1. Who we are
Tenga is a point-of-sale, inventory and business management service operated by Depar Technologies Limited in Zambia. In this policy, “Tenga”, “we”, “us” and “our” refer to Depar Technologies Limited. “You” refers to an organization using Tenga and the owners, staff members or other people using its account.
Questions and privacy requests can be sent to hello@tenga.co.zm.
2. Information we collect
Account and identity information
We may collect names, email addresses, usernames, telephone numbers, encrypted authentication credentials, role and permission assignments, organization and branch membership, and account-security events.
Business information
Organizations choose to store business names, branch details, products, barcodes, product images, inventory levels, suppliers, customers, sales, refunds, expenses, receipts, staff activity and reports. Organizations are responsible for ensuring they have a lawful basis to enter information about their customers, suppliers and staff.
Device and technical information
We may process device identifiers, app version, operating system, network status, IP address, push-notification tokens, synchronization status, crash reports, diagnostics and security logs. Tenga may store an offline copy of authorized business data on a device so core workflows can continue without a connection.
Camera, photos and notifications
Camera access is used when you choose to scan a barcode, pair a scanner or take a product photo. Photo-library access is used only when you choose an image. Notification permission is used to deliver enabled business or security alerts. Tenga does not use the camera or photo library in the background.
Payment and subscription information
Subscriptions are purchased and managed on the Tenga website through an external payment provider. We may receive transaction identifiers, subscription status, plan, billing period and payment status. We do not intend to store complete payment-card details in Tenga.
3. How we use information
- Provide authentication, sales, inventory, reporting, offline synchronization, notifications and other requested features.
- Operate organizations, branches, roles, permissions and audit histories.
- Process subscriptions and maintain access to paid services.
- Secure the service, prevent fraud, investigate misuse and troubleshoot failures.
- Respond to support, privacy and account-deletion requests.
- Improve reliability and understand aggregate product performance.
- Comply with applicable legal, tax, accounting and regulatory obligations.
We do not sell personal information and do not use Tenga business records for third-party targeted advertising.
4. Service providers and disclosures
We use carefully selected providers to operate Tenga, including cloud database, authentication, file storage, hosting, transactional email, push notification, error-monitoring and payment services. These providers process information only to deliver their services to us and are expected to protect it under their contracts and applicable law.
Information may also be disclosed when required by law, to protect people or the service, in connection with a corporate transaction, or at the direction of the organization that controls the relevant business workspace. We do not disclose one organization’s data to another organization.
5. Organization administrators
For most business records, the organization using Tenga decides what is entered and who may access it. Owners and authorized managers may create or remove staff, assign permissions, review audit records and manage business information. Staff should direct workplace-data questions to their organization owner first; they may also contact us for assistance.
6. Storage, security and international processing
We use access controls, tenant separation, authentication, encrypted network connections, protected credentials, backups and monitoring designed to safeguard information. No service can guarantee absolute security, and users must protect their passwords and devices.
Our providers may process information in countries outside Zambia. Where information crosses borders, we use provider agreements and other appropriate safeguards intended to protect it consistently with this policy.
7. Retention and deletion
We generally keep account and business information while the relevant organization uses Tenga. After a verified deletion request, we delete or de-identify covered information within a reasonable period, normally within 30 days. Residual copies may remain temporarily in secured backups until their normal rotation completes.
We may retain limited records when reasonably necessary for legal, tax, accounting, fraud-prevention, security, dispute-resolution or enforcement purposes. Where retention is required, the information is restricted to that purpose and deleted when the requirement ends.
See our Account and Data Deletion Policy for the request process and scope.
8. Your choices and rights
Depending on applicable law and your relationship with the organization, you may ask to access, correct, export or delete personal information, object to or restrict certain processing, withdraw consent, or complain to an appropriate regulator. Some organization-controlled records must be handled through the organization owner.
You can update profile information in Tenga, manage notification permission in your device settings and initiate eligible account or organization deletion in the app. You may also use our public deletion request page.
9. Children
Tenga is a business service and is not directed to children. Users must be at least 18 years old or otherwise legally able to enter a binding agreement in their jurisdiction. We do not knowingly collect personal information directly from children through account registration.
10. Changes to this policy
We may update this policy as Tenga, our providers or legal requirements change. We will publish the updated version here and change the “Last updated” date. We will provide additional notice when a change is material and applicable law requires it.
