ANTI-MONEY LAUNDERING (AML) POLICY
“Money laundering” is the practice of engaging in a series of financial transactions to conceal the ownership, source, control or destination of illegally gained money. Ultimately, it is the process by which the proceeds of crime are made to appear to have a legitimate origin. RhoKIT and our technology partner, CoralCommerce, are committed to preventing money laundering through our service and compliance procedures.
Implemented Procedures
RhoKIT aims at implementing strict anti-laundering policies to ensure that customers will be identified for any suspicious transactions. At the same time we will minimise the procedural complications for genuine and legitimate customers.
In order to fulfil commitments to provide full assistance to government agencies combating illegal financial transactions, RhoKIT has developed a technologically advanced and reliable electronic verification system which authenticates clients and is also able to store detailed records of all previous financial transactions.
RhoKIT is obliged to report suspicious transactions. By misusing the service you may face criminal prosecution as we are bound to automatically report such behaviour to the authorities. To discourage money laundering and related illegal activities, RhoKIT does not accept any cash transactions.
RhoKIT reserves the right to suspend or refuse to process a transaction at any stage, where it believes the transaction to be connected in any way to money laundering or criminal activity. In accordance with international law RhoKIT is not obliged to inform the Client that it has reported the Client’s suspicious activity to the relevant compliance regime.
RhoKIT will establish a compliance regime in order to fulfill its formal legal requirement. It will entail the appointment of a compliance officer responsible for policy making, and regular review of the AML policy implementation including internal procedures and those of delivery partners.
RhoKIT is also committed to regularly updating its electronic system for inspection of suspicious transactions and for verification of client identification records, in accordance with any new regulations as they are promulgated, as well as providing training for its employees on enhancements to anti-money laundering procedures that may be required by new regulations.
RhoKIT and Affiliates adhere to the Central Bank of Kenya (CBK), Capital Markets Authority (CMA), and the Financial Reporting Centre (FRC) rules, in addition to UK Office of Financial Assets Control (OFAC) regulations.
Additional Disclosure Regarding Deposits and Withdrawals
In the event of money transfers from the mobile money platforms, the sender name must match the name of the customer present in RhoKIT’s records. No third-party transfers are allowed in this case.
Similarly in case of money withdrawal, recipient name must match the name of account holder who is transferring the money.
If you wish to make a complaint, contact our Customer Support immediately. All complaints should be notified to us as soon as possible. You must also provide your User ID in the subject title of your email for all complaints for ease of referencing and facilitate swift fulfillment.
Our website uses cookies to distinguish you from other users of our website. This helps us to provide you with enhanced customer experience as you browse our website. Cookies are vital to the basic performance of the RhoKIT website as they enable critical authentication and validation, session management, fraud prevention, as well as enabling us to remember the settings you may have previously applied, such as language and other regional settings.
A cookie is a small file of letters and numbers that we store on your browser or the hard drive of your computer (or smartphone or other device used to access the internet) if you agree to their use as you browse our website. Cookies contain information that is transferred to your computer’s hard drive but cannot be used to retrieve any other data from your hard drive, pass viruses to your computer, or capture your e-mail address.
We use the following types of cookies:
● Strictly necessary cookies. These are required for the operation of our website. They include, for example, cookies that enable you to log into secure areas of our website.
● Functionality cookies. These are used to recognise you when you return to our website. These enable us to personalise our content for you, greet you by name and remember your preferences (for example, your choice of language or region).
If we collect personal data via our website through the use of cookies, we will do this in accordance with our privacy policy, a copy of which can be found on this website.
You can manage your cookie preferences by adjusting your browser settings to refuse the use of all or some of our cookies. However, if you use your browser settings to block all cookies (including essential cookies) you may not be able to access all or parts of our website services.
We have no product or services for children and our products are gateway protected.
RhoKIT is committed to fully complying with the Children’s Online Privacy Protection Act (COPPA) of 1998. According to which, it is necessary for us to obtain parental permission for all children under the age of 13 to register as a member, or sign up for any email newsletters in sites that we might create or manage.
We will not knowingly accept any information of minors under the age of 18 on behalf of our clients and will take all reasonable steps to prevent this process from being subverted.
This website and its content may not be reproduced, duplicated, copied, resold, visited or otherwise exploited for any commercial purpose without the express prior written consent of RhoKIT.
The license does not allow the user to collect product or service listings, their descriptions or other information displayed here. Further, it does not allow any derivative use of this website or the content for the benefit of another merchant.
The User may not frame nor use framing technologies to enclose RhoKIT websites or their contents nor any part thereof without the express written consent of RhoKIT.
This policy document encompasses all aspects of security surrounding confidential RhoKIT information and must be distributed to all RhoKIT employees.
All RhoKIT employees must read this document in its entirety and sign the form confirming they have read and understand this policy fully.
This document will be reviewed and updated by management on an annual basis or when relevant to include newly developed security standards into the policy and distribute it all employees and contracts as applicable
RhoKIT does not handle sensitive cardholder information on any basis.
RhoKIT requires no access and has no access to cardholder data.
RhoKIT handles sensitive merchant information daily, including but not limited to the following: know your customer information (KYC), certified copies of utility bills and passports, merchant financial information and merchant financial results.
Sensitive Information must have adequate safeguards in place to protect it, to protect merchant privacy, to ensure compliance with various regulations and to guard the future of the organisation. RhoKIT commits to respecting the privacy of all its customers and to protecting any data about customers from outside parties.
To this end management are committed to maintaining a secure environment in which to process information so that we can meet these customer and other stakeholder promises.
Employees handling sensitive data should ensure to proactively practice the following:
The Management’s intentions for publishing an Acceptable Use Policy are not to impose restrictions that are contrary to RhoKIT’s established culture of openness, trust and integrity.
Management is committed to protecting the employees, partners and RhoKIT from illegal or damaging actions by individuals, either knowingly or unknowingly.
RhoKIT does not manage, maintain, supply, offer, sell, handle, service, repair or deal in any way with Point of Sale (POS) devices and Personal Identification Number (PIN) entry devices.
RhoKIT will maintain an approved list of technologies and devices and personnel with access to such devices as detailed in Appendix B. In addition:
RhoKIT does not manage, maintain, supply, offer, sell, handle, service, repair or deal in any way with any POS devices and PIN entry devices.
Violation of the standards, policies and procedures presented in this document by an employee will result in disciplinary action, from warnings or reprimands up to and including termination of employment.
Claims of ignorance, negligence, good intentions or poor judgement will not be used as excuses for non-compliance.
o The contents of the payment card magnetic stripe (track data) on any media whatsoever
o The CVV/CVC (the 3 or 4 digit number on the signature panel, or on the reverse of the payment card) on any media whatsoever
o The PIN or the encrypted PIN Block under any circumstance
Data and media containing data must always be labelled to indicate sensitivity level
Payment Card Industry Data Security Standard (PCI-DSS)
o All Access to sensitive cardholder data should be controlled and authorised. Any Job functions that require access to cardholder data should be clearly defined
o Any display of the cardholder should be restricted at a minimum of the first 6 and the last 4 digits of the cardholder data
o Access rights to privileged User ID should be restricted to least privileges necessary to perform job responsibilities
o Privileges should be assigned to individuals based on job classification and function (Role based access control)
o Access to sensitive cardholder information such as PANs, personal information and business data is restricted to employees that have a legitimate need to view such information
o No other employees should have access to this confidential data unless they have a genuine business need
o If cardholder data is shared with a Service Provider (third party) then a list of such Service Providers will be maintained as detailed in Appendix B
o Ensure a written agreement that includes an acknowledgement is in place that the Service Provider will be responsible for the cardholder data that the Service Provider possess
o Ensure that a there is an established process including proper due diligence is in place before engaging with a Service Provider
o Have a process in place to monitor the PCI DSS compliance status of the Service Provider
o RhoKIT requires no access and has no access to cardholder data
If RhoKIT were in future duly authorised and fully PCI-DSS compliant, then the above paragraph 7 would apply.
o The list should include make, model and location of the device
o The list should have the serial number or a unique identifier of the device
o The list should be updated when devices are added, removed or relocated
o An Employee refers to full-time and part-time employees, temporary employees and personnel, and consultants who are permanently based on RhoKIT sites
o A Visitor is defined as a vendor, guest of an employee, service personnel, or anyone who needs to enter the premises for a short duration, usually not more than one day
o All data on electronic media must be rendered unrecoverable when deleted e.g. through degaussing or electronically wiped using military grade secure deletion processes or the physical destruction of the media
o If secure wipe programs are used, the process must define the industry accepted standards followed for secure deletion
o All data awaiting destruction must be held in lockable storage containers clearly marked To Be Shredded. Access to these containers must be restricted
o Review handling procedures for sensitive information and hold periodic security awareness meetings to incorporate these procedures into day to day RhoKIT practice
o Distribute this security policy document to all RhoKIT employees to read. It is required that all employees confirm that they understand the content of this security policy document by signing an acknowledgement form (see Appendix A)
o All employees that handle sensitive data will undergo background checks (such as criminal and credit record checks, within the limits of the local law) before they commence their employment with the RhoKIT
o All third parties with access to credit card account numbers are contractually obligated to comply with card association security standards (PCI/DSS)
o Be as long as possible (never shorter than 6 characters)
o Include mixed-case letters, if possible
o Include digits, syntax and punctuation marks, if possible
o Not be based on any personal information
o Not be based on any dictionary word, in any language
This procedure covers all logs generated for systems within the data environment, based on the flow of data over the RhoKIT network, including the following components:
Alerts are configured to:
o Any additions, modifications or deletions of user accounts
o Any failed or unauthorised attempt at user logon
o Any modification to system files
o Any access to the server, or application running on the server, including files that hold data.
