MYBRAVEPAY – TERMS AND CONDITIONS AGREEMENT
Last Updated: September 9, 2026

1. ACCEPTANCE OF TERMS
By registering, joining, paying, or using MyBravePay services, you agree to these Terms, Conditions and Privacy Policy. If you do not agree, do not use the platform.

2. ELIGIBILITY
You must be 18+ years old, provide accurate name, email, phone (11-digit Nigerian number), and state. One account per person. Duplicate accounts may be banned and earnings forfeited.

3. MEMBERSHIP & JOINING FEE
Joining requires payment of Form Amount (currently N100 as displayed in dashboard). Upon successful verification via Paystack webhook/callback/secure verify, your Main Wallet will be credited N1000 (admin set) and Reserve Wallet N1000 (admin set). These amounts are set by admin and may change. Form Amount is non-refundable after credit.

4. WALLET SYSTEM
a) Main Wallet: Credited with admin set Main Amount. Used for VTU, data, airtime, and user-to-user transfers. Unique 10-digit account number assigned (derived from phone or user ID). INSERT ON DUPLICATE KEY UPDATE ensures no double credit.
b) Reserve Wallet: Credited with admin set Reserve Amount.
c) Both wallets use atomic transactions. BWF_, BW_, TOPUP, WALLET_FUNDING references are wallet top-ups and are NOT counted as MLM joining — they do not generate referral earnings.

5. MLM REFERRAL & EARNINGS SYSTEM
a) You receive a unique referral link ?ref=BRAVE{ID} and code BRAVE{ID}.
b) Earnings levels are set by admin (Default L1=N500, L2=200, L3=100, L4=50, L5=20, L6=10, L7=5, L8=3). Admin can add/remove levels (e.g., L9=2). Levels can be enabled/disabled.
c) Distribution 100% Correct Rule: Both referrer and referred must have real paid status (brave_reserve_payments.status='paid' and reference NOT LIKE BWF_/BW_/%topup%). Unique key referrer_id+referred_id+level+payment_reference prevents double earning. FOR UPDATE locks prevent race conditions.
d) If referrer has not yet paid, earning status = waiting_referrer_paid and auto-unblocks when referrer pays (via brave_auto_unblock_downlines).
e) Earnings are subject to limits: Total, Daily, Weekly, Monthly, Morning (00:00-11:59) as set by admin. If limit reached, system caps (not fully blocks) — you receive remaining allowed amount. Example: Daily limit N5000, you have N4800 today, next N500 earning will be capped to N200.

6. CHAIN COMPRESSION – NO BREAK ON DELETE (YOUR KEY FEATURE)
Example: A invites B, B invites C, C invites D, D invites E, E invites F. If D is deleted or banned, the system automatically compresses the chain: E is re-parented to C (D’s referrer), F remains under E. New chain: A->B->C->E->F. Therefore A, B, C continue to earn from E and F even after D is deleted. This is achieved via brave_get_next_valid_referrer() recursive function that skips deleted users, brave_get_upline_chain_secure() that loops max*3 with deleted skip, and delete_user hook that re-parents direct downlines and logs in brave_chain_compression_log. Admin can view log and fix old broken chains via Dashboard button FIX NOW - COMPRESS ALL BROKEN CHAINS.

7. ROLE SWITCH – AUTO UPGRADE
When your total earnings reach admin set amount (e.g., N500), your WordPress role auto-switches to target role (e.g., um_1st-upgrade-user) via brave_enforce_single_role_secure() which enforces SINGLE role only (removes other roles). Tiered roles supported: 500:um_1st-upgrade-user\n20000:um_2nd-tier. Switch triggers hourly via cron brave_hourly_role_switch_secure and on login. You continue earning after switch if admin enables continue_earning.

8. BONUS TO MAIN TRANSFER – MIN/MAX
You can transfer earnings to Main Wallet. Admin sets Min Transfer (e.g., N100) and Max Transfer (e.g., N10000) and optional Daily Transfer Limit. System checks insufficient bonus, daily limit, and atomic transaction. History saved in brave_wallet_history and brave_transfer_log.

9. USER TO USER TRANSFER
Sender enters receiver ID, email, username, BRAVE code, phone or 10-digit account number. Sender must have sufficient Main balance. System uses transaction + INSERT ON DUPLICATE KEY UPDATE + fallback to guarantee receiver is credited (fixes old bug where sender deducted but receiver not credited). Reference TRF_ generated. Fee may apply as set by admin.

