Security & Compliance
Enterprise-Grade Security

Your Payments, Protected at Every Layer

NexaPay is built on a foundation of bank-grade security standards. Every transaction, API call, and data point is protected using the most advanced security protocols available.

PCI DSS
PCI DSS
Level 1 Certified
SSL TLS
TLS 1.3
256-bit Encryption
3D Secure
3D Secure
v2.0 Ready
ISO 27001
ISO 27001
Information Security
PCI DSS

PCI DSS Level 1 Compliance

The gold standard in payment security

NexaPay is PCI DSS Level 1 compliant β€” the highest certification level defined by the Payment Card Industry Data Security Standard. This means every component of our payment infrastructure is independently audited annually by a Qualified Security Assessor (QSA).

Annual QSA Audit
Quarterly Network Scans
Penetration Testing
Cardholder Data Protection

Our compliance covers all 12 PCI DSS requirements including network security, access control, vulnerability management, monitoring, and information security policy. Merchants on NexaPay inherit our compliance posture β€” reducing your own PCI scope significantly.

TLS Encryption

TLS 1.3 Encryption in Transit

All data encrypted end-to-end

All communication between your application and NexaPay APIs is encrypted using TLS 1.3 β€” the latest and most secure version of the Transport Layer Security protocol. Older TLS versions (1.0, 1.1) and SSL are explicitly rejected at our API gateway.

  • 256-bit AES encryption for all API traffic and webhook payloads
  • Perfect Forward Secrecy (PFS) enabled on all endpoints
  • HSTS (HTTP Strict Transport Security) enforced with one-year max-age
  • Certificate pinning available for mobile SDK integrations
  • All data at rest encrypted using AES-256 with key management via HSM
3D Secure

3D Secure Authentication

Additional authentication layer for every payment

NexaPay supports 3D Secure 2.0 (3DS2) across all supported mobile money networks. This provides an additional authentication layer that confirms the identity of the payer before a transaction is authorised, dramatically reducing fraud and chargebacks.

3DS2 enables risk-based authentication β€” low-risk transactions flow seamlessly without user friction, while high-risk transactions trigger additional verification steps. This means fewer abandoned payments and stronger protection.

Fraud Detection & Prevention

Real-time threat intelligence

Our multi-layer fraud detection engine analyses every transaction in real time using machine learning models trained on African mobile money patterns. Suspicious activity is flagged and reviewed within seconds.

  • Velocity checks β€” detecting unusual transaction frequency per account
  • Device fingerprinting and geo-IP mismatch detection
  • Phone number reputation scoring across all four countries
  • SIM swap detection integration with MTN, Airtel, and EcoCash
  • Merchant-configurable risk thresholds and auto-block rules
  • 24/7 fraud operations team monitoring live transaction feeds
ISO 27001

Data Residency & Privacy

Your data stays in Africa

NexaPay processes and stores all transaction data within African data centres. We maintain separate data residency zones for Zambia, Zimbabwe, Botswana, and Namibia to comply with each country's data sovereignty requirements.

  • Data for Zambian merchants stored in Zambia-based infrastructure
  • Full compliance with Bank of Zambia, RBOZ, NBFIRA, and BoN data regulations
  • GDPR-aligned data handling for any EU-connected integrations
  • Zero data sharing with advertisers, aggregators, or third-party brokers
  • Right to deletion (RTBF) honoured within 72 hours of valid request

Penetration Testing

Tested by external experts quarterly

NexaPay undergoes rigorous penetration testing by independent security firms every quarter. Our scope covers web application security, API security, network infrastructure, mobile SDK security, and social engineering resilience.

  • OWASP Top 10 vulnerability testing on every major release
  • API fuzzing and injection attack simulation
  • Full network and infrastructure pen test quarterly
  • All critical findings resolved within 24 hours; high findings within 7 days
  • Summary security reports available to enterprise merchants on request
Frequently Asked Questions
Help Centre

Frequently Asked Questions

Everything you need to know about NexaPay β€” from getting started to enterprise integration and billing. Can't find what you're looking for? Contact us at support@nexapay.net.