o Actions taken by any individual with root or administrative privileges
o Any user access to audit trails
o Any creation / deletion of system-level objects installed by Linux. (No system-level objects run with administrator privileges, none can be abused to gain administrator access to a system
The following Database System Events are configured for logging, and are monitored by the network monitoring system :
The following Firewall Events are configured for logging, and are monitored by the network monitoring system :
o Invalid user authentication attempts
o Logon and actions taken by any individual using privileged accounts
o Configuration changes made to the switch (e.g. configuration disabled, added, deleted, or modified)
The following Intrusion Detection Events are to be configured for logging, and are monitored by the network monitoring system:
The following File Integrity Events are to be configured for logging and monitored by (RhoKIT to define software and hostname):
For any suspicious event confirmed, the following must be recorded on the Log Review Form, and RhoKIT CISO informed:
Each phase of the SDLC is mapped with security activities, as explained below:
Development of code shall be checked and validated with the most current versions of RhoKIT Coding Standards for Secure Application Development. All code developers shall verify that their code is in compliance with the most recent and approved coding standards and guidelines.
Only validated code shall be implemented into the RhoKIT production environment.
A review and validation ensures that code exhibits fundamental security properties to include correctness, predictability, and attack tolerance
Application Code Developers shall:
In practice Code Developers will:
In this section should be listed the risks inherent in conducting penetration testing over the information systems used by RhoKIT. Additionally, it should be noted for each mitigation what measures will be taken.
Examples below should help frame future testing:
Example 1#
Risk: Denial of Service in systems or network devices because of the network scans.
Key staff involved in the project by the organisation will be listed:
Audite Team particulars:
It should be noted that in order to comply with PCI-DSS the scope of the tests should include at minimum, but not limited to the following:
Example #2:
o System 1: IP: System: System Description RhoKIT Internal
o System 2: IP: System: System Description WiFi network and access to RhoKIT internal.
o Application 1: URL: Description of the application.
o System 5: IP: System: System Description
o System 6: IP: System: System Description
o Application 3: URL: Description of the application.
All tests must be conducted at network, system and application level and must ensure that at least identifies any vulnerabilities documented by OWASP and SANS, as well as those identified in the PCI-DSS standard v3:
For all findings or vulnerabilities identified during the tests carried out sufficient evidence to prove the existence of the same will be generated and documented. The format of the evidence can be variable in each case, screen capture, raw output of security tools, photographs, paper documents, etc.
As a result of tests performed should generate a document containing at least the following sections:
A Security Incident means any incident (accidental, intentional or deliberate) relating to our communications or information processing systems. The attacker could be a malicious stranger, a competitor, or a disgruntled employee, and their intention might be to steal information or money, or just to damage RhoKIT’s reputation with a customer.
The Incident response plan has to be tested once annually. Copies of this incident response plan are to be made available to all relevant staff members. RhoKIT’s management is to take steps to ensure that staff understand it and what is expected of them.
Staff and employees of RhoKIT will be expected to report to the security officer for any security related issues
RhoKIT PCI security incident response plan is as follows:
RhoKIT PCI Security Incident Response Team:
In response to a systems compromise, the PCI Response Team and designees will perform the following:
In response to a systems compromise, the PCI Response Team and designees will apply the following:
o The card companies have individually specific requirements that the Response Team must address in reporting suspected or confirmed breaches of cardholder data
o Incident Response notifications to various card schemes
o In the event of a suspected security breach, alert the information security officer or line manager immediately
o The security officer will carry out an initial investigation of the suspected security breach
o Upon confirmation that a security breach has occurred, the security officer will alert management and begin informing all relevant parties that may be affected by the compromise
VISA Steps
If the data security compromise involves credit card account numbers, implement the following procedure:
For more Information visit:
http://USA.visa.com/business/accepting_visa/ops_risk_management/cisp_if_ compromised.html
Visa Incident Report Template
This report must be provided to VISA within 14 days after the initial report of an incident to VISA. The following report content and standards must be followed when completing the incident report. Incident reports must be securely distributed to VISA and Merchant Bank. Visa will classify the report as VISA Secret*:
Identify ALL systems analysed. Include the following:
Identify ALL compromised systems. Include the following:
*This classification applies to the most sensitive business information, which is intended for use within VISA. Its unauthorised disclosure could seriously and adversely impact VISA, its employees, member banks, business partners, and/or the Brand
MasterCard Steps
o Identify the issuers of the accounts that were suspected to have been compromised and group all known accounts under the respective parent member IDs.
o Distribute the account number data to its respective issuers
o Employees of RhoKIT will be expected to report to the security officer for any security related issues
o The role of the security officer is to:
▪ Effectively communicate all security policies and procedures to employees within RhoKIT, vendors and contractors
▪ In addition to this, the security officer will oversee the scheduling of security training sessions, monitor and enforce the security policies outlined in both this document and at the training sessions and finally,
▪ Oversee the implantation of the incident response plan in the event of a sensitive data compromise
Discover Card Steps
American Express Steps
RhoKIT require no and has no access to cardholder data.
