AudiSpot
Legal & Compliance

Privacy Policy

Last updated: July 2026. Learn how AudiSpot collects, uses, and protects your information across our hotspot billing platforms.

1 Introduction & Scope

AudiSpot ("we", "our", or "us") provides cloud-based network billing software, M-Pesa STK Push API middleware, and MikroTik router management dashboards. This Privacy Policy governs the processing of personal data collected through our customer control panels, captive portals, and physical router integrations.

2 Information We Collect

Depending on whether you are an ISP Network Operator or an end-user connecting to a Wi-Fi Hotspot, we process the following information:

  • ISP Account Information: Email address, business name, phone number, and Safaricom Paybill/Till number settings required to route transaction callbacks.
  • Hotspot Subscriber Data: Safaricom M-Pesa phone number (for STK Push prompt dispatching), device MAC address, allocated IP address, and connection session timestamps.
  • Hardware Telemetry: MikroTik RouterOS identity details, uptime statistics, CPU usage, active lease counts, and API response latency logs.

3 M-Pesa Funds & Non-Custodial Architecture

AudiSpot functions strictly as a non-custodial middleware platform. When a subscriber inputs their phone number to purchase a Wi-Fi voucher:

Direct Settlement: All funds move directly from Safaricom M-Pesa into the operator’s designated Paybill or Till number.

Zero Financial Custody: AudiSpot never holds, intercepts, delays, or collects commission fees on end-user payments.

4 How We Use Your Data

We utilize collected data strictly for operational fulfillment, including:

  • Triggering M-Pesa STK Push prompts on Safaricom's official API endpoints.
  • Automating RouterOS API bindings (MAC bypass, active user profile generation, and speed limits).
  • Generating financial reports and expense ledger analytics inside your AudiSpot Control Center.
  • Preventing unauthorized network access and anti-bypass firewall enforcement.

5 Data Sharing & Security

We do not sell, rent, or trade subscriber phone numbers or operator telemetry to third parties. Data is only transferred to payment gateways (e.g., Safaricom Daraja API) solely to execute requested transactions.

All communication between AudiSpot cloud servers, captive portals, and client MikroTik hardware is encrypted via SSL/TLS and secure API tunneling frameworks.

6 Contact Support & Data Protection

If you have any questions regarding this Privacy Policy, wish to request account deletion, or require custom data processing agreements for your ISP network, contact our privacy officer: