BRAINYDAPS TECHNOLOGY LIMITED

PRIVACY POLICY

 

Effective Date: June 2026

 

1. Introduction

Brainydaps Technology Limited (“Brainydaps”, “Company”, “we”, “our”, or “us”) is committed to protecting the privacy, confidentiality, and security of personal information entrusted to us by our customers, users, employees, business partners, vendors, and other stakeholders.

This Privacy Policy explains how we collect, use, disclose, store, transfer, protect, and otherwise process personal information through our websites, mobile applications, software solutions, digital platforms, products, services, and business operations.

This Policy is guided by internationally recognized privacy standards and applicable laws, including but not limited to the European Union General Data Protection Regulation (GDPR), the Nigeria Data Protection Act (NDPA), and other relevant data protection and privacy regulations.

By accessing or using our services, you acknowledge that you have read, understood, and agreed to the practices described in this Privacy Policy.

 

2. Scope of this Policy

This Privacy Policy applies to all personal information processed by Brainydaps Technology Limited, including information collected through:

                  •               Websites and online platforms;

                  •               Mobile applications;

                  •               Software products and technology solutions;

                  •               Customer support services;

                  •               Recruitment and employment processes;

                  •               Marketing and promotional activities;

                  •               Business relationships and partnerships;

                  •               Social media channels; and

                  •               Any other interaction with Brainydaps Technology Limited.

 

3. Definitions

Personal Data

Any information relating to an identified or identifiable natural person.

Processing

Any operation performed on personal data, including collection, recording, organization, storage, use, disclosure, transfer, deletion, or destruction.

Data Subject

An individual whose personal data is being processed.

Consent

Any freely given, specific, informed, and unambiguous indication of a data subject’s wishes by which he or she agrees to the processing of personal data.

Controller

The entity that determines the purposes and means of processing personal data.

Processor

A person or organization that processes personal data on behalf of a controller.                       

 

4. Information We Collect

We may collect the following categories of information:

A. Personal Identification Information

                  •               Full name

                  •               Date of birth

                  •               Gender

                  •               Nationality

                  •               Photograph

                  •               Government-issued identification numbers

B. Contact Information

                  •               Residential address

                  •               Business address

                  •               Email address

                  •               Telephone number

C. Financial Information

Where necessary, we may collect:

                  •               Bank account details

                  •               Payment card information

                  •               Transaction records

                  •               Billing information

D. Technical Information

                  •               IP address

                  •               Browser type

                  •               Device information

                  •               Operating system

                  •               Internet service provider information

                  •               Login data

                  •               Location data

E. Usage Information

Information regarding how users interact with our services, including:

                  •               Pages visited

                  •               Features used

                  •               Time spent on services

                  •               Clickstream data

F. Employment and Recruitment Information

Where applicable:

                  •               Curriculum vitae (CV)

                  •               Employment history

                  •               Educational records

                  •               Professional qualifications

                  •               References

G. Communication Information

Records of communications with Brainydaps, including:

                  •               Emails

                  •               Customer support interactions

                  •               Chat messages

                  •               Feedback and complaints

 

5. Sources of Information

We collect information from various sources, including:

Directly from Individuals

Information voluntarily provided by users through registration forms, applications, contracts, surveys, customer support interactions, and communications.

Automatically

Information collected through cookies, analytics tools, server logs, and similar technologies.

Third Parties

Information obtained from:

                  •               Business partners

                  •               Service providers

                  •               Payment processors

                  •               Regulatory agencies

                  •               Publicly available databases

                  •               Professional networking platforms

 

6. Legal Basis for Processing

Where applicable, Brainydaps processes personal data on one or more of the following lawful grounds:

Consent

Where an individual has expressly consented to processing. Consent is collected through explicit agreement at the time of data collection, including online forms and application submissions.

Contractual Necessity

Where processing is necessary to perform a contract or take steps before entering into a contract.

Legal Obligation

Where processing is required to comply with applicable laws and regulations.

Legitimate Interests

Where processing is necessary for Brainydaps’ legitimate business interests and does not override the rights and freedoms of data subjects.

Vital Interests

Where processing is necessary to protect an individual’s life or safety.

Public Interest

Where processing is necessary for reasons of substantial public interest under applicable law.

 

7. Purposes for Processing Personal Data

Brainydaps may process personal data for the following purposes:

                  •               Providing products and services;

                  •               Managing customer relationships;

                  •               Identity verification;

                  •               User authentication and account management;

                  •               Processing transactions;

                  •               Customer support;

                  •               Fraud prevention and detection;

                  •               Risk management;

                  •               Cybersecurity and system protection;

                  •               Service improvement and innovation;

                  •               Market research and analytics;

                  •               Recruitment and employment administration;

                  •               Compliance with legal and regulatory requirements;

                  •               Protection of legal rights and interests;

                  •               Corporate governance and internal administration.

