Privacy Policy

Last updated: March 2026

1. Who We Are

Certico ("we", "us", "our") is a digital certificate generation platform operated by Diranx Solutions Limited. We are committed to protecting your privacy and handling your data in compliance with the General Data Protection Regulation (GDPR), the Nigeria Data Protection Regulation (NDPR), and other applicable data protection laws.

For questions about this policy, contact us at hi@certico.app.

2. Data We Collect

We collect the minimum data necessary to provide our services:

  • Account data: Email address (used for authentication and receipts).
  • Payment data: Processed securely by third-party payment providers. We do not store card details.
  • Certificate recipient data: Names and email addresses uploaded for certificate generation. This data is processed in-browser and is not stored on our servers after generation.
  • Usage data: Basic analytics to improve the platform (page views, feature usage).

3. How We Use Your Data

  • To generate and deliver your certificates.
  • To send certificates via email on your behalf.
  • To process payments and issue receipts.
  • To communicate service updates (only if you opt in).

4. Data Processing & Storage

Certificate generation happens entirely in your browser. Recipient names, titles, and other certificate data are processed client-side and are never uploaded to or stored on our servers.

When you choose to send certificates via email, recipient email addresses are used only for that single delivery and are not retained afterward.

5. Your Rights

Under GDPR and NDPR, you have the right to:

  • Access your personal data.
  • Rectify inaccurate data.
  • Erase your data ("right to be forgotten").
  • Restrict processing of your data.
  • Data portability — receive your data in a structured format.
  • Object to processing.
  • Withdraw consent at any time.

To exercise any of these rights, email hi@certico.app.

6. Third-Party Services

We use trusted third-party services for payment processing, email delivery, hosting, and database management. Each service is selected for its security standards and compliance with applicable data protection regulations. We do not share your personal data with third parties for marketing purposes.

7. Cookies

We use essential cookies only — for authentication sessions and platform functionality. We do not use advertising or tracking cookies.

8. Data Retention

  • Account data: Retained while your account is active. Deleted upon request.
  • Certificate data: Not retained — processed in-browser only.
  • Payment records: Retained as required by law (typically 7 years).

9. Security

We implement industry-standard security measures including encrypted connections (TLS), secure authentication (OTP-based), and minimal data collection practices.

10. Changes to This Policy

We may update this policy from time to time. Material changes will be communicated via email or a notice on the platform.

Contact

For any privacy-related questions or requests, contact us at hi@certico.app.