Privacy Policy

Official legal notice for users of TAI FINTECH services and digital platforms.

Version 1.0 Effective 2026-05-09Last updated: 5/8/2026, 9:09:45 AM

PRIVACY POLICY

TAI FINTECH LLP


1. INTRODUCTION

Tai Fintech LLP ("Tai Fintech", "we", "us", "our") is committed to protecting the privacy and security of personal data. This Privacy Policy explains how we collect, use, disclose, and safeguard personal data in the course of delivering our services, including financial systems integration, cloud infrastructure, cybersecurity services, enterprise platforms, and digital ecosystem solutions.

This policy applies to:

  • Website visitors

  • Clients and prospective clients

  • Partners and vendors

  • Users of platforms and systems implemented or managed by Tai Fintech


2. SCOPE OF THIS POLICY

This Privacy Policy applies to personal data processed:

  • Through our website and digital platforms

  • During service delivery and system implementation

  • Through integrations with third-party platforms

  • In the course of business operations

Important Distinction:
Where Tai Fintech acts as a data processor on behalf of a client, the client’s privacy policy shall prevail. Tai Fintech processes such data strictly under contractual instructions.


3. DATA WE COLLECT

3.1 Personal Data

We may collect:

  • Full name

  • Contact information (email address, phone number)

  • Company and job title

  • Identification information (where required for regulated services)

3.2 Technical Data

  • IP address

  • Device and browser type

  • Access logs and usage data

  • Cookies and tracking data

3.3 Transaction and System Data

Where applicable:

  • Financial transaction metadata

  • System usage logs

  • API interaction data

3.4 Sensitive Personal Data

We only process sensitive personal data where:

  • Explicit consent is obtained, or

  • Required under applicable law or contractual obligation


4. HOW WE USE YOUR DATA

We process personal data for the following purposes:

4.1 Service Delivery

  • Implementing and managing systems

  • Providing cloud and cybersecurity services

  • Supporting integrations and platforms

4.2 Business Operations

  • Client onboarding and relationship management

  • Billing and invoicing

  • Internal reporting and analytics

4.3 Security and Compliance

  • Monitoring systems for threats and vulnerabilities

  • Fraud prevention and risk management

  • Compliance with legal and regulatory requirements

4.4 Improvement and Innovation

  • Enhancing our platforms and services

  • Developing new solutions and capabilities


5. LEGAL BASIS FOR PROCESSING

We process personal data based on:

  • Consent

  • Contractual necessity

  • Legal obligation

  • Legitimate business interests


6. DATA SHARING AND DISCLOSURE

We may share personal data with:

6.1 Technology Partners

Including cloud providers and platform vendors supporting service delivery.

6.2 Subcontractors and Service Providers

Who process data on our behalf under strict confidentiality agreements.

6.3 Regulatory Authorities

Where required by law or regulatory obligation.

6.4 Clients (Controller Context)

Where data is processed within client systems.

We do not sell personal data.


7. INTERNATIONAL DATA TRANSFERS

Due to the nature of our services, personal data may be transferred across borders, including to jurisdictions outside Kenya.

Where such transfers occur, we ensure:

  • Adequate data protection safeguards

  • Contractual protections with recipients

  • Compliance with applicable laws


8. DATA SECURITY

We implement appropriate technical and organizational measures, including:

  • Encryption of data in transit and at rest

  • Access control and identity management

  • Network security controls and monitoring

  • Security Operations Center (SOC) oversight

  • Regular vulnerability assessments and penetration testing


9. DATA RETENTION

We retain personal data only for as long as necessary to:

  • Fulfill the purposes outlined in this policy

  • Comply with legal, regulatory, and contractual obligations

Retention periods are determined based on:

  • Nature of the data

  • Legal requirements

  • Business needs


10. YOUR RIGHTS

Subject to applicable law, you have the right to:

  • Access your personal data

  • Request correction or deletion

  • Object to or restrict processing

  • Withdraw consent (where applicable)

  • Request data portability

Requests can be submitted via the contact details below.


11. COOKIES AND TRACKING TECHNOLOGIES

Our website may use cookies to:

  • Enhance user experience

  • Analyze site usage

  • Support security functions

Users may manage cookie preferences through browser settings.


12. THIRD-PARTY SERVICES

Our services may integrate with third-party platforms.
Tai Fintech is not responsible for the privacy practices of such third parties. Users are encouraged to review their respective privacy policies.


13. DATA BREACH MANAGEMENT

In the event of a data breach, Tai Fintech will:

  • Investigate and contain the incident

  • Notify affected parties where required

  • Report to relevant authorities in accordance with applicable laws


14. CHILDREN’S PRIVACY

Our services are not directed to individuals under the age of 18. We do not knowingly collect personal data from children.


15. CHANGES TO THIS POLICY

We may update this Privacy Policy from time to time.
Updates will be published on our website with the revised effective date.


16. CONTACT INFORMATION

For any questions or requests regarding this Privacy Policy, please contact:

Tai Fintech LLP
Email: info@taifin.co.ke
Address: Strathmore University, Students' Center, Nairobi, Kenya


17. GOVERNING LAW

This Privacy Policy shall be governed by the laws of Kenya, including the Kenya Data Protection Act, 2019, and applicable international data protection frameworks where relevant.


18. ACCEPTANCE

By using our services or interacting with our platforms, you acknowledge that you have read and understood this Privacy Policy.