If RhoKIT were in future duly authorised and fully PCI-DSS compliant, then the above card association rules would fully apply.
Chief Security Officer (or equivalent) is responsible for overseeing all aspects of information security, including but not limited to:
o Maintaining a formal security awareness program for all employees that provide multiple methods of communicating awareness and
o Educating employees (for example, posters, letters, meetings)
The Information Technology Officer (or equivalent) shall:
System and Application Administrators shall:
The Human Resources Office (or equivalent) is responsible for tracking employee participation in the security awareness program, including:
General Counsel (or equivalent) will ensure that for service providers with whom information is shared:
All third-party companies, including processing banks and payment gateway technology providers, which exclusively have access to cardholder information must:
The request is free format, but must state:
Usage of appropriate testing using tools like NET STUMBLER, KISMET etc. must be performed on a quarterly basis to ensure that:
If the need arises to use wireless technology it should be approved by RhoKIT and the following wireless standards have to be adhered to:
More Information
Please feel free to contact us if you require any further information using the following contact details:
This website is a RhoKIT imprint
Kenya limited company registration number: PVT-EYUBL3RP;
RhoKIT is the Merchant of Reference and the sole owner and operator of this website and brand imprint.
We are passionate about culture and communities, we seek to offer great value to both the consumer and the creators of content.
RhoKIT is headquartered in Nairobi, Kenya:
Suite 404, Jubilee Exchange House, Mama Ngina Street
Phone: +254 759 355 616
www.rhokit.com
RhoKIT is in the process of registering a company in The Republic of Nigeria.
Statement of Compliance
The Office of Foreign Assets Control (OFAC) of the U.S. Department of Treasury administers and oversees a series of laws that impose economic sanctions against hostile entities to further U.S. foreign policy and national security objectives. OFAC is responsible for promulgating, developing and administering the sanctions for the Treasury under all federal statutes.
The OFAC laws and regulations promote national and international security by requiring asset freezing of: oppressive governments, international terrorists, narcotics traffickers or other Specially Designated Nationals (SDNs) and blocked persons.
RhoKIT adheres to the OFAC Regulations.
Banks and Payment providers
RhoKIT uses several payment providers for the collection of payments and outpayments to and from our customers.
These payment sources may levy additional charges for sending and receiving funds which are outside of our control.
We urge our clients to make sure they understand the fees and charges that may be levied to them by their own bank or the mobile payment service provider.
For more information, here are the websites of the mobile payment sources that we use:
As a responsible operator, RhoKIT endeavours to ensure that should it ever be required to seize operations in a jurisdiction or close its business, all customers’ funds will be returned to them. We hold customer funds separate from company funds in dedicated bank accounts with our banking and payment processors.
Where applicable and relevant, RhoKIT only sells, uses and distributes legal content. We do not own any rights to any content, we license content from parties represented as the Authorised Distributors of the content in question.
If you believe your copyright-protected work is offered or used in a RhoKIT product or service without authorisation, you may submit a copyright infringement notification. These requests should only be submitted by the copyright owner or an agent authorized to act on the owner’s behalf.
If you choose to request removal of content by submitting an infringement notification, please remember that you are initiating a legal process. Do not make false claims.
We accept copyright infringement notifications submitted by email. They are forwarded to the relevant Authorised Distributor who licensed the sale of the goods through RhoKIT for resolution directly with the claimant of the infringement. We honour all court instructed take down notices, warrants and requests for information.
Upon receipt of an infringement notice we may take certain actions, including removing information or an item, all of which are taken without any admission as to liability and without prejudice to any rights, remedies or defences, all of which are expressly reserved. Furthermore, in submitting an infringement notice, you grant to RhoKIT the right to use, reproduce, modify, adapt, publish, translate, create derivative works from, and display its content throughout the world in any media. This includes forwarding the infringement notice to the parties involved in the provision of the allegedly infringing content. You agree to indemnify RhoKIT for all claims brought by a third party against RhoKIT arising out of or in connection with the submission of an infringement notice.
RhoKIT does not mediate between claimants nor do we arbitrate on behalf of any party, we do however cooperate with legal enquiries including the submission of revenue statements, audit trails of sales and the like. RhoKIT does not offer legal or tax advice.
After submitting a copyright infringement notification, a copyright owner may realize that they have misidentified content or may change their mind about their complaint. When this happens, RhoKIT is glad to honour retractions of copyright claims from the party that originally submitted them.
User Communications
Some RhoKIT products and services may allow users to interact with each other, post comments both privately and publicly.
We encourage freedom of expression and robust discussion and play, but in none of our products and services do we at any time condone the following:
To this end, the following restrictions apply to all users of all of our products and services.
