Wedding
by Lockwood
Trust

Security

How we protect couples, vendors, and the money that flows through the platform.

We never hold client funds

Contributions flow directly to your own Changisha, Mchango, Lipa Namba, or bank account. Wedding by Lockwood is a facilitator, never a custodian.

Payments via Malipopay

All transactions are processed by Malipopay, a Bank of Tanzania-supervised payment gateway. Signed webhooks, verified end-to-end.

No PINs on file

We never collect, store, or transmit your mobile money PIN or bank password.

RS256 JWT auth

Signed access tokens with short lifetimes, refresh-token rotation, phone OTP for sign-in.

Verified vendors only

Every vendor is reviewed by our team before going live. Verified, Highly Rated, and Fast Responder badges signal trust at a glance.

TRA fiscal receipts

Every vendor transaction produces a TRA-compliant EFD receipt automatically.

Architecture

Four habits, repeated everywhere.

01
Encryption in transit

TLS 1.2+ on every endpoint. HSTS preloaded. Public traffic terminates at Cloudflare; internal traffic stays inside a private VPC.

02
Encryption at rest

Production MongoDB Atlas clusters and backups are encrypted with AES-256. Keys are rotated quarterly.

03
Least-privilege access

Production access is gated by SSO, MFA, and role-scoped IAM. Engineer access is logged and reviewed monthly.

04
Defence in depth

Cloudflare WAF, BullMQ rate limits, request signing on webhooks, per-tenant data partitioning, and per-environment Rabbit vhosts.

Compliance

Standards we work to.

BoT-supervised

Payments via Malipopay, a Bank of Tanzania-supervised gateway

TRA EFD

Fiscal receipts on every vendor transaction

RS256 JWT

Signed short-lived tokens with refresh rotation

ISO-aligned ops

Operational controls modelled on ISO/IEC 27001

Incident response

If something goes wrong, you hear from us first.

We monitor production around the clock. Suspected security incidents trigger an on-call page within 5 minutes. We aim to acknowledge confirmed incidents to affected users within 24 hours, and to publish a post-incident report within 7 days of resolution. Where personal data is impacted, we notify the Personal Data Protection Commission within 72 hours, in line with the Tanzania PDPA.

Report a vulnerability
security@wedding.co.tz

PGP key fingerprint and disclosure policy published on request.