Security
How BitriPay keeps money safe
- Your approval on your device. Every payment, new recipient, withdrawal and security change is approved with your fingerprint, face, passkey or PIN. We never see your biometrics; the phone only tells us yes or no.
- Nothing settles on a screenshot. A payment is confirmed only by the card processor's signed message, a signed confirmation from a registered payout device, or two administrators checking documentary evidence. A mobile-money confirmation SMS must match the amount, reference, recipient, SIM and time before money is marked as delivered.
- Two people for every sensitive action. Creating balance, releasing a held payout, changing a rate or a corridor: one person proposes, a different person approves, both with step-up authentication.
- Immutable records. Ledger entries, audit logs and events cannot be edited or deleted, and the event log is hash-chained so any tampering is visible.
- Encryption. Data is encrypted in transit and at rest; card details are tokenised with the processor and never stored on our servers; PINs and passwords are hashed.
- Loud alerts. You are told immediately when money moves, so an unexpected payment is noticed in seconds.
- Freeze in one tap. Lost phone? Sign in elsewhere and freeze your account, or contact support.
Keeping yourself safe
BitriPay staff will never ask for your PIN, password or a code sent to your phone. Do not approve a payment you did not start. Only hand cash to an agent after the app shows the payout as settled.
Reporting a vulnerability
security@bitripay.app. We acknowledge within two working days and thank researchers publicly when they wish.