 

8. Cookies and Similar Technologies

Brainydaps uses cookies, web beacons, pixels, and similar technologies to:

                  •               Improve website functionality;

                  •               Enhance user experience;

                  •               Analyze website traffic;

                  •               Remember user preferences;

                  •               Maintain security;

                  •               Deliver relevant content and advertisements.

Users may manage cookie preferences through browser settings; however, disabling certain cookies may affect website functionality.

 

9. Disclosure of Personal Information

Brainydaps may disclose personal information to:

Service Providers

Third-party vendors providing:

                  •               Cloud hosting services

                  •               IT support

                  •               Data analytics

                  •               Payment processing

                  •               Customer support

Business Partners

Partners involved in delivering products and services.

Professional Advisers

Including:

                  •               Lawyers

                  •               Auditors

                  •               Accountants

                  •               Consultants

Regulatory Authorities

Government agencies, regulators, courts, and law enforcement agencies were legally required.

Corporate Transactions

In connection with:

                  •               Mergers

                  •               Acquisitions

                  •               Reorganizations

                  •               Asset sales

                  •               Corporate restructuring

 

10. International Data Transfers

Personal information may be transferred to and processed in countries outside the jurisdiction where it was originally collected.

Where such transfers occur, Brainydaps shall implement appropriate safeguards including:

                  •               Standard contractual clauses;

                  •               Data processing agreements;

                  •               Adequacy decisions;

                  •               Binding corporate rules; and

                  •               Other legally recognized transfer mechanisms.

 

11. Data Security

Brainydaps maintains appropriate technical, organizational, administrative, and physical security measures designed to protect personal information against:

                  •               Unauthorized access;

                  •               Disclosure;

                  •               Alteration;

                  •               Destruction;

                  •               Loss; and

                  •               Misuse.

Security measures may include:

                  •               Encryption;

                  •               Access controls;

                  •               Multi-factor authentication;

                  •               Secure network architecture;

                  •               Security monitoring;

                  •               Staff training programs.

 

12. Data Retention

Personal information shall be retained only for as long as necessary to:

                  •               Fulfil the purposes outlined in this Policy;

                  •               Comply with legal obligations;

                  •               Resolve disputes;

                  •               Enforce contractual rights;

                  •               Meet regulatory requirements.

Upon expiration of the retention period, information will be securely deleted, anonymized, or destroyed.

 

13. Rights of Data Subjects

Subject to applicable law, individuals may have the right to:

Right of Access

Request access to personal information held about them.

Right to Rectification

Request correction of inaccurate or incomplete information.

Right to Erasure

Request deletion of personal information in appropriate circumstances.

Right to Restrict Processing

Request limitation of certain processing activities.

Right to Object

Object to specific forms of processing.

Right to Withdraw Consent

Withdraw previously provided consent at any time.

Right to Lodge Complaints

Submit complaints to the relevant data protection authority.

 

14. Children’s Privacy

Brainydaps does not knowingly collect personal information from individuals under the age of 18 except where legally permitted and appropriate safeguards have been implemented.

Where consent is required for minors, parental or guardian authorization shall be obtained in accordance with applicable law.

 

15. Marketing Communications

Brainydaps may send marketing and promotional communications.

Recipients may opt out at any time by:

                  •               Clicking the unsubscribe link;

                  •               Updating communication preferences; or

                  •               Contacting us directly.

 

16. Automated Decision-Making and Profiling

Where automated decision-making or profiling is used, Brainydaps shall implement safeguards to protect the rights of affected individuals and provide information as required under applicable law.

 

17. Third-Party Websites and Services

Our services may contain links to third-party websites, platforms, and applications.

Brainydaps does not control and is not responsible for the privacy practices of such third parties. Users are encouraged to review the privacy policies of any third-party services they access.

 

18. Data Breach Management

Brainydaps maintains procedures for identifying, investigating, managing, documenting, and reporting personal data breaches.

Where required by law, affected individuals and relevant regulatory authorities shall be notified within applicable timelines.

 

19. Compliance and Regulatory Cooperation

Brainydaps reserves the right to disclose personal information where necessary to:

                  •               Comply with applicable laws;

                  •               Respond to legal processes;

                  •               Enforce contractual rights;

                  •               Prevent fraud;

                  •               Protect public safety;

                  •               Protect the rights, property, and security of Brainydaps and others.

 

20. Changes to this Privacy Policy

Brainydaps may amend this Privacy Policy periodically to reflect:

                  •               Changes in legal requirements;

                  •               Technological developments;

                  •               Operational changes; or

                  •               Business needs.

Updated versions shall be published through appropriate channels and become effective upon publication unless otherwise stated.

 

21. Contact Information

For questions, concerns, or requests relating to this Privacy Policy or the processing of personal information, please contact:

Brainydaps Technology Limited

Address:  7B, Royalty Road, Ikota Villa, Ikota, Lekki, Lagos, Nigeria

Email: legal@brainydaps.com

Telephone: +2347042975478

Last Updated: June 2026

Brainydaps Technology Limited reserves all rights relating to this Privacy Policy and its implementation in accordance with applicable laws and regulations.