Effective Date: April 15, 2026
Last Updated: April 15, 2026
This Privacy Policy describes how Mitikaz Company Limited (“Mitikaz,” “we,” “us,” or “our”) collects, uses, shares, and protects personal information when you use our websites, mobile applications (including Cashless Biller), platforms, and related services (collectively, the “Services”).
By using our Services, you consent to the practices described in this Privacy Policy.
1. Who We Are
Mitikaz Company Limited is a Tanzanian technology company providing software solutions for businesses, including:
- Cashless — mobile money billing and payment solution
- Bima Plus — insurance underwriting, claims, and WhatsApp chatbot platform
- PiCortex — business management platform for SMEs
- Chatbots — WhatsApp Business API (WABA) solutions
- TIOB — business management tools
2. Information We Collect
2.1 Information You Provide
- Account information: name, email address, phone number, business name, and login credentials
- Identity and verification information: where required for payment services, such as national ID numbers or business registration details
- Payment information: mobile money account identifiers, transaction amounts, merchant references, and payment history (processed through our Cashless service)
- Communications: messages you send to us or through our chatbot services, support tickets, and feedback
- User content: data you input into PiCortex, Bima Plus, or other platforms (e.g., customer records, invoices, policy data)
2.2 Information Collected Automatically
- Device and app information: device model, operating system, unique device identifiers, mobile network information, and app version
- Usage data: features accessed, pages viewed, timestamps, session duration, and crash logs
- Log data: IP address, browser type, and referring URLs
- Cookies and similar technologies: see Section 8 below
2.3 Information from Third Parties
We may receive information from third parties such as mobile money operators, payment processors, WhatsApp Business API providers, identity verification services, and business partners when you authorize them to share data with us.
3. How We Use Your Information
We use your information to:
- Provide, operate, and maintain the Services
- Process mobile money and billing transactions through Cashless
- Authenticate users and secure accounts
- Communicate with you about your account, transactions, and support requests
- Deliver WhatsApp-based notifications and chatbot responses (Bima Plus, Chatbots)
- Detect, prevent, and investigate fraud, abuse, and security incidents
- Comply with legal, regulatory, and tax obligations
- Improve and develop new features and Services
- Send service-related updates and, where you have opted in, marketing communications
4. Legal Basis for Processing
Where applicable data protection law requires a legal basis for processing, we rely on:
- Performance of a contract — to deliver the Services you have signed up for
- Legal obligation — to comply with financial, tax, and regulatory requirements
- Legitimate interests — to secure our Services, prevent fraud, and improve our products
- Consent — where required, such as for optional marketing communications or certain cookies
5. How We Share Information
We do not sell your personal information. We may share information with:
- Mobile money operators and payment processors — to execute transactions initiated through Cashless
- Service providers — cloud hosting, analytics, customer support, and infrastructure providers who process data on our behalf under confidentiality obligations
- Messaging platforms — WhatsApp / Meta Platforms, Inc. when you interact with our WABA chatbots
- Business partners — insurers, merchants, or employers who have engaged Mitikaz to provide Services to you
- Regulators and law enforcement — when required by law, court order, or to protect rights, property, or safety
- Successors — in connection with a merger, acquisition, or sale of assets, subject to this Privacy Policy
6. Data Security
We implement appropriate technical and organizational measures to protect your information, including:
- Encryption in transit — all data transmitted between your device and our servers is encrypted using TLS/HTTPS
- Encryption at rest — sensitive data (including payment and credential data) is encrypted in our databases
- Access controls, authentication, and audit logging
- Regular security reviews and vulnerability management
While we work hard to protect your information, no system is completely secure. You are responsible for keeping your login credentials confidential.
7. Data Retention
We retain personal information only as long as necessary to provide the Services and meet the purposes described in this Policy, or as required by law. Financial transaction records may be retained for longer periods to comply with tax, accounting, anti-money laundering, and regulatory requirements.
When information is no longer needed, we securely delete or anonymize it.
8. Cookies and Tracking
Our website uses cookies and similar technologies to:
- Keep you signed in
- Remember your preferences
- Understand how visitors use the site (analytics)
- Improve performance and security
You can control cookies through your browser settings. Disabling some cookies may affect the functionality of our website.
9. Your Rights
Subject to applicable law (including the Tanzania Personal Data Protection Act, 2022), you have the right to:
- Access the personal information we hold about you
- Correct inaccurate or incomplete information
- Delete your information, subject to our legal retention obligations
- Object to or restrict certain processing activities
- Withdraw consent where processing is based on consent
- Portability — receive a copy of your data in a structured, machine-readable format
- Lodge a complaint with the Personal Data Protection Commission of Tanzania or your local data protection authority
To exercise these rights, contact us at info@mitikaz.com. We will respond within the timeframes required by applicable law.
10. Children’s Privacy
Our Services are intended for users aged 18 and over and are not directed at children. We do not knowingly collect personal information from children under 18. If we learn we have collected such information, we will delete it promptly.
11. International Data Transfers
Your information is primarily processed in Tanzania. Where we use service providers located outside Tanzania, we ensure appropriate safeguards are in place to protect your information in accordance with applicable law.
12. Third-Party Services
Our Services may link to or integrate with third-party services (including mobile money providers, WhatsApp, and analytics services). Their use of your information is governed by their own privacy policies. We encourage you to review those policies.
13. Mobile App Specific Disclosures (Cashless Biller)
For users of our Cashless Biller mobile application on Google Play, we disclose the following for compliance with the Google Play Data Safety requirements:
- Data collected: personal info (name, email, phone number), financial info (payment and transaction details), device and app identifiers, and app activity
- Data shared: with mobile money operators, payment processors, and infrastructure providers to complete transactions and operate the Service
- Data is encrypted in transit: Yes
- You can request data deletion: Yes, by contacting info@mitikaz.com
- Data collection is required to use the app: Most data collection is necessary to provide the billing and payment functionality
14. Changes to This Policy
We may update this Privacy Policy from time to time. When we do, we will revise the “Last Updated” date above and, for material changes, notify you through the Services or by email. Your continued use of the Services after the changes take effect constitutes your acceptance of the updated Policy.
15. Contact Us
If you have questions about this Privacy Policy or how we handle your information, please contact us:
Mitikaz Company Limited
Email: info@mitikaz.com
Website: mitikaz.com