Users will not post, transmit, communicate or otherwise make available information or content that:
Further, you will not post, copy, modify or disclose or distribute:
The user agrees to compensate us for any claim or damages (including any legal fees in relation to such claim or damages) made by a third party in respect of any matter in relation to or arising from any breach or suspected breach by the user of these terms or the rights of a third party.
RhoKIT reserves the right to issue warnings, suspend access to user’s accounts or terminate user’s accounts if we reasonably consider that the user is in breach of these terms.
Users acknowledge that other members may report content or behaviour that contravenes these Terms and Conditions.
Risks and Precautions
RhoKIT does not conduct criminal background checks on members of our products and services.
Users are solely responsible for taking all appropriate safety precautions in connection with their use of the products and services.
User Conduct, Disputes and Other
You should promptly report to us any behaviour you encounter which is in breach of these terms, including any behaviour which may be harmful, threatening, harassing or unlawful. If deemed appropriate, RhoKIT may suspend or delete a user’s profile.
RhoKIT has the right to warn other members and contact the relevant law enforcement.
RhoKIT is not obliged to become involved in any domestic or private disputes between members and does not provide any arbitration or settlement service should a dispute arise between members.
This policy describes the way in which we deal with the information you provide to us to enable us to manage your relationship with RhoKIT.
We will process any personal information provided to us (whether via this website, the customer application form or any other means) or otherwise held by us relating to you in the manner set out in this statement.
By submitting your information to us and using a RhoKIT website, USSD connection or via the Telegram messaging service you confirm your consent to the use of your personal information as set out in this Privacy Policy.
Information Collected and How it is Used
We may use your personal information together with other information for the purposes of:
Processing your payments
Setting up and managing your account
Complying with our regulatory duties
Building up personal profiles
Providing you with information about promotional offers
Information Storage
We will take all reasonable steps to ensure that your information is kept secure and protected. We will only disclose personal information to other companies within associated or subsidiary companies and to business partners, successors in title to our business and suppliers that are engaged to process such information on our behalf. If you apply for an account with us then to help us make credit decisions about you, to prevent fraud, to check your age and identity and to prevent money laundering, we may use third parties including credit reference agencies who will record any searches on your file. We may also make enquiries of, and disclose details of how you conduct your account to, such agencies, security organisations and any other relevant third parties for fraud and money laundering prevention.
Telephone Calls
Telephone calls to and from our Customer Support Centre are recorded for training and security purposes along with the resolution of any queries arising from the service you receive.
Internet-Based Transfers
Given that the internet is a global environment, using the internet to collect and process personal data necessarily involves the transmission of data on an international basis. Some of the data processors engaged to process personal data may be based outside of our customer’s domicile. Therefore, by browsing our website and communicating electronically with us, you acknowledge and agree to our processing of your personal data in this way.
Disclosure of Information
We are entitled to share the information we hold on you which includes personal data and betting history with the regulators and other legal authorities, in order to investigate fraud, money laundering or integrity issues and to comply with our regulatory duties under the laws of the countries in which we operate.
Restrictions
We do not sell, lease or resell our customer data to 3rd parties. Under any circumstances.
Additional Privacy Policy For Using our Website and Services
RhoKIT is firmly committed to privacy. The following discloses our information gathering and dissemination practices for this website (the “Website”) and use of our services (“Service”).
By accepting the terms and conditions you consent to this Privacy Policy and agree to the terms, conditions and notices contained or referenced herein. We reserve the right to make changes to this Privacy Policy at any time and such changes will be posted to our website and become effective without prior notice. Your continued use of our Website constitutes your acceptance of such changes.
You should review this Privacy Policy from time to time for changes. However, if the changes are material and if required by applicable local law, we will obtain your consent. Unless we have obtained your consent to the updated policy, your personal data will be processed in accordance with the privacy policy in effect at the time of your acceptance of this policy. This Privacy Policy was last updated on 1 September 2023.
Unless prohibited by applicable law, the English text of the Privacy Policy shall be the official version and if for any reason the translated text is incorrect, or misleading, the English text shall prevail.
Information Collection
We collect personal data from you in a variety of ways including when you register with us on the website. We categorize the personal data in two types of information: personally identifiable information and non- personally identifiable information, which is also referred to as aggregate and anonymous data. Some of the collected data may be considered as sensitive.
When you order credits we and/or our third party affiliates and payment processors, process financial information required for the payment transaction, such as name, address and your credit card data (such as number, issuing institution and expiry date) or account details (account holder, account number, sort code, institution). We do not record any of this information under any circumstances.
Cookies and IP Addresses
We may use your IP address to help us maintain our site, identify problems with our server and to provide you with an enhanced customer experience.
We may use cookies to facilitate a more user-friendly experience. Cookies help us create a personalized experience for you when you visit our site. The use of cookies is a very common practice on the internet and provides for a more customized user experience of the Website. If you are uncomfortable with this, you can disable all cookies through your browser settings.
