Legal  /  Ghive

Ghive Privacy Policy

Last updated: 3 July 2026

Ghive Privacy Policy

Jopex Investment Ltd

Last updated: 3 July 2026

Ghive is a group-finance application built by Jopex Investment Ltd for savings and lending groups, including VICOBA, SACCOS, and family or clan funds. This Privacy Policy explains what personal and financial data Ghive collects, why, how it is shared, and how it is protected. It should be read together with our company-wide Terms & Conditions, Security Policy, and Your Data Rights, which apply to Ghive as they do to all Jopex products. We handle personal data in accordance with the Personal Data Protection Act, 2022 of Tanzania and its Regulations.

1. Who is responsible for the data

Ghive is used by savings groups and by the members who belong to them, and responsibility for personal data is shared accordingly.

When a group records information about its members and their money, contributions, loans, shares, fines, and dividends, the group, acting through its committee (for example its chairperson, treasurer, and secretary), decides what is collected and why. In law it is the controller of that information, and Jopex acts as its processor, handling the data only on the group's instructions and on its behalf. This matters in particular for members' financial records, which the group maintains under its own rules, constitution, and consent arrangements with its members.

For a narrower set of data, Jopex is itself the controller: the account credentials of the person who registers, our security and device logs, support correspondence, and the technical information we use to keep the platform running and safe.

If you are a member of a group and have a question about how your group records or uses your data, your group's committee can answer it most directly, and we will support the group in responding.

2. What we collect

Most of what Ghive holds is entered by groups and the people using it:

Type of data Examples
Account and identity Name, mobile phone number and, optionally, an email address; a profile photo if you add one; and, where a group requires it for membership, an identification reference such as a national ID or voter number and next-of-kin details.
Group profile Group name and type (VICOBA, SACCOS, family or clan fund), registration or certificate number where one exists, meeting cycle, and the group's rules on contributions, interest, shares, and fines.
Membership and role Your role in the group (member, or a committee role such as chairperson, treasurer, or secretary), the date you joined, and your membership status.
Financial records Contributions and savings, shares purchased, loans issued to you and their repayments and balances, interest, fines, and dividends, together with the dates, amounts, and notes recorded against each entry, and the statements generated from them.
Payments (where enabled) Where a group enables mobile-money or bank features, the transaction references, phone numbers or account references, amounts, and statuses needed to record or reconcile a payment. Ghive does not store full card numbers or mobile-money PINs.
Device and technical Sign-in and security events, device and app version information, and diagnostic logs used to keep the service reliable and secure.
Support Messages you send us and the records of help we provide.

Ghive is intended for adults managing a group's finances. We do not knowingly collect data from children except where a group records a minor as a beneficiary or member under the authority and consent of a parent or guardian, in which case the group is responsible for that arrangement.

3. How we use the data

We use the data to operate Ghive for your group and to keep it secure: to run the group's ledger and keep every member's contributions, loans, shares, and dividends accurate; to calculate interest, shares, fines, and end-of-cycle dividends according to the rules the group sets; to produce member and group statements; to send reminders and notifications about meetings, contributions due, and loan repayments; to authenticate sign-in and protect accounts against fraud and unauthorised access; to provide support; and to meet legal and regulatory obligations. We do not use members' financial records for advertising, and we do not sell personal data.

4. How the data is shared

Ghive is a shared record for a group, so information is visible to others by design, but only in line with each person's role. Members can see their own statements and the group totals their group chooses to show; committee members such as the treasurer and secretary can see the fuller records they need to run the group. We share data outside the group only where it is necessary: with the notification providers that deliver SMS, email, or push messages on our behalf; where a group enables them, with the mobile-money or bank services used to make or reconcile a payment; with the service providers that host and secure our infrastructure, under confidentiality obligations; and with authorities or regulators, for example the Tanzania Cooperative Development Commission in the case of a registered SACCOS, where the law requires it or a group is legally obliged to report. We never sell your data or share it for others' marketing.

5. Keeping and protecting the data

We keep personal and financial data only for as long as it is needed to run the group and as the law and a group's own obligations require; groups control how long the records they manage are kept, and financial records are often kept for several years to meet accounting and audit needs. Because Ghive handles money, we treat its records with particular care. The data is protected by the measures in our company-wide Security Policy, including encryption in transit, hashed credentials, token-based sign-in, role-based access controls, and audit logging of changes to financial records. Our infrastructure is intended to be hosted in or accessible from Tanzania; where any data is processed elsewhere, for example by a global notification provider, we apply safeguards consistent with the 2022 Act.

6. Your rights and choices

You may see, correct, or ask us to delete your personal data, object to or restrict certain uses, withdraw consent, and complain, as described in Your Data Rights. Because Ghive is a shared financial record, some information cannot simply be erased on request, for example, entries that reflect real contributions, loans, or dividends that other members rely on, or that a group must keep for audit, but we and your group will honour your rights to the extent the law allows and explain anything that must be retained. Where your group is the controller, we will pass on or support your request as appropriate. You can ask to close your own account and remove the personal profile data for which Jopex is responsible at any time.

We may update this Policy as Ghive develops; where a change is significant we will say so in the app or by other reasonable means, and we will revise the date above. Questions can be sent to info@jopex.co.tz, and you may also contact the Personal Data Protection Commission of Tanzania.