Paysasa keeps buyer payments, business wallets, and payouts on controls you can explain to a customer and to an auditor.

Card data is handled through compliant payment partners. The PCI DSS mark is shown where we describe that control.
Business API calls use a tenant signature header so a captured request cannot be replayed from another host.
Recent top-ups stay on hold before withdrawal or M-Pesa send. In-app transfers between wallets are not held.
Paid sales settle to the business wallet chosen for that checkout, not a personal fallback.
Business staff see only the permissions they are given. Closed or suspended businesses cannot change settings.
Unmatched paybill deposits stay unmatched until a person matches them. They are not credited automatically.