Security

Controls for procurement, finance, and audit teams

Proqora is designed around organization-scoped access, human approval gates, explainable AI recommendations, and complete audit trails.

Protected access

JWT sessions, protected dashboard routes, invite flows, password reset, and organization-scoped API calls.

Role-based workflows

Employee, procurement, department head, finance, executive, and supplier roles are separated by responsibility.

Internal data boundary

The MVP recommendation engine is built around internal vendor data and organization records.

Audit records

Human actions, AI runs, workflow changes, notifications, payments, and exceptions write timeline events.

Human approval gates

AI cannot approve budgets, contracts, vendor selection, POs, or payments.

Production configuration

Secrets, API keys, webhooks, and deployment settings are handled outside the client build.

AI availability is explicit

Production does not silently return fake AI output when the processor is unavailable. The app can show a controlled unavailable state.

No silent fake output
Clear retry state
Audited AI calls

Payments are verified server-side

Paystack and Hubtel payment flows include backend verification and webhook updates so invoice state does not depend on a browser staying open.

Initialize
Verify
Webhook update

Talk to us about security

For enterprise rollout, we can discuss roles, deployment, approvals, data handling, and audit requirements.