Effective date: October 2026 ยท Version 1.0
This SLA covers the availability, performance, support and security commitments for Yona's e-invoicing platform: creating and managing invoices, submitting them to the Nigeria Revenue Service (NRS), webhook event delivery, billing, and the sandbox environment for testing.
This SLA applies to the production environment only. Sandbox environments are provided on a best-effort basis.
| Metric | Target |
|---|---|
| Monthly uptime | 99.9% |
| Maximum scheduled downtime per month | 45 minutes |
| Scheduled maintenance window | Sundays 02:00โ04:00 WAT (with 48-hour advance notice) |
Uptime is measured as the percentage of minutes in a calendar month during which the API Gateway returns successful health check responses, excluding scheduled maintenance.
| Metric | Target |
|---|---|
| P50 (median) response time | < 200ms |
| P95 response time | < 500ms |
| P99 response time | < 1,500ms |
Measured at Yona's API for standard operations (creating, reading and listing invoices). Excludes time spent inside the NRS systems, which Yona does not control.
| Metric | Target |
|---|---|
| First delivery attempt | Within 30 seconds of event |
| Retry policy | Exponential backoff, up to 5 retries over 24 hours |
| Delivery success rate (recipient reachable) | > 99% |
| Metric | Target |
|---|---|
| Invoice creation to first transmission attempt to NRS | < 10 seconds (NRS processing time excluded) |
| Channel | Availability |
|---|---|
| Email support (support@elyonar.ng) | 24 hours a day, 7 days a week |
| Critical incidents (P1), by email marked URGENT | 24/7, acknowledged within the P1 response time |
| API status page | 24/7 (automated) |
| Priority | Definition | Response Time | Resolution Target |
|---|---|---|---|
| P1 โ Critical | Service completely unavailable; all customers affected; data loss risk | 30 minutes | 4 hours |
| P2 โ High | Major feature degraded; significant subset of customers affected | 2 hours | 8 hours |
| P3 โ Medium | Non-critical feature impaired; workaround available | 8 business hours | 3 business days |
| P4 โ Low | Minor issue, cosmetic, or feature request | 2 business days | Best effort |
Response time = time from incident report to acknowledgment with assigned owner. Resolution target = time from acknowledgment to service restoration or workaround deployment. Root cause analysis for P1/P2 incidents delivered within 5 business days.
| Escalation Level | Timeframe | Contact |
|---|---|---|
| Level 1 โ Support Engineer | Immediate | Support channel |
| Level 2 โ Engineering Lead | After 2 hours (P1) / 4 hours (P2) | Internal escalation |
| Level 3 โ CTO / Management | After 4 hours (P1) / 8 hours (P2) | Direct communication |
| Layer | Standard |
|---|---|
| Data in transit | Encrypted on every connection, with current TLS versions only |
| Data at rest | Encrypted storage for databases, documents and backups |
| Passwords and secrets | Passwords are stored as one-way hashes; API secrets are shown once at issuance and never stored in a recoverable form |
| Electronic invoices | Signed and transmitted as the NRS specification requires |
| Webhook signatures | Every delivery is signed with a secret unique to your endpoint, so you can verify it came from Yona |
| Standard | Status |
|---|---|
| ISO/IEC 27001 | Certified |
| Nigeria Data Protection Act & NDPR | Compliant |
| Metric | Target |
|---|---|
| Recovery Point Objective (RPO) | < 1 hour, through point-in-time database recovery |
| Recovery Time Objective (RTO) | < 4 hours |
| Database backups | Automated daily backups, retained for 30 days |
| Infrastructure | Deployed across multiple availability zones for high availability |
| Message durability | Durable queues; no event is lost on a service restart |
This SLA does not apply to:
Elyonar LTD
Support: support@elyonar.ng
Website: useyona.com