Please read these terms carefully before using HashBack or HashPay services. By accessing or using our Services, you agree to be bound by these Terms.
You must:
You agree to:
HashBack Solutions operates a technology platform for Kenyan businesses, made up of the products described below. One account gives access to all of them and they share a single balance; you pay only for what you use.
4.1 — HashPay (payment collection)
Collection of customer payments over M-Pesa: STK Push prompts, C2B Till and Paybill confirmations, payment links, hosted checkout, QR payments, webhooks and automated reconciliation. Payment channels are provisioned, reviewed and activated by HashBack, and may be operated on a subscription or, after a first completed subscription month, on Pay-As-You-Go. A sandbox mode is available for testing before go-live, restricted to numbers you have nominated and verified.
4.2 — Wallet as a Service (payouts and payroll)
Merchant wallets, B2C disbursements, bulk payment and payroll runs, withdrawals to M-Pesa or bank, float management, transaction ledgers and receipts. Payout fees are charged per payout on a published scale that varies with the amount. Funds held in a wallet are held for settlement purposes only and are not a deposit, do not earn interest, and confer no banking relationship.
4.3 — HashPay SMS (bulk messaging)
Bulk and transactional SMS delivered through our licensed messaging partner, with contact groups, templates, scheduling, per-recipient delivery reports and a REST API. Messages may be sent under a shared sender ID or, once approved and mapped to your account, your own registered sender ID; registration of a sender ID attracts a separate fee. SMS is billed per 168-character unit at a single flat rate regardless of which sender ID is used. Promotional traffic carries an opt-out line as required by Kenyan regulation, and the characters it adds are billed.
4.4 — WhatsApp messaging
One-time passwords, transaction alerts, receipts and customer notifications delivered over the WhatsApp Business platform. Use is additionally subject to WhatsApp's and Meta's own policies on what may be sent, to whom, and when; we cannot override those rules on your behalf.
4.5 — HashBack (MSISDN hash decoding)
Decoding of the hashed mobile numbers that appear in Safaricom M-Pesa C2B callbacks, so a payment can be matched to a payer. Sold as pay-as-you-go credits at a per-request rate set by your plan, with a minimum top-up per plan. Credits do not expire and no credit is charged for a failed decode. Decoding is available for Kenyan mobile numbers only, and may only be used against callbacks for payments genuinely made to you.
4.6 — Supporting tools
4.7 — Custom systems
We also build bespoke systems — retail and point-of-sale, transport and fleet, property and rentals, ERP, web and mobile applications — on separately agreed terms. Nothing on our website constitutes a quotation, a delivery date or a commitment to build.
4.8 — Abuse controls applied to payer numbers
Repeatedly prompting a mobile number that does not complete the payment is abusive to that subscriber and puts our access to Safaricom's platform at risk. HashBack therefore operates automated controls on the numbers your channels prompt:
4.9 — Removal of accounts, channels and linked records
To keep the platform and our partner integrations clean, HashBack may deactivate, purge or permanently delete accounts, payment channels and linked records — including any data held in them — in the following cases:
Settled funds belonging to you that are held at the time of closure remain payable to you, subject to our verification, any applicable investigation, and any deduction we are lawfully entitled to make.
You agree to:
HashBack reserves the right to:
HashBack may, at its sole discretion:
All applicable fees will be communicated through the platform or official channels. You agree that:
See our Pricing Page for current rates.
You agree:
You are solely responsible for:
HashBack relies on third-party providers including mobile networks and financial institutions. We are not responsible for:
You grant HashBack a non-exclusive, worldwide license to use, store, and process data you submit, and to analyze transaction data for service improvement and compliance.
HashBack processes personal data in accordance with applicable data protection laws. We may collect and process:
You have the right to:
All platform content, APIs, and systems are owned by HashBack. You may not:
You agree to indemnify and hold harmless HashBack from any claims, damages, or losses arising from:
HashBack may suspend or terminate your account for:
Any disputes shall be resolved through:
These Terms are governed by and construed under the laws of the Republic of Kenya.
These Terms constitute the entire agreement between you and HashBack and supersede all prior agreements, representations, and understandings.
If any provision of these Terms is found invalid or unenforceable by a court of competent jurisdiction, the remaining provisions shall continue in full force and effect.
HashBack may update these Terms at any time. Significant changes will be communicated via email or dashboard alerts.
For legal inquiries or questions about these Terms, contact us at:
This section applies specifically to users of the HashPay Peer-to-Peer (P2P) payment services, including P2P gateways, payment automations, and related integrations.
25.1 — Data Ownership & Exclusivity
25.2 — No Third-Party Data Sharing
25.3 — Service Improvement & Analytics
HashBack may use aggregated, anonymised analytics derived from P2P activity across the platform to:
25.4 — Data Retention
25.5 — Your Rights
By using HashBack, you acknowledge that you understand the risks involved in digital payments and accept full responsibility for your use of the platform. You confirm that you have read, understood, and agreed to all 25 sections of these Terms.