Security

Security built into the business operating model.

eKash Business is designed around access controls, controlled workflows, auditability and responsible data handling.

Security foundations

Access controls

Organization-aware sessions and permission-driven navigation.

PCI-oriented isolation

Raw card authentication data is blocked from application payloads.

Operational governance

Security headers, CSRF support and audit-ready design.

Security is a shared operating responsibility

Technical controls need to work alongside clear processes. The platform experience is designed to support appropriate access, traceability and operational follow-up, while the deployed environment and business procedures remain essential.

Identity and access

Organization-aware authentication and permission-driven navigation help ensure users see and act only within their approved business context.

Sensitive operations

Approval-aware operational patterns help separate routine activity from actions that need additional review, context or evidence.

Application protection

The frontend is structured to support security headers, CSRF protections, safe handling of public data and secure session-aware user journeys.