PLAAGG

Legal

Privacy policy

Last updated 7 September 2026

PLAAGG is a business operating platform. The businesses that use it (our customers) put their own operational data into it: stock, sales, patients, leads, staff. This policy explains what we collect, why, where it lives, and what you can ask us to do with it.

1. Who we are

PLAAGG is operated from Nairobi, Kenya. For anything in this policy, write to the address shown on your invoice or in your workspace's Settings → Organization page. We act as a data processor for the operational data our customers store, and as a data controller for the account data we hold about the people who sign in.

2. What we collect

  • Account data: your name, email address, password (stored only as a one-way hash), and, if you set them, a quick-unlock PIN (hashed) and passkey public keys. We never receive your face or fingerprint; the device keeps those.
  • Workspace data: everything your business records in PLAAGG: products, stock, sales, customers, patients, appointments, treatment plans, leads, suppliers, invoices, team members. This data belongs to your business.
  • Security and usage records: sign-in attempts, the IP address and coarse device description of each session, the country a request comes from, and an audit trail of changes made in your workspace. We keep these to protect your account and to show you who did what.
  • Payments: when a business connects a payment gateway, we store the gateway's credentials encrypted and the transaction references the gateway returns. We never hold card numbers or M-Pesa PINs.

3. How we use it

To run your workspace, to keep your account secure (rate limits, lockouts, device pairing, the work-area restriction your business may switch on), to send you the emails you ask for (password resets, invitations), to bill your business, and to improve the product using aggregate, non-identifying usage. We do not sell data and we do not use your workspace data to advertise to anyone.

4. Where it lives and how it is protected

Data is stored in a managed PostgreSQL database with row-level isolation between businesses, encrypted in transit and at rest, with daily backups. Passwords are hashed with bcrypt; gateway secrets are encrypted with a key that is never stored alongside the data. The installed app keeps no business data on the device. Details are published in our security documentation.

5. Who else sees it

Only the people your business invites to its workspace, in the roles it gives them. We use a small number of service providers to run PLAAGG (hosting, database, email delivery, payment gateways); each processes data only on our instructions. We disclose data to authorities only where the law requires it.

6. Your customers' data

Businesses using PLAAGG are responsible for having a lawful basis to record their own customers' and patients' details, and for answering their requests. We give businesses the tools to correct and delete records, and we will help with any request we receive directly.

7. Retention

Workspace data is kept for as long as the business's account is active and for 90 days after it is closed, so a mistaken closure can be undone, then deleted. Security records are kept for 12 months. Backups roll off on their own schedule within 30 days.

8. Your rights

You can see, correct, export or delete your account data, and a business owner can request an export or deletion of the whole workspace. Under Kenya's Data Protection Act, 2019 you also have the right to object to processing and to complain to the Office of the Data Protection Commissioner. Write to us and we will respond within 30 days.

9. Cookies

We use only the cookies needed to keep you signed in and to remember a device you have paired for quick unlock. No advertising or tracking cookies.

10. Changes

If this policy changes in a way that matters, we will tell account owners by email and show the date at the top of this page.

Done reading?

Go back to where you were, or straight into your workspace.