Privacy Policy
Last updated: January 2025
π Your Privacy Matters
At e-skoloto, we prioritize your privacy and data security. This policy explains how we handle your information with the highest standards of protection.
π Data We Collect
Account Information
Name, email, ID number (for FICA compliance), phone number
Financial Data
Bank statement analysis (processed locally, not stored permanently)
Usage Analytics
Anonymous usage patterns to improve our service
π‘οΈ How We Protect Your Data
π Firebase Authentication
Google-grade security for login and account management
π¦ No Bank Details Stored
We never store your banking credentials or account numbers
π± Local Processing
Bank statements processed in-browser, then deleted
π Encrypted Storage
All data encrypted at rest and in transit
βοΈ Serverless Architecture
No persistent servers - functions run on-demand and auto-scale
π Secure APIs
All APIs protected with authentication tokens and rate limiting
β° Data Retention
π― How We Use Your Data
- Analyze your financial health for loan qualification
- Provide personalized financial insights and recommendations
- Comply with South African financial regulations (NCA, FICA)
- Improve our service through anonymous usage analytics
- Send important account and loan notifications
π« What We Don't Do
ποΈ Serverless Security Architecture
β‘ Google Cloud Functions
Code runs in isolated, stateless containers that auto-destroy after execution
π‘οΈ No Attack Surface
No persistent servers to hack - infrastructure managed by Google
π API Security
JWT authentication, CORS protection, and request validation on all endpoints
π Auto-Scaling
Functions scale to zero when not in use - no idle servers storing data
π€ Third-Party Services
Google Firebase
Authentication and secure data storage
Payment Processors
Secure loan disbursement and repayment processing
Credit Bureaus
Credit checks as required by law (with your consent)
π€ Your Rights
Access
Request a copy of your data
Correction
Update incorrect information
Deletion
Request account and data deletion
Portability
Export your data in standard format
π Contact Us
Questions about your privacy? Contact us:
π§ Email: privacy@e-skoloto.co.za
π§ Data Protection Officer: dpo@e-skoloto.co.za
π± Phone: +27 (0) 11 123 4567
π’ Address: Johannesburg, South Africa
ποΈ Information Regulator: inforegulator.org.za
πΏπ¦ POPIA Compliance Statement
e-skoloto is fully compliant with South Africa's Protection of Personal Information Act (POPIA).
β Lawful Processing
We process personal information only with your consent and for legitimate financial services
π― Purpose Limitation
Data used only for loan assessment, financial analysis, and regulatory compliance
π Security Safeguards
Bank-grade encryption, secure authentication, and serverless architecture
π Data Minimization
We collect only essential information required for financial services
π Regulatory Compliance
This policy complies with:
- Protection of Personal Information Act (POPIA) - Full compliance with data protection requirements
- National Credit Act (NCA) - Responsible lending and consumer protection
- Financial Intelligence Centre Act (FICA) - Customer due diligence and identity verification
- General Data Protection Regulation (GDPR) - International data protection standards