A payment facilitator, not a custodian.
UrielleX never holds an organization's money. It fixes every payment on the server, sends it through Paystack, and lets Paystack settle it straight to the group.
Non-custodial
Each organization has its own Paystack subaccount. Contributions settle there directly.
Secrets stay server-side
The Paystack secret key lives only on the API. Browsers and apps get a publishable key and a one-time access code.
Fixed before checkout
Amount, reference and destination subaccount are set on the server, so nobody can change what they owe or where it goes.
Signed webhooks
Every Paystack webhook is checked against its HMAC-SHA512 signature before anything is touched.
Nothing to withdraw, because nothing is held.
There is no request, approve and pay-out step. Paystack splits each payment at the source.
Member pays
Ama · Jul – Sep dues
GH₵156.05
Checkout
Paystack · MoMo or card
Verified
Settled to the group's own account
JHS 2 Gold · subaccount
GH₵150.00
Service charge
Paystack fee + platform fee
GH₵6.05
Exact to the pesewa. The group set GH₵150.00 and receives GH₵150.00.
Shown before paying. Members see the charge as its own line — or the group can choose to cover it instead.
Never pooled. Money moves from Paystack to the group — there is nothing for anyone to withdraw.
Verified payout accounts
Paystack resolves the account name before a payout account is saved, so a typo can't point a group's money elsewhere.
Idempotent settlement
The webhook and client verify both settle on the Paystack reference. The first wins; the second is a no-op.
A ledger that can't drift
Collected, settled and earned totals update in the same database transaction that marks a payment successful.
Fees snapshotted
The platform fee in force is recorded on the organization and on every payment, alongside each share.
No payout, no checkout
An organization without a connected payout account can't collect at all.
Subscriptions kept apart
Plan payments are UrielleX's own revenue and never touch an organization's subaccount.
Every organization, sealed from the next.
One person can belong to many groups, but what one group decides about them never leaks into another.
Server-side OTP
SMS codes are sent and verified by the API, and only to numbers already on a roster.
Short-lived tokens
Verifying a code returns a signed, 10-minute token that registration requires.
Per-org memberships
Role, block status and policy acceptance live on the membership, not the account.
Re-checked every request
The active organization in a session is never trusted alone — the membership is re-read each time.
Account
024 412 3456
JHS 2 Gold
AdminPolicy v3 ✓
St. Mary's PTA
MemberPolicy v1 ✓
Alumni 2014
Member · blocked—
Blocked in one group, untouched in the others.
Collect with confidence.
Your members pay through Paystack. Your group's account gets the money. That's the whole arrangement.