Data Security Policy

This policy describes the technical and organisational measures in place to protect your data and payments.

Last updated : 2026-09-20

Encryption

All communications with chinafrik.com are encrypted over HTTPS (TLS). Data is stored on secure infrastructure with strict access control and regular backups.

Payments

Online payments are processed entirely by Flutterwave, a PCI-DSS certified provider. ChinAfric stores no bank card or mobile money credentials.

Every transaction is re-verified server-side with Flutterwave (amount, currency, status) before an order is validated, and incoming notifications are authenticated by cryptographic signature.

Fraud prevention

Unusual orders are manually verified by phone or WhatsApp. We may request proof of identity for high-value orders, in line with know-your-customer (KYC) and anti-money-laundering obligations.

Access control

Access to customer data is limited to what is strictly necessary (order preparation, customer service). Every administrator access is authenticated, traced and logged, and rights are revoked as soon as they are no longer needed.

Data breach

Should a security incident affect your data, we commit to informing you within 72 hours, notifying the competent authority and our payment provider, and immediately taking corrective measures. Report a vulnerability: contact@chinafric.com.