Should you choose to disable all cookies this will impact and/or prevent your ability to access and use some or all of the Service.
Information Use
Your non-personally identifiable information is used to personalize your experience, allow other members to find you through a search, to compose your personal profile–which may be associated with a pseudonymous identities or avatars you have created–and to deliver targeted advertising and promotional offers to you from external companies that are of the highest relevance to your demographic profile. We may share some of this information for our own analysis and research purposes with our professional advisors or consultants and third party partners.
The personally identifiable information we collect from you is used in the course of providing our service to you and to improve the content and functionality of our Website or customize the layout of our pages for each individual member. We may use your contact information to send you valuable updates and timely notices of promotions and mailbox status reports. We may also use your personally identifiable information to send electronic mail to you for the purpose of informing you of changes or additions to the Service or of any products and services.
Law Enforcement
We may disclose your personally identifiable information to respond to law enforcement requests or where required by applicable laws, court orders, or government regulations; or to protect against misuse or unauthorized use of our site; or to protect the personal safety or property of our users or the public (among other things, this means that if you provide false information or attempt to pose as someone else, information about you may be disclosed as part of any investigation into your actions).
Record Keeping
We keep the information you have given us for as long as your account stays active or hidden or is allowed by applicable local law. Accessing and updating your email notification preferences, personal information and public information you have the opportunity to opt-out of certain communications and modify personal information or demographic information you have provided to us, and to hide information visible to the public users of the Website at any time.
Please be aware that it may take several hours for any custom changes you make to take effect on the public areas of the system. Please also note that changing or deleting your information or opting-out of email notifications from us, will only change or delete the data in our database for the purpose of future activities and communications. These changes and deletions will not change or delete information or emails that are queued to be sent or have already been sent.
Spam
We do not send unsolicited email at any time. However you hereby consent to receive email messages to the email address you register on your account for marketing purposes and from members. You may opt- out of receiving email messages at any time by sending a request to us.
Monitor
Our users may communicate with each other through on-site Mail Messaging and Instant Messaging. While we do not, as a rule, moderate or monitor members’ private exchanges, we reserve the right to do so if we suspect users of being under the age of 18 or of using our service for the purpose of solicitation or any other violation of our Terms and Conditions of Use or Privacy Policy. Submissions that appear on the public area of the site are moderated and we reserve the right to edit, delete, remove or not use any communication on a public area of the site.
Other Information Collectors
Except as otherwise expressly described in this Privacy Policy, this document only addresses the use and disclosure of information we collect from you. To the extent that you disclose your information to other parties, whether they are on our Website (including links to third party sites) or on other sites throughout the internet, different rules may apply to their use or disclosure of the information you disclose to them. Since we do not control the privacy policies of any third parties, you should investigate their policies before you disclose your personal information to them.
Security
We treat data as an asset that must be protected against loss and unauthorized access. To safeguard the confidentiality and security of your information we use industry standard practices and technologies including but not limited to firewalls, browser session encryption and strong data encryption of information when it is stored to disk.
Right To Access Information
You are entitled, upon request and without cost, to receive information with regards to whether and in what way personal information or other transactional information regarding you is processed. If you wish to receive such information, please contact us at our contact details [email protected]. We may require you to provide verification of your identity to provide a copy of the information we hold. Please note that in certain circumstances we may withhold access to your information where we have the right to do so under applicable data protection legislation.
Advertising
Please note that by accepting this Privacy Policy you consent to receiving targeted advertisement by electronic means from RhoKIT, its affiliates and the trusted 3rd-parties.
Your data will be kept in a data file controlled by us. You are also entitled to access, rectify your personal information, object or cancel the processing operations by contacting us by adjusting your settings directly on our Website or writing to us at [email protected].
In each of our operating markets, our head office and our subsidiaries comply 100% to the local requirements on taxes, whatever form they have been legislated in.
We collect and pay all relevant taxes for all applicable transactions.
RhoKIT is in good standing with the tax authorities, making our day to day operations simpler, sustainable and more reliable for our clients all over the world.
Overview
Please read these conditions carefully before using RhoKIT products and services. By using our services, you signify your agreement to be bound by these conditions. We offer a wide range of services and sometimes additional terms may apply.
Privacy
Please review our Privacy Policy to understand our relevant practices.
Electronic Communications
When you use any RhoKIT products and service or send emails to us, you are communicating with us electronically. We will communicate with you by email or by posting notices on the website or through the other RhoKIT products and services. For contractual purposes, you consent to receive communications from us electronically and you agree that all agreements, notices, disclosures and other communications that we provide you electronically satisfy any legal requirement that such communications be in writing, unless mandatory applicable laws specifically require a different form of communication.
