How we protect and handle your data.
Introduction
Candibean is committed to protecting your privacy. Your personal and payment information is used only to operate the Candibean wallet, facilitate ticket purchases, and process rewards.
Information Collected
- Registration Data: Name, email, phone number, and unique user identifiers.
- Financial Data: Wallet funding amounts, transaction history, and banking details (Account Number, Bank Name, Branch Code) provided for withdrawal requests.
- Payment Tokens: Secure authorization tokens (not full card details) for facilitating seamless Top-Up transactions.
- Social Data: Email addresses provided when inviting friends to Savings Pots.
- Device Data: Device type and usage data for app functionality and security.
How Information is Used
- To process wallet funding, top-ups, ticket purchases, and payout of referral earnings.
- To manage Savings Pots and facilitate contributions between members.
- To deliver tickets, vouchers, and confirmations digitally.
- To provide app support and communicate updates.
- To improve app performance, features, and security.
Data Sharing & Integrations
- Payments: Payment card data (PAN, CVV) is processed directly by our secure payment gateway (Paystack) and is never stored on Candibean servers. We only retain secure authorization tokens to allow for future payments.
- Third-Party Search: When using the "Search Event" feature, your search keywords are sent to Ticketmaster to retrieve event information. No personal user data is shared with Ticketmaster during this process.
- Savings Pots: When you join a Savings Pots, your name and contribution status may be visible to other members of that specific pot.
- Payouts: Banking details are used strictly to initiate transfers for withdrawals.
- No Sale of Data: Candibean does not sell or share personal data for marketing purposes.
- Internal Reporting: Aggregate or anonymized data may be used for internal reporting.
User Rights
- Users can access, modify, or delete personal information within the app settings.
- Users can request account deletion via the in-app support function.
- Users may opt out of marketing communications at any time.
Security
- Candibean uses secure servers, HTTPS encryption, and strict access controls to protect user data.
- Users are responsible for keeping login credentials confidential.
Cookies and Analytics
- Cookies may be used to track app performance, user engagement, and improve features.
- Cookies do not collect personally identifiable information outside of app accounts.
Data Retention
- Personal data is retained only as long as necessary to operate the wallet and fulfill requests.
- Deleting your account removes your personal information, except for transaction records which must be retained for legal/tax compliance.
Policy Changes
- Candibean may update the privacy policy to comply with legal requirements or improve service.
- Users will be notified of significant changes in the app.