Privacy Policy
How Ledgera collects, uses, and protects your personal data.
This Privacy Policy describes how Ledgera ("we", "us", or "our") collects, uses, stores, and protects personal data when you use the Ledgera platform at app.ledgera.africa and this marketing website at ledgera.africa.
By using Ledgera, you agree to the collection and use of information in accordance with this policy and in compliance with the Kenya Data Protection Act, 2019 (Act No. 24 of 2019).
1. Who we are
Ledgera is a chama and group financial management platform built and operated from Nairobi, Kenya. We are the data controller for personal data collected through the Ledgera platform. For data protection enquiries, contact us at support@ledgera.africa.
2. What data we collect
Account and identity data
When you register on Ledgera, we collect your name, email address, and password (stored as a secure hash). Admins may additionally provide a phone number for account communications.
Group and financial records
As part of normal platform operation, Ledgera stores contribution records, loan applications and decisions, repayment records, and member statements. This data belongs to your group and is accessible only to authorised administrators and the individual member whose record it is.
Usage data
We collect standard server logs including IP addresses, browser type, pages visited, and timestamps. This is used for security monitoring, debugging, and improving the platform.
Communications
If you contact our support team, we retain those communications in order to respond and to improve our service.
3. How we use your data
- To operate and maintain the Ledgera platform
- To provide you with access to your account and your group's records
- To send transactional communications (receipts, account notices)
- To respond to support requests
- To detect, prevent, and investigate security incidents
- To comply with our legal obligations under Kenyan law
We do not use your data for advertising. We do not sell your data to third parties.
4. Legal basis for processing
We process your personal data on the following bases under the Kenya Data Protection Act 2019:
- Contractual necessity: to deliver the Ledgera service you signed up for
- Legitimate interests: for security monitoring, fraud prevention, and platform improvement
- Legal obligation: where required to comply with applicable Kenyan law
- Consent: where you have given explicit consent, which you may withdraw at any time
5. Data sharing
We do not sell, rent, or trade your personal data. We may share data with:
- Service providers: hosting, infrastructure, and email delivery partners who process data only on our instructions and under data processing agreements
- Legal authorities: where required by law, court order, or regulatory authority
6. Data retention
We retain your account and group data for as long as your account is active or as needed to provide the service. Financial records may be retained for longer periods to satisfy our legal obligations. When you close your account, you may request deletion of your personal data subject to any legal retention requirements.
7. Your rights
Under the Kenya Data Protection Act 2019, you have the right to:
- Access the personal data we hold about you
- Correct inaccurate or incomplete data
- Request deletion of your data (subject to legal retention obligations)
- Object to or restrict processing in certain circumstances
- Data portability: receive your data in a structured, machine-readable format
To exercise any of these rights, contact us at support@ledgera.africa or call +254 728 121 374.
8. Security
We implement appropriate technical and organisational measures to protect your personal data against unauthorised access, loss, or disclosure. These include secure transmission (HTTPS), password hashing, access controls, and regular security reviews. No system is completely secure. If you believe your account has been compromised, contact us immediately.
9. Cookies
Ledgera uses session cookies that are strictly necessary for the platform to function. We do not use tracking or advertising cookies. You can disable cookies in your browser, but this will prevent you from logging in.
10. Changes to this policy
We may update this Privacy Policy from time to time. When we do, we will update the "last updated" date above and notify users of material changes via email or a prominent notice on the platform. Continued use of Ledgera after changes constitutes acceptance of the updated policy.
11. Contact
For any questions, concerns, or data rights requests relating to this Privacy Policy:
- Email: support@ledgera.africa
- Phone / WhatsApp: +254 728 121 374