Rights
All content included in or made available through any RhoKIT products and service, such as text, graphics, logos, button icons, images, audio clips, digital downloads, and data compilations is the property of RhoKIT or its content suppliers and is protected by Kenya and UK or other international copyright, authors’ rights and database right laws. The compilation of all content included in or made available through any RhoKIT products and services is the exclusive property of RhoKIT and is protected by Kenya, UK, and international copyright and database rights laws.
You may not extract and/or re-utilise parts of the content of any RhoKIT products and services without our express written consent. In particular, you may not utilize any data mining, robots, or similar data gathering and extraction tools to extract (whether once or many times) for re-utilisation of any substantial parts of the content of any RhoKIT products and service, without our express written consent. You may also not create and/or publish your own database that features substantial parts of any RhoKIT products and services (e.g. our prices and product listings) without our express written consent.
License and Access
Subject to your compliance with these Conditions of Use and applicable Service Terms and your payment of any applicable fees, RhoKIT or its content providers grant you a limited, non-exclusive, non-transferable, non-sublicensable license to access and make personal and non-commercial use of the RhoKIT products and services.
This license does not include any resale or commercial use of any RhoKIT products and service or its contents; any collection and use of any product listings, descriptions, or prices; any derivative use of any RhoKIT products and service or its contents; any downloading or copying of account information for the benefit of another merchant; or any use of data mining, robots, or similar data gathering and extraction tools.
All rights not expressly granted to you in these Conditions of Use or any Service Terms are reserved and retained by RhoKIT or its licensors, suppliers, publishers, rights holders, or other content
providers. No RhoKIT products and service, nor any part of any RhoKIT products and service, may be reproduced, duplicated, copied, sold, resold, visited, or otherwise exploited for any commercial purpose without our express written consent.
You may not frame or use framing techniques to enclose any trademark, logo or other proprietary information (including images, text, page layout, or form) of RhoKIT without our express written consent. You may not use any meta tags or any other “hidden text” utilizing RhoKIT names or trademarks without our express written consent.
You may not misuse the RhoKIT products and services. You may use the RhoKIT products and services only as permitted by law. The licenses granted by RhoKIT terminate if you do not comply with these Conditions of Use or any Service Terms.
Reviews and Contents
Visitors may post reviews, comments and other content; send e-cards and other communications; and submit suggestions, ideas, comments, questions or other information, as long as the content is not illegal, obscene, abusive, threatening, defamatory, invasive of privacy, infringing of intellectual property rights, or otherwise injurious to third parties or objectionable and does not consist of or contain software viruses, political campaigning, commercial solicitation, chain letters, mass mailings or any form of “spam”.
You may not use a false e-mail address, impersonate any person or entity, or otherwise mislead as to the origin of a card or other content. We reserve the right to remove or edit such content. If you believe that any content on or advertised for sale on any RhoKIT products and service contains a defamatory statement, or that your intellectual property rights are being infringed by an item or information on any RhoKIT products and service, please notify us by submitting a formal notice to us and we will respond.
If you post content or submit material, and unless we indicate otherwise, you grant: (a) RhoKIT a non- exclusive, royalty-free and fully sublicensable and transferable rights to use, reproduce, modify, adapt, publish, translate, create derivative works from, distribute, and display such content throughout the world in any media; and (b) RhoKIT, its sublicensees and transferees the right to use the name that you submit in connection with such content, if they choose. No moral rights are assigned under this provision.
You agree that the rights you grant above are irrevocable during the entire period of protection of your intellectual property rights associated with such content and material. To the extent permitted by law, you agree to waive your right to be identified as the author of such content and your right to object to derogatory treatment of such content. You agree to perform all further acts necessary to perfect any of the above rights granted by you to RhoKIT including the execution of deeds and documents, at our request.
You represent and warrant that you own or otherwise control all of the rights to the content that you post; that, as at the date that the content or material is posted: (i) the content and material is accurate; and (ii) use of the content and material you supply does not breach any applicable policies or guidelines and will not cause injury to any person or entity (including that the content or material is not defamatory).
You agree to indemnify RhoKIT for all claims brought by a third party against RhoKIT arising out of or in connection with the content and material you supply except to the extent that any liability arises from our failure to properly remove the content when it is notified of the illegal nature of the content arising out of or on the grounds of, or originating from the content that you have communicated to us.
RhoKIT respects the intellectual property of others. Please see our Licensing and Piracy Policy for more information.
Liability
We will do our utmost to ensure that availability of the RhoKIT products and services will be uninterrupted and that transmissions will be error-free. However, due to the nature of the internet, this cannot be guaranteed. Also, your access to RhoKIT products and services may also be occasionally suspended or restricted to allow for repairs, maintenance, or the introduction of new facilities or services. We will attempt to limit the frequency and duration of any such suspension or restriction.
RhoKIT will not be responsible for (i) losses that were not caused by any breach on our part, or (ii) any business loss (including loss of profits, revenue, contracts, anticipated savings, data, goodwill or wasted expenditure), or (iii) any indirect or consequential losses that were not foreseeable to both you and us when you commenced using the RhoKIT products and services.
