Security

Trust controls for WhatsApp commerce teams

WatsapDuka is designed as a multi-tenant SaaS platform with secure routing, role-aware access, tenant isolation, and data protection practices.

Encryption

Sensitive secrets are protected in transit and at rest using industry-standard controls.

Tenant isolation

Each business operates in a separate tenant scope for users, customers, products, orders, and settings.

Secure payments

Payment workflows are designed around provider callbacks, access control, auditability, and reconciliation.

Data protection

Operational access is role-aware, and customer data is handled for the business purpose it was collected for.

Responsible operation

Security practices customers and reviewers can understand

We document data handling, provide privacy and deletion routes, and separate tenant data so each business controls its own customers, products, users, orders, and settings.

To report a security issue, email support@watsapduka.com. Please include the affected URL, steps to reproduce, and any relevant logs or screenshots.