10. PAYMENTS – SECURE – NO MONEY LOST ON PHONE/NETWORK TRIP
We use Paystack. After you pay, even if your phone dies, network trips, or you close browser before returning, your payment is still secured:
a) Webhook: Paystack sends charge.success event to .../paystack-live-webhook-url/. We verify HMAC sha512 signature with secret, verify amount via Paystack API /transaction/verify/{ref}, check BWF_/BW_ topup block, and credit Main+Reserve if not already credited. Rate limit 20/min per IP, transient lock brave_pay_lock_{ref} 300s prevents double credit.
b) Callback: User returns to .../paystack-live-callback-url/?reference=XXX and we verify again.
c) AJAX Verify: Frontend verify via brave_main_verify.
d) All verified payments logged in brave_paystack_secure_log. If debited but not credited, webhook will auto-credit within minutes. Contact support with reference.

11. REDIRECT AFTER PAYMENT
After successful payment, you are redirected to admin set link (e.g., https://mybravepay.com/gdesfasdadhrddg/). Admin can change this in Dashboard > after_payment_redirect / vtu_redirect.

12. PROHIBITED
No hacking, no multiple accounts to earn self-referral, no fake payments, no abuse of chain compression, no chargeback fraud. Violation = account suspension, earnings forfeited, reserve/main frozen.

13. TERMINATION
We may delete/suspend users who violate terms. Upon deletion, chain compression protects upline/downline earnings as described in Section 6.

14. DISCLAIMER & LIABILITY
MyBravePay is a community contribution platform with wallet services. Earnings depend on referrals and admin set levels/limits. No guaranteed income. We are not a bank. Maximum liability limited to your last joining fee.

15. CHANGES
We may update Terms. Continued use = acceptance. Version v13.3.5 FINAL.

PAGE 2: https://mybravepay.com/privacy-policy/

MYBRAVEPAY PRIVACY POLICY
Last Updated: September 9, 2026 – Complies with Nigeria NDPA 2023

1. DATA WE COLLECT

  • Registration: display name, email, phone (normalized to 11-digit), network (MTN/GLO etc), state, referral code, IP, user agent.
  • Payment: Paystack reference, amount, email, metadata (user_id, network, ref_code), phone, but NOT your card PIN/CVV — processed by Paystack.
  • Wallet/Earnings: user_id, balance, reserve_balance, earnings_balance, total_earnings, account_number (10-digit), referral chain (brave_referrer_id), earnings history, transfer logs, audit logs, chain compression logs.
  • Cookies: brave_referrer, brave_referrer_code (30 days) to track who invited you.

2. HOW WE USE DATA
To credit Main+Reserve admin amounts, distribute MLM earnings 100% correctly, compress chain when user deleted (A,B,C keep earning from E,F if D deleted), enforce daily/weekly/morning limits, auto role switch, secure payments via webhook/callback, redirect you, provide Top Earners stats, prevent BWF_/BW_/topup abuse, audit.

3. LEGAL BASIS
Contract (you joining and paying), Legitimate Interest (prevent fraud, secure chain), Consent (cookies, terms checkbox), Legal Obligation (accounting).

4. SHARING

  • Paystack (payment verification only)
  • No selling data. We share only with service providers under NDA, or legal request.
  • Internal: brave_chain_compression_log, brave_paystack_secure_log, brave_transfer_log are internal.

5. RETENTION
Payments: 6 years for accounting. Earnings/referrals: while account active + 2 years after deletion for chain compression audit (to preserve upline earnings). Cookies 30 days. Transient locks 300s.

6. YOUR RIGHTS (NDPA)
Access, correction, deletion (subject to chain compression — if you are deleted, your downlines are re-parented to your referrer to preserve chain, but your personal data is anonymized), objection to limits, withdraw consent, lodge complaint with NDPC.
Request via support: privacy@mybravepay.com with user ID and phone.

7. SECURITY

  • All inputs sanitized sanitize_text_field, wp_unslash, phone normalized, esc_like in search, wp_create_nonce for admin forms.
  • Transactions START TRANSACTION ... FOR UPDATE ... COMMIT
  • Webhook HMAC sha512 verification
  • UNIQUE KEY user_id prevents double wallet
  • .htaccess denies backup folder listing
  • Audit log brave_mlm_audit_log

8. COOKIES
Essential: brave_referrer (who invited you), wordpress_*. You can disable but referral may not track. No marketing cookies without consent.

9. CHILDREN
18+ only. We do not knowingly collect under-18.

10. CONTACT
Data Controller: MyBravePay, Port Harcourt, Rivers State, Nigeria. Email: support@mybravepay.com, Phone: via site.

11. AGREEMENT
By ticking I agree to Terms, Conditions and Privacy Policy and clicking Pay, you agree to both documents. Version v13.3.5.