures. Report a vulnerability: contact@chinafric.com.