Privacy Needle (“we,” “our,” “us”) is committed to protecting the privacy and personal data of our users, clients, and partners in compliance with the Nigeria Data Protection Act (NDPA, 2023) and other applicable international standards such as GDPR.
This Privacy Policy explains how we collect, use, store, share, and protect your personal data when you interact with our website, services, and resources.
We may collect and process the following categories of personal data:
Identity Data: Name, email address, phone number, organization details.
Professional Data: Job role, training records, certification status.
Technical Data: IP address, browser type, device information, log files.
Usage Data: How you use our website, services, and resources.
Sensitive Data (if applicable): Only where necessary for compliance or audit engagements, handled under strict safeguards.
We process personal data based on the lawful grounds permitted by the NDPA, including:
Consent – when you voluntarily provide data (e.g., newsletter signup).
Contractual necessity – to deliver services you request (e.g., compliance audits, training).
Legal obligation – where processing is required by NDPA or other applicable laws.
Legitimate interest – for business operations such as improving services, security, and fraud prevention.
Your personal data may be used to:
Provide compliance, training, and consulting services.
Deliver updates, newsletters, and expert insights.
Conduct data protection audits and issue compliance certifications.
Improve our website functionality, services, and user experience.
Respond to inquiries, requests, or complaints.
Comply with regulatory and legal obligations.
We retain personal data only as long as necessary to fulfill the purpose for which it was collected, in line with NDPA requirements.
Retention Periods:
Client and training records: 5 years after last engagement.
Financial and compliance audit records: 6 years as required by law.
Website usage logs: 12 months for security and analytics.
Marketing data: until you withdraw consent or unsubscribe.
After the expