SousouBox Logo

Privacy Policy

Last updated: April 2026

1. Introduction

Sousou ("we", "us", "our" or "the Platform") is a digital companion for rotating savings circles. This Privacy Policy explains how we collect, use, store and protect your information when you visit our public websites (including the marketing site, blog, FAQ, contact and partners / benefactors pages—available in multiple languages where we offer them), use the Sousou mobile applications, or access the Sousou Admin dashboard.

We process personal data in line with applicable data protection laws, including the UK GDPR and EU GDPR (where relevant). By using Sousou, you agree to this Policy. If you do not agree, please do not use the Platform.

2. Information We Collect

We may collect information about you in a variety of ways:

Information You Provide Voluntarily:

  • Registration information (name, email, password)
  • Profile information (photo, preferred language, basic bio)
  • Communication through forms and contact pages
  • Support requests and feedback
  • Circle information (circle name, description, contribution amounts, schedules, member roles and payment marks or confirmations your group records in the product)

Payment & Billing (Where Applicable):

  • When you purchase a paid plan or complete checkout on our web flows, our payment processors (such as card acquirers or regional gateway partners) collect billing details, payment method tokens and transaction metadata needed to authorise and settle charges. We receive limited confirmation data from those providers rather than storing full card numbers ourselves.
  • Bank, wallet or mobile‑money identifiers may be processed where you or your organisation enable specific payout or collection integrations; handling is governed by the relevant processor and your account configuration.

Information Collected Automatically:

  • Device information (browser type, operating system, IP address)
  • Usage data (pages visited, features used, approximate session duration)
  • Cookies, local storage and similar technologies (including preferences such as theme or language on the website)
  • Approximate location derived from IP address where needed for security, fraud prevention or regional feature availability
  • Technical and security logs (for example API or GraphQL traffic metadata where our services expose them) to operate and protect the Platform

3. How We Use Your Information

We use the information we collect to:

  • Provide, operate and maintain the Sousou mobile experience, websites and admin dashboard
  • Create and manage your account and circles
  • Show contribution schedules, rounds, recipients and payment status to members who are entitled to see them
  • Send reminders, notifications and important service messages
  • Process or facilitate payments and subscriptions where you use those features
  • Respond to your comments, questions and support requests
  • Improve and personalise your experience and our features
  • Monitor the security and stability of the Platform
  • Comply with legal obligations and enforce our Terms & Conditions

4. Disclosure of Your Information

We do not sell, trade or rent your personal information. We may share your information with service providers who help us host, analyse, email or secure Sousou; with payment processors and financial infrastructure partners when you complete a transaction or when your organisation enables a supported rail; with circle admins and members as required for the product to function (for example showing who is due to pay or receive within a circle); when required by law; or with your explicit consent. Some providers may process data in countries outside your own; where required we use appropriate safeguards (such as standard contractual clauses).

5. Data Security & Retention

We implement industry-standard security measures: encryption (SSL/TLS, hashed passwords), secure infrastructure, access controls, reviews, backups, and incident response procedures. No method of transmission over the Internet is 100% secure; we encourage strong passwords and keeping credentials confidential. We retain personal data only as long as needed for the purposes above, to meet legal requirements, or to resolve disputes, after which we delete or anonymise it where feasible.

6. Your Rights

Under applicable data protection laws (including GDPR where it applies), you may have the right to access, rectify, erase, restrict processing, data portability, and to object, including to certain types of marketing. Contact us to exercise these rights. You may also lodge a complaint with your local supervisory authority.

7. Cookies & Similar Technologies

We use cookies and similar technologies to enhance your experience, remember preferences (such as language or theme), maintain sessions where needed, and understand aggregate usage. You can control cookie settings through your browser; some features may not function properly if cookies or local storage are disabled.

8. Contact & Data Protection

If you have questions about this Privacy Policy or our privacy practices, please contact us at:

Sousou

Email: privacy@createensemble.com