Privacy Policy
Disclaimer: This is a template policy provided for review and testing. It is not final and is subject to review by qualified legal counsel. The site owner can update this content at any time before or after launch.
Last Updated: June 2025
1. Introduction
MedKit by Betty (“we”, “us”, or “our”) is committed to protecting your personal information. This Privacy Policy explains what data we collect, how we use it, and your rights in relation to it. By using our Site, you agree to the collection and use of information as described in this policy.
2. Information We Collect
We may collect the following categories of personal information:
- Account details: name, email address, password (stored securely), and user role.
- Contact information: phone number and billing or delivery address.
- Order and delivery details: items purchased, quantities, prices, payment status, and shipping information.
- Prescription uploads: documents you voluntarily submit when ordering prescription-only products. These are handled with strict confidentiality.
- Usage data: pages visited, browser type, device information, and IP address, collected automatically.
3. How We Use Your Information
We use the information we collect to:
- Process and fulfil your orders and appointments.
- Create and manage your account.
- Communicate with you about orders, updates, and promotions (where you have opted in).
- Verify prescriptions where required by law.
- Improve our Site, products, and services.
- Comply with legal and regulatory obligations.
4. Cookies and Tracking
We use cookies and similar tracking technologies to enhance your browsing experience, remember your preferences, and analyse Site traffic. Essential cookies are necessary for the Site to function; analytics and preference cookies help us improve the experience. You may disable cookies in your browser settings, though some features may not work as intended.
5. Third-Party Services
We rely on the following third-party service providers who may process your data on our behalf:
- Paystack and Flutterwave — payment processors that handle your card and payment details. We do not store your full card information on our servers. Please review their respective privacy policies for details on how they handle payment data.
- Supabase — our hosting and database provider. Your account, order, and prescription data is stored securely on Supabase infrastructure. Supabase processes this data on our behalf in accordance with applicable data protection standards.
We take care to work only with providers who maintain appropriate data protection standards. We do not sell your personal data to third parties.
6. Data Retention
We retain your personal information for as long as necessary to provide our services, comply with legal obligations, resolve disputes, and enforce our agreements. Account data is retained for as long as your account remains active. Order records may be retained for a minimum of five years for accounting and legal purposes. Prescription documents are retained only for the period required by applicable regulations.
7. Data Security
We implement appropriate technical and organisational measures to protect your personal information against unauthorised access, alteration, disclosure, or destruction. These include encrypted data transmission (HTTPS), secure database access controls, and limited staff access on a need-to-know basis. However, no method of transmission over the internet is 100% secure, and we cannot guarantee absolute security.
8. Your Rights
Depending on applicable law, you may have the right to:
- Access the personal information we hold about you.
- Request correction of inaccurate or incomplete data.
- Request deletion of your personal data where we have no lawful basis to retain it.
- Object to or restrict certain processing of your data.
- Withdraw consent where processing is based on consent.
To exercise any of these rights, please contact us at the address below.
9. Children’s Privacy
Our Site is not directed to children under the age of 18. We do not knowingly collect personal information from children. If you believe a child has provided us with personal data, please contact us and we will take steps to delete that information promptly.
10. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. We will post the revised policy on this page with an updated “Last Updated” date. Your continued use of the Site after any changes constitutes your acceptance of the updated policy.
11. Contact Information
If you have any questions, concerns, or requests regarding this Privacy Policy, please contact us at:
MedKit by Betty
Email: medkitbybetty@gmail.com