We will not be held responsible for any delay or failure to comply with our obligations under these conditions if the delay or failure arises from any cause which is beyond our reasonable control. This condition does not affect your legal right to have goods sent or services provided within a reasonable time or to receive a refund if goods or services ordered cannot be supplied within a reasonable time owing to a cause beyond our reasonable control.
The laws of some countries do not allow some or all of the limitations described above. If these laws apply to you, some or all of the above limitations may not apply to you and you might have additional rights.
Nothing in these conditions limits or excludes our responsibility for fraudulent representations made by us or for death or personal injury caused by our negligence or willful misconduct.
Applicable Law
RhoKIT is incorporated in the United Kingdom, Kenya, and Tanzania. RhoKIT is subject to relevant laws, regulations and treaties in the jurisdictions within which it operates.
Alterations
We reserve the right to make changes to any RhoKIT products and services, policies, terms and conditions including these Conditions of Use and Service Terms at any time. You will be subject to the terms and conditions, policies and Conditions of Use in force at the time that you use the RhoKIT products and services. If any of these Conditions of Use is deemed invalid, void, or for any reason unenforceable, that condition will be deemed severable and will not affect the validity and enforceability of any remaining condition.
Waiver
If you breach these Conditions of Use and we take no action, we will still be entitled to use our rights and remedies in any other situation where you breach these Conditions of Use.
Children
We do not sell products for purchase by children. We do not sell children’s products for purchase by adults.
If you are under 18 you may not use the RhoKIT products and services not even with the involvement of a parent or guardian.
Please see our COPPA Compliance documentation for more detail.
Pricing and Availability
All prices are inclusive of legally applicable sales taxes.
We list availability information for products sold by us on the website including on each product information page. Beyond what we say on that page or otherwise on the website, we cannot be more specific about availability. As we process your order, we will inform you by SMS or e-mail as soon as possible if any service you have participated in turns out to be unavailable. You will not be charged for services we are not able to render.
Product Information
Unless expressly indicated otherwise, RhoKIT is the manufacturer and/or provider of the products sold. While we work to ensure that product and service information on our website is correct, actual product and service information might vary and different information might be displayed on our website.
Please carefully read the information provided with the product. Content on this site is not intended to substitute for advice given by a practitioner or professional.
RhoKIT Customer Promise
RhoKIT ensures clients are at the very heart of all that we do. We are fully committed to providing the highest standards of client services, products and advice.
Our customers are our most valuable asset and our aim is to ensure we deliver user-friendly, robust, reliable and cost-effective transactional services. As a part of our overall approach, we are fully committed to treating our clients fairly and as such we endeavour to meet their expectations of high quality services.
Our Treating Customers Fairly (TCF) policy is to ensure we consistently deliver fair outcomes to our clients and take responsibility for the firm and staff (at all levels) providing enhanced service quality to clients, based on a culture of openness and transparency. We take the requirements of this policy, in particular the requirement to treat customers and clients fairly.
Key Outcomes
There are six key outcomes central to this TCF initiative:
Key Service Principles
Living our six key customer service principles is how we deliver our customer promise. We ascertain the appropriateness of the requested service for all new clients prior to accepting an instruction, ensuring it is in line with their knowledge and experience as well as our capabilities and relevant laws.
1. We continually aim to understand the needs of our clients.
2. We keep our clients fully informed in a clear and fair manner that is unambiguous and not misleading.
3. We ensure our services are delivered with clarity and transparency and do not contain hidden conditions or rely on complex technical definitions.
4. We make certain our clients understand the risks associated with our services at the outset of an instruction.
5. We work hard to ensure that service and risk information remains clear and prominent always.
6. In the event that there is a conflict of interest, we will inform our clients as soon as possible once we become aware of it.
Our Approach
Our priority is to provide our clients with an excellent service underpinned by quality and choice. We are committed to ensuring our employees, customers and advisers want to buy our services, stay with us and recommend us to their business partners, suppliers and colleagues.
Our Service
Our service is shaped by listening to our clients’ needs and understanding what is important to them. We take our responsibility for meeting the needs of our clients seriously and always look for ways to improve the quality of our service. We aim to treat our clients fairly and deliver high quality services which meet or exceed their expectations throughout their relationship with us.
Our People
We recognise that our employees are critical to delivering an outstanding client experience and ensuring our customers are treated fairly. Our culture and values encourage and support our employees to deliver this.
All our employees are fully trained in dealing with our clients, and in treating them fairly. We remunerate and incentivise our employees to encourage them to deal with all clients fairly, and to continually find ways to improve.
Complaints
We respond in a timely manner to our customers and prospective customers’ questions and queries by addressing any issues or concerns promptly. All customer complaints are dealt with and escalated as appropriate and as required by us in order to meet our obligations to our clients and our regulators where applicable.