Getting Started
What is NexaPay and how does it work?
NexaPay is a unified mobile money payment gateway that enables businesses and developers to accept digital payments across Zambia, Botswana, Zimbabwe, and Namibia through a single, simple REST API. Instead of integrating separately with MTN, Airtel, EcoCash, Orange Money, and other networks, you integrate once with NexaPay and we handle all the complexity. Merchants sign up, get verified, receive API keys, and can start accepting live payments within 24–48 hours of approval.
How long does it take to go live?
Most merchants go live within 24–48 business hours of submitting complete verification documents. The process is: (1) Sign up and submit your business documents, (2) Our compliance team reviews your application β€” typically same-day, (3) Once approved, you receive your production API keys and are ready to accept payments. You can begin integrating in our sandbox immediately upon registration β€” no waiting required.
What countries and networks does NexaPay support?
NexaPay currently supports four countries with the following networks:
  • Zambia (ZMW): MTN Mobile Money, Airtel Money, Zamtel Kwacha
  • Zimbabwe (USD/ZWG): EcoCash, OneMoney, Telecash
  • Botswana (BWP): Orange Money, MyZaka (BancABC), BTC Mobile
  • Namibia (NAD): MTC MobiPay, TN Mobile Pay, Telecom Namibia Pay
We are actively working to expand to additional Southern African countries. Sign up for our newsletter to be notified when new countries launch.
Is there a sandbox / test environment?
Yes. NexaPay provides a full-featured sandbox environment that mirrors production exactly. You can test all payment scenarios β€” successful charges, failures, timeouts, reversals, and webhook events β€” without touching real money. Sandbox API keys are available immediately upon registration. Our sandbox documentation includes pre-set test phone numbers that simulate different payment outcomes for all four countries.
Pricing & Fees
What are NexaPay's transaction fees?
NexaPay charges a simple flat-rate per successful transaction. There are no monthly fees, no setup fees, and no hidden charges. Standard rates per country:
  • Zambia: 2.5% per transaction (min ZMW 0.50). High-volume: from 1.5%
  • Zimbabwe: 2.0% per transaction (min USD 0.10). High-volume: from 1.5%
  • Botswana: 2.0% per transaction (min BWP 0.20). High-volume: from 1.5%
  • Namibia: 2.0% per transaction (min NAD 0.50). High-volume: from 1.5%
Volume discounts apply from 1,000+ transactions/month. Contact sales for enterprise pricing.
Are there any monthly fees or setup costs?
No. NexaPay is entirely pay-as-you-go. You only pay when you successfully process a transaction. There is no monthly subscription, no annual fee, no minimum transaction volume, and no fee for failed transactions. API access, dashboard access, sandbox environment, webhooks, and developer support are all included at no extra cost.
When and how do I receive my settlements?
Settlements are processed on a T+1 business day cycle by default (next business day). Enterprise merchants can request T+0 (same-day) settlements. Funds are settled to your registered merchant mobile wallet or bank account in the local currency of each country. You can view real-time settlement reports in your merchant dashboard, and configure settlement notifications via webhook or email.
Integration & Technical
What programming languages and frameworks are supported?
NexaPay provides a standard REST API that can be used with any language. We additionally provide official SDKs for:
  • JavaScript / Node.js β€” with TypeScript support and full type definitions
  • Python β€” compatible with Django, Flask, and FastAPI
  • PHP β€” compatible with Laravel and WordPress/WooCommerce
  • React Native / Expo β€” for mobile app integrations
All SDKs are open source, available on GitHub, and actively maintained by the Elicate Technologies team.
How do webhooks work?
When a payment event occurs (e.g., payment.completed, payment.failed, refund.processed), NexaPay sends a signed HTTP POST request to your configured webhook URL. All webhook payloads are signed using HMAC-SHA256 with your webhook secret β€” always verify the signature before processing. NexaPay retries failed webhook deliveries up to 5 times with exponential backoff. You can view and replay webhook events from your merchant dashboard.
How do I handle refunds?
Refunds can be initiated via the API or directly from your merchant dashboard. NexaPay supports both full refunds and partial refunds. Refund requests are typically processed within 1–2 business days, after which the funds are returned to the customer's mobile wallet. You can track refund status in real time via the dashboard or by listening to the refund.completed webhook event.
Security & Compliance
Is NexaPay PCI DSS compliant?
Yes. NexaPay is PCI DSS Level 1 certified β€” the highest level of certification. Our infrastructure is audited annually by a Qualified Security Assessor (QSA). All payment data is processed within our PCI-compliant environment, which significantly reduces the compliance burden on your own systems. Merchants integrating via our API generally qualify for a simplified SAQ-A or SAQ-A-EP self-assessment questionnaire.
How does NexaPay protect against fraud?
We use a multi-layer approach: real-time machine learning fraud models, velocity controls, SIM swap detection, device fingerprinting, geo-IP mismatch detection, and phone number reputation scoring. Additionally, all transactions go through 3D Secure authentication where supported by the network. Merchants can configure their own risk thresholds via the dashboard API. Our fraud operations team monitors live traffic 24/7.
What happens if I have a dispute or chargeback?
Disputes are managed through your merchant dashboard. When a dispute is opened, you receive a notification and have a defined window to submit evidence. NexaPay acts as the intermediary between you and the mobile network operators. Our disputes team handles the entire process and provides guidance on evidence requirements for each network. Chargebacks on mobile money are rare compared to card payments, given the PIN-authenticated nature of mobile money transactions.
Account & Support
What support options are available?
All merchants receive access to:
  • Email support β€” support@nexapay.net (response within 4 hours on business days)
  • WhatsApp / Phone β€” +260 76 239 6485 (business hours, Monday–Friday)
  • Developer documentation β€” comprehensive API reference and integration guides
  • Sandbox environment β€” self-service testing at any time
Enterprise merchants additionally receive a dedicated account manager and priority 24/7 support with sub-1-hour response time SLAs.
Can I accept payments in multiple countries from one account?
Yes, absolutely. A single NexaPay merchant account gives you access to all four countries β€” Zambia, Zimbabwe, Botswana, and Namibia. You use a single API key and simply specify the country code in each transaction request. Multi-country settlement is supported: you can receive ZMW, USD, BWP, and NAD settlements to separate wallets or accounts for each country. Your dashboard provides a unified view of transactions and analytics across all countries.
NexaPay NexaPay
Sign In Get Started
Now live across Zambia, Zimbabwe, Botswana & Namibia

