Privacy policy
Last updated 2 August 2026
This page explains what KontriWiFi collects, why we collect it, and who else sees it. It is written to be read, not to be skipped.
Who this covers
KontriWiFi runs the hotspots you connect to, the equipment on them and the software behind them. This policy covers the KontriWiFi website, the app and every hotspot on the network.
What we collect
- Your account: your phone number, a display name if you set one, your language choice, and your public code (the #K handle we use to talk about your account without using your number). You can also add an email address and a password if you prefer signing in that way.
- Your devices: the network address of each device you connect with (its MAC address), and the name the device announces to the router, so your phone shows up as your phone and not as a string of digits.
- Your sessions: which hotspot and which access point served you, when the session started and stopped, and how much data it used.
- Your payments: the amount, the plan bought, the mobile money number used, the reference from the payment provider, whether the payment went through, and the screenshot of the transfer if you send one as proof.
- Anything you send us: support messages and the photos or files you attach to them, plus installation, partnership or coverage requests and the details you type into them.
What we do not collect
- We do not log the websites you visit, the apps you use, or the content of your traffic.
- We do not track where you are. A session tells us which hotspot served you, because that hotspot has a fixed address. Your phone's location is never read.
- We do not run advertising trackers or third-party analytics on our pages. There is no third-party script on the site or the app.
- We do not store your IP address. It is used for a moment to limit abuse, then dropped.
- We never see your mobile money PIN. That stays between you and your operator.
Why we collect it
- To sign you in, and to recognise you at any hotspot on the network so you do not start over in a new place.
- To put a device we already know back online without asking you to sign in again.
- To deliver and meter your plan: the time, the data and the number of devices it covers.
- To keep the network working. Session and device records are how we find a faulty access point, a saturated site, or a device abusing the connection.
- To take payment and keep our accounts straight.
- To send you the messages the service needs: one-time codes, payment confirmations, and warnings before a plan runs out. If you added an email address, some of those notices reach you there too.
Who we share it with
We do not sell your data, and we do not hand it to advertisers or data brokers. Only these parties see any of it, because the service cannot work otherwise.
- Payment providers: the mobile money operator and our payment gateway see the number and the amount for the payment you are making.
- Messaging providers: the WhatsApp Business platform and our SMS provider see your phone number and the message we send, so your code or alert reaches you. The first time we see a new number, a number-checking service also tells us whether it is real and which network it is on, so we do not send a code into the void.
- Venues hosting a hotspot: a partner who hosts a Kontri site sees activity on that site through their dashboard, and can keep a private note about a guest for their own records. They see your public code, never your phone number and never your email.
- Authorities, if the law requires it. We ask for a proper request before we answer one.
How long we keep it
Part of this already happens on its own. The rest is built and waiting to be switched on, and each line below says which it is, so nothing on this page claims more than we actually do today.
- Your account stays for as long as you have one.
- Running today. Session records: after 90 days an automatic job scrambles the device address on old sessions, so a session can no longer be tied to a particular device. The rest of the record, the hotspot, the times and the volume, stays on your account and is what we use to plan the network.
- Running today. Technical logs sent up by routers are deleted after 7 days, and so are the raw per-minute equipment readings.
- Built, not switched on yet. Sessions older than about a year stop being kept one by one. What is left behind is a daily total per hotspot, with no account, no device and no person attached to it.
- Built, not switched on yet. One-time codes are deleted once they are long past use. The record of a message we sent you keeps the provider, the cost and whether it arrived, but your number in it is scrambled. The one-off check that tells us a new number is real is deleted too.
- Built, not switched on yet. The name a device announces to the router is removed once that device has not been seen for about a year.
- Support conversations stay with your account until you ask us to remove them. Built, not switched on yet: a conversation that has been closed for a long time is removed together with its messages. A conversation that is still open is never touched, whatever its age.
- Payment and billing records are kept, because accounting requires it. No automatic clean-up ever touches them.
- The record of what our own staff did in the admin tools is kept for good, because that is what lets anyone check us afterwards. Built, not switched on yet: on very old entries the free-text note, which can quote a number, is blanked, while the entry itself stays.
Your choices
- Change your display name, your language or your password on the account screen.
- See the devices connected to your plan, and disconnect any of them, on the devices screen.
- Sign out of a phone or computer you no longer use, from the signed-in devices list on the account screen.
- Ask us to close your account and remove your details: message support. A person handles it, so give us a little time. Payment records that accounting requires stay behind.
Cookies
Our pages set a small number of cookies, all our own. One keeps you signed in. The others remember the device you connected with, the hotspot you are standing at, and that this browser has already met a Kontri router, so getting back online takes one tap instead of a full sign-in. There are no advertising cookies and no tracking across other people's sites.
Security
Passwords are stored hashed, never in readable form, and one-time codes expire quickly. Access to our admin tools is limited to our team and to the partner staff of their own site. If you think someone else is using your account, sign out everywhere from the account screen and tell us.
Changes to this policy
If we change how any of this works, we update this page and the date at the top. Nothing on this page is a certification or a legal accreditation, it is a plain statement of what we do.
Contact us
Questions about this page, or about your data? Reach us here.