Role based access control for finance teams: a practical setup
Role based access control for finance teams: design roles around tasks, separate duties on refunds and bank details, and review access regularly to limit risk.
6 min read
Blog category
POPIA, PCI DSS, access control and account security for businesses that handle payments.
Role based access control for finance teams: design roles around tasks, separate duties on refunds and bank details, and review access regularly to limit risk.
6 min read
How POPIA applies to payment data: what counts as personal information, security safeguards, operators, breach reporting and cross-border transfers for SA merchants.
7 min read
FICA for merchants in South Africa: why payment providers verify you, when you are an accountable institution, and the reporting duty every business has.
5 min read
How long to keep invoices and payment records in South Africa: the 5-year SARS rule, Companies Act 7 years, electronic records and POPIA limits.
5 min read
Authenticator app 2FA protects the finance and payment accounts your business runs on. How TOTP works, why it beats SMS codes, and how to roll it out to your team.
6 min read
PCI DSS for small merchants in South Africa: which SAQ applies to you, what changed for SAQ A in 2025, and simple steps to keep card data out of your business.
5 min read
VAT on digital services in South Africa: local SaaS rules, the R1 million threshold for foreign suppliers, the 2025 B2B change and invoicing tips.
5 min read
The South African VAT registration threshold rose to R2.3 million from 1 April 2026. What counts, when to register, voluntary registration and billing changes.
4 min read
Create your CentraPoint account, connect the gateways you already use, and start sending payment links and invoices.