Accept Mobile Money
Payments with One API

NexaPay gives developers a simple, powerful API to integrate mobile money payments into any website, mobile app, or platform. Payments infrastructure engineered for Southern Africa , powered by Elicate Technologies.

Start Integrating
payment.js
// Initialize NexaPay β€” Zambia
const payment = await NexaPay.charge({
  amount: 250.00,
  currency: "ZMW", // Zambian Kwacha
  phone: "+260 96XXXXXXX",
  network: "MTN", // MTN | Airtel | Zamtel
  country: "ZM"
});
// Initialize NexaPay β€” Zimbabwe
const payment = await NexaPay.charge({
  amount: 50.00,
  currency: "USD", // USD accepted in ZW
  phone: "+263 77XXXXXXX",
  network: "ECOCASH", // EcoCash | OneMoney | Telecash
  country: "ZW"
});
// Initialize NexaPay β€” Botswana
const payment = await NexaPay.charge({
  amount: 150.00,
  currency: "BWP", // Botswana Pula
  phone: "+267 71XXXXXXX",
  network: "ORANGE", // Orange | MyZaka | BTC Mobile
  country: "BW"
});
// Initialize NexaPay β€” Namibia
const payment = await NexaPay.charge({
  amount: 200.00,
  currency: "NAD", // Namibian Dollar
  phone: "+264 81XXXXXXX",
  network: "MTC", // MTC MobiPay | TN Mobile | Telecom NA
  country: "NA"
});
Mobile Money
All major networks across 4 countries
REST API
Easy integration
SDKs Ready
All major frameworks
Supported payment network integrationsNetwork names identify supported connections and do not imply endorsement or formal partnership.
MTNMTN Mobile Money
AIRAirtel Money
ZAMZamtel
ECOEcoCash
ONEOneMoney
TELTelecash
ORGOrange Money
MZKMyZaka
BTCBTC Mobile
MTCMTC MobiPay
TNTN Mobile
TNATelecom Namibia
Security controls for every paymentProduct controls shown here are not external certifications. See the security page for implementation details.
Webhook controls
Audit-ready records
Access controls
API key management
Provider reconciliation
Clear reporting history

