Privacy Policy
SAF Remit Ltd — Licensed Cross-Border Payment & Settlement Solutions
Last updated: 06 August 2026
1. Introduction
SAF Remit Ltd (“SAF Remit,” “we,” “us,” or “our”) is a Payment
Intermediary Services (PIS) provider licensed by the Financial Services Commission (FSC) of Mauritius (License No:
GB24203924 – Code: FS-2.9), enabling banks, money transfer operators (MTOs), fintechs, and other licensed
institutions to route, settle, and manage cross-border payment flows.
This Privacy Policy explains what personal data we collect, how we use it, how we protect it, and what rights you
have regarding your data, in accordance with the Mauritius Data Protection Act 2017 and, where applicable, other
relevant data protection and financial services laws in the jurisdictions we and our partners operate in
(including Canada, via our sister company SAF Remit Canada Ltd., an MSB registered under FINTRAC).
2. Who We Are
3. Information We Collect
We primarily serve licensed institutional partners (banks, MTOs, exchange houses, fintechs) rather than
individual consumers directly, but we collect personal data in connection with our website, onboarding, and
payment operations, including:
a) Information you or your organisation provide directly
- Contact details: name, job title, company name, country of operation, email address, phone number
- Information submitted through our contact forms, onboarding chat widget, or WhatsApp channel
- KYC/KYB (Know Your Customer / Know Your Business) documentation for partner due diligence: corporate
registration documents, licensing information, beneficial ownership details, identification documents of
authorised representatives, proof of address, source of funds/wealth documentation
- Commercial and technical information exchanged during onboarding (NDAs, commercial terms, API/technical
documentation)
b) Transaction-related data
- Where we provide payment aggregation, settlement, or remittance-enablement infrastructure to licensed
partners, we may process transaction data relating to underlying payments (e.g., beneficiary details, payment
references, transaction amounts and corridors) as part of routing, settlement, reconciliation, and compliance
monitoring
c) Information collected automatically via our website
- IP address, browser type, device information
- Pages visited, time spent on the site, referring website
- Cookies and similar tracking technologies (see Section 7)
d) Information from third parties
- Due diligence and verification data from regulatory bodies, correspondent banks, sanctions/watchlist screening
providers, and public registries, used for onboarding, AML/CFT, and sanctions compliance purposes
4. How We Use Your Information
- Responding to enquiries submitted via our website, email, phone, or chat
- Assessing and onboarding institutional partners (KYC/KYB, due diligence, NDA execution, commercial and
technical onboarding)
- Providing, operating, and supporting our payment aggregation, cross-border settlement, remittance enablement,
and API/white-label solutions
- Conducting AML/CFT checks, sanctions screening, and transaction monitoring as required under Mauritius FSC and
applicable international regulatory standards
- Complying with legal and regulatory obligations, including reporting to the FSC, FINTRAC (for our Canadian
sister company), and other competent authorities
- Ensuring the security, integrity, and continuity of our payment infrastructure
- Improving our website functionality and user experience
- Communicating with partners regarding service updates, pricing, or operational matters
5. Legal Basis for Processing
- Performance of a contract (e.g., partner onboarding, delivery of payment infrastructure services)
- Compliance with a legal obligation (e.g., AML/CFT, sanctions screening, FSC and FINTRAC regulatory
requirements)
- Our legitimate interests (e.g., fraud prevention, system security, service improvement), provided these do not
override your rights
- Your consent, where required (e.g., certain website cookies or optional communications)
6. Sharing of Information
We do not sell personal data. We may share information with:
- Regulatory and governmental authorities (including the FSC and, where relevant, FINTRAC), where legally
required
- Correspondent banks, payout partners, and payment channels necessary to process and settle transactions
- Sanctions/watchlist screening and due diligence service providers
- Professional advisers, auditors, and IT/hosting service providers who support our operations, subject to
confidentiality obligations
- Our sister company, SAF Remit Canada Ltd., where necessary for cross-border service delivery and compliance
coordination
All third parties are required to protect your data and use it only for the purposes specified.
7. Cookies and Tracking Technologies
Our website may use cookies and similar technologies to ensure the website functions correctly, analyse website
traffic and usage patterns, and support the live chat/WhatsApp onboarding functionality. You can control or
disable cookies through your browser settings. Disabling cookies may affect certain website features.
8. Data Retention
We retain personal data only for as long as necessary to fulfil the purposes outlined in this policy, including
satisfying legal, regulatory, accounting, or reporting requirements. In particular, records related to KYC/KYB,
transaction monitoring, and AML/CFT compliance are retained for the minimum periods required under Mauritius FSC
regulations and, where applicable, FINTRAC requirements.
9. Data Security
Given the nature of our payment infrastructure services, we maintain institutional-grade technical and
organisational security measures, including encrypted communications, secure API connectivity, access controls,
and redundancy/disaster recovery capabilities, to protect personal and transactional data against unauthorised
access, alteration, disclosure, or destruction. No method of transmission over the internet or electronic storage
is completely secure, and we cannot guarantee absolute security.
10. International Data Transfers
As a cross-border payment infrastructure provider connecting partners across multiple jurisdictions and
corridors, personal and transaction data may be transferred to and processed in countries outside Mauritius,
including Canada and other jurisdictions where our partners and payout channels operate. Where this occurs, we
take steps to ensure appropriate safeguards are in place in line with applicable data protection and financial
services laws.
11. Your Rights
Subject to applicable law, you may have the right to:
- Access the personal data we hold about you
- Request correction of inaccurate or incomplete data
- Request deletion of your data, where applicable and not otherwise required to be retained for regulatory
purposes
- Object to or restrict certain processing
- Withdraw consent at any time (where processing is based on consent)
- Lodge a complaint with the Data Protection Office of Mauritius or another relevant supervisory authority
To exercise any of these rights, please contact us at fin-ops@safremit.com.
12. Third-Party Links
Our website may contain links to third-party websites (e.g., Google Maps, WhatsApp). We are not responsible for
the privacy practices or content of these external sites and encourage you to review their privacy policies.
13. Children's Privacy
Our website and services are intended for licensed institutions and business partners and are not directed at
children. We do not knowingly collect personal data from minors.
14. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements.
The updated version will be posted on this page with a revised “Last updated” date.
15. Contact Us