01Introduction

SedeCore Technologies (“SedeCore”, “we”, “us” or “our”) is committed to protecting your privacy. This Privacy Policy explains what personal information we collect, how we use and protect it, and the rights available to you when you use our website and the SedeCore platform (the “Service”).

We handle personal information in accordance with the Nigeria Data Protection Act 2023 and the Nigeria Data Protection Regulation, and we align with international data protection standards where they apply to our customers and users.

02Who we are

SedeCore is the operator of the SedeCore inventory management platform. For the purposes of this policy, we act as a data controller for information we collect about our account holders and website visitors, and as a data processor for the Customer Data you upload to the Service on behalf of your organization.

You can contact us at 35, Unity Avenue, Lagos, Nigeria, by phone at +234 704 612 0165, or by email at hello@sedecore.com.

03Scope of this policy

This policy applies to personal information processed through our website (sedecore.com), the application (app.sedecore.com), and related communications. It does not apply to third-party websites or services that we link to but do not control.

04Information we collect

Information you provide

Information we collect automatically

05How we use information

We use personal information to:

We do not sell your personal information, and we do not use Customer Data for advertising.

Where required by law, we rely on one or more of the following legal bases to process personal information: performance of our contract with you; your consent; our legitimate interests in operating and improving the Service (balanced against your rights); and compliance with legal obligations. Where we rely on consent, you may withdraw it at any time.

07Healthcare & recipient data

The Service allows healthcare organizations to record product recipient contact information to enable dual-alert expiry notifications. When you upload this data, your organization is the controller of that information and SedeCore acts as a processor on your instructions.

Our infrastructure is built to be HIPAA-ready, with encryption, access controls, and audit logging. Your organization remains responsible for obtaining any consents and providing any notices required to collect and process recipient or patient information under applicable law.

08Cookies & tracking

We use cookies and similar technologies to keep you signed in, remember preferences, secure the Service, and understand how it is used so we can improve it. You can control cookies through your browser settings; disabling some cookies may affect how the Service functions.

09How we share information

We share personal information only in the following circumstances:

10International transfers

SedeCore serves customers in multiple countries, and personal information may be processed in locations outside your country of residence. Where we transfer data internationally, we take steps to ensure an appropriate level of protection through recognised safeguards such as standard contractual clauses or equivalent mechanisms.

11Data retention

We retain personal information for as long as your account is active and as needed to provide the Service. If you end your free trial without subscribing, or you cancel, we retain your Customer Data for 30 days so you can export or reactivate it, after which it may be deleted.

We may retain certain information for longer where necessary to comply with legal obligations, resolve disputes, or enforce our agreements.

12How we protect data

We use administrative, technical, and organisational measures designed to protect personal information, including:

No system is completely secure, but we work continuously to safeguard the information in our care and will notify affected parties and regulators of a personal data breach where required by law.

13Your privacy rights

Subject to applicable law, you have the right to:

To exercise these rights, contact us at hello@sedecore.com. We will respond within the timeframe required by applicable law. If your request concerns Customer Data uploaded by an organization, we may direct you to that organization as the controller.

14Children’s privacy

The Service is intended for use by organizations and their authorised staff, and is not directed to children. We do not knowingly collect personal information directly from children. If you believe a child’s information has been provided to us in error, please contact us so we can address it.

15Changes to this policy

We may update this Privacy Policy from time to time. When we make material changes, we will update the “last updated” date and, where appropriate, notify you by email or through the Service. We encourage you to review this policy periodically.

16Contact & complaints

If you have questions or concerns about this policy or how we handle your information, contact us using the details below. You also have the right to lodge a complaint with the Nigeria Data Protection Commission or your local data protection authority.

Questions?

Reach our team about any privacy question or to exercise your data rights.

Address35, Unity Avenue, Lagos, Nigeria