Empowering Businesses With Data-Driven Strategy & Performance-Focused Growth Solutions.

Trusted by merchants across Southern Africa to power their payment operations.

Let's Work Together
Live
Merchant reporting
Audit
Transaction records
4
Markets supported
Clear
Reporting definitions

Everything You Need to Accept Payments

From API integration to payment links, NexaPay provides all the tools to accept mobile money payments across Southern Africa.

Instant Payments

Process mobile money payments in real-time via MTN, Airtel, Zamtel, EcoCash, OneMoney, and more across all four countries.

API Key Management

Generate, rotate, and manage your API keys securely from your merchant dashboard with full audit trails.

Payment Links

Create shareable payment links for quick collections without any code integration required. Perfect for non-technical merchants.

Verified Analytics

Monitor transactions, revenue, and performance in your merchant dashboard with clear periods, timestamps, and reporting definitions.

Enterprise Security

Bank-grade encryption and security protocols to protect every transaction and API call across all supported countries.

Developer Friendly

Comprehensive documentation, SDKs for popular frameworks, webhook notifications, and responsive developer support.

Multi-Currency

Accept ZMW, USD (Zimbabwe), BWP, and NAD seamlessly β€” with automatic currency routing based on country code.

Instant Webhooks

Real-time webhook delivery with automatic retry logic and API key rotation to keep your systems always in sync.

SDKs & Libraries

Official SDKs for JavaScript, Python, PHP, and more. Drop-in libraries with full TypeScript support and clear documentation.

KYC & Compliance

Built-in identity verification for all four countries β€” NRC, national ID, and passport document checks with selfie liveness detection.

Refunds & Reversals

One-click full or partial refunds with automated reconciliation. Reversal requests are processed within one business day.

Sandbox Environment

Full-featured sandbox that mirrors production exactly. Test every payment scenario, edge case, and webhook event before going live.

Our Products & Services

A full suite of payment tools built for developers, merchants, and businesses across Southern Africa.

Digital Wallet
Store, send, and receive money in your NexaPay wallet across ZMW, USD, BWP, and NAD β€” all from one unified balance.
Wallet
Mobile Money Payments
Accept payments from MTN, Airtel, Zamtel, EcoCash, Orange Money, MTC, and 6+ more networks with a single API call.
Collections
Payment Links
Generate a shareable payment link in seconds. No coding needed β€” paste it in WhatsApp, email, or a social post and start collecting.
No-code
Money Transfers
Send money instantly to any mobile money wallet in Zambia, Zimbabwe, Botswana, or Namibia. Settle same-day or next business day.
Disbursements
Merchant Dashboard
A real-time control panel for all your transactions, settlements, refunds, API keys, and analytics β€” across every country in one view.
Analytics
Virtual Cards
Issue virtual prepaid cards for your team or customers β€” fund them from your wallet and use them for secure online purchases worldwide.
Coming Soon
Bulk Payments
Disburse salaries, commissions, or refunds to hundreds of mobile money recipients in a single API call or CSV upload from your dashboard.
Enterprise
API & Webhooks
RESTful API with full SDKs for JavaScript, Python, and PHP. Real-time webhook delivery with retry logic, sandbox testing, and OpenAPI docs.
Developer
Why Us
Why Choose Us

Building Digital Payment Solutions for African Businesses

Our team brings deep industry expertise and delivers innovative, result-driven strategies tailored to your business goals. We work closely with organisations to solve complex challenges, optimise performance, and accelerate growth across Zambia, Zimbabwe, Botswana, and Namibia.

