What we collect, why we collect it, and what we do with it.
Last updated: July 2026
What we collect
Account info: your email and a hashed password when you register. A username gets generated automatically, we don't ask for your real name or phone number unless you volunteer them in a support ticket.
Orders: the links and quantities you submit, plus order status, provider responses, and transaction history, all needed to actually fulfil and support what you've ordered.
Payments: top-up amounts, timestamps, and payment references. What exactly that looks like depends on the method, a Paynow transaction reference, or the confirmation reference you give us for EcoCash, OneMoney, InnBucks, or bank transfer. We never see or store card numbers, mobile money PINs, or bank credentials, Paynow handles that side directly and it's covered by their own privacy policy.
Identity verification (KYC): if you're asked to verify your identity for larger top-ups, we store the ID or passport image you upload along with its review status. Access to these documents is restricted to the admin reviewing your submission. We keep them only as long as needed for verification and compliance, then remove them, they're never used for anything beyond confirming who you are.
Two-factor authentication: if you turn on 2FA, we store the authenticator secret needed to verify your codes. We never see the actual 6-digit codes your app generates.
Referrals: if you signed up through someone's referral link, we keep a record linking your account to theirs so rewards land on the right person.
Usage logs: the standard stuff, IP address, browser type, pages visited, kept for security and performance monitoring. None of it feeds into advertising, because we don't do advertising.
What we do with it
Running your account, processing orders and payments, calculating referral rewards and bonuses, handling support, sending you transactional emails about your account or orders, and generally keeping the platform working. We don't sell your data, and we don't use it for advertising, there isn't an ad business here to feed.
Who else sees it
Only what's needed to actually run the service:
Delivering your order: the link and quantity go to whichever infrastructure partner fulfils it, they're bound to confidentiality and only get what's necessary to complete the order.
Payments: Paynow sees transaction data for card and mobile money top-ups. Manual methods don't involve any outside processor, we verify those ourselves.
Nobody buys your data from us. There's no third list this ends up on.
How long we keep it
For as long as your account stays active. Ask us to delete your account via a support ticket and your personal data is gone within 30 days, except where we're legally required to keep something, or where it's needed for fraud prevention. Wallet transaction records may stick around a bit longer for financial record-keeping.
Keeping it secure
Everything sits on encrypted cloud infrastructure, encrypted at rest and in transit. Passwords are hashed, never stored as plaintext. Access controls mean your data stays yours, other users can't see it. API keys are one-way hashed, so once created, not even we can retrieve the original value.
Your rights over your data
You can ask to see it, correct it, or have it deleted. Open a support ticket and we'll respond within 30 days.
Cookies
Just a session token to keep you logged in. No ad trackers, no third-party analytics scripts, none of that.
If this policy changes
We'll update this page when it does, the date up top always reflects the latest version. Keep using Clout Connect after a change goes live, and that counts as accepting it.