  • Dedicated Team of Industry Specialists
  • Data-Driven Insights & Smart Planning
  • Performance-Focused Growth Solutions
  • Reliable service monitoring
  • Support when you need it
Get Started Today
2s
Avg. Payment Speed
100%
Secure Transactions
4
Countries Supported
12+
Networks Integrated

How It Works

Get started accepting payments in four simple steps.

Step 01

Create an Account

Sign up as a merchant using your email or Google account. Provide your business details for verification across Zambia, Zimbabwe, Botswana, or Namibia.

Step 02

Get Verified

Our team reviews and verifies your merchant account. Once approved, you can generate your API keys and configure your preferred payment networks.

Step 03

Integrate the API

Use our comprehensive documentation to integrate the payment API into your website, mobile app, or platform. Our SDKs make it fast and straightforward.

Step 04

Start Collecting

Accept mobile money payments in ZMW, USD, BWP, and NAD from MTN, Airtel, EcoCash, Orange Money, MTC, and more β€” instantly, from day one.

Gateway Infrastructure

Enterprise-Grade Payment Infrastructure

Our gateway connects merchants directly to every major mobile money network across Southern Africa through a single, unified integration layer.

NexaPay multi-network gateway connecting MTN, Airtel, EcoCash, Orange Money, Zamtel and MTC across four countries
Multi-Network Connectivity
A single API integration connects your platform to MTN, Airtel, EcoCash, Orange Money, Zamtel, MTC and more β€” across four countries simultaneously, with automatic network routing.
NexaPay real-time operations dashboard showing live transaction flows and T+1 settlement pipeline
Real-Time Operations Dashboard
Monitor live transaction flows, T+1 settlement status, network success rates, and revenue analytics across all four countries from a single merchant control panel.

Simple, Transparent Pricing

Flat-rate per transaction. No monthly fees, no setup costs. Volume discounts applied automatically. Covers all four countries.

Need Custom Enterprise Pricing?

If your business processes 10,000+ transactions per month or requires multi-country bulk pricing, our enterprise team will create a custom plan tailored to your volume and requirements.

Contact Enterprise Sales

Rates reflect NexaPay's merchant pricing effective August 2026. VAT and applicable government levies are stated separately per country. Volume discount tiers reset at the start of each calendar month. Enterprise rates are negotiated individually β€” contact our sales team for a custom quote.

Analytics you can verify

Live transaction reporting belongs in the merchant dashboard, where every figure has a reporting period, update time, and source.

Your numbers should be traceable

Verified transaction insights are available inside the merchant dashboard. We show the period covered, the last successful update, and the source behind every report instead of publishing unverified totals.

Live reporting available after sign-in
Transaction volumeTotals by country, currency, network, and selected reporting period.
Success and failureSuccessful, failed, pending, and reversed payments are separated clearly.
Processing performanceTiming is calculated from recorded payment events, not a decorative estimate.
Settlement trackingReconciliation status helps match internal records with provider records.
View merchant analytics No public sample figures. Your dashboard is the source of truth.
Smart Collections

Collect Payments Effortlessly

NexaPay's collection interface lets your customers pay via mobile money, bank transfer, or card β€” all from one seamless checkout experience.

NexaPay Collections β€” Payment Method Screen

Ready to Transform Your Business?

Join businesses using NexaPay for their mobile money payment needs across Southern Africa.

Start collecting payments

Reach us directly.

Send us a message and we will get back to you shortly. It will be our pleasure to answer any questions you may have.

Sent successfully!

Thanks for reaching out. We'll get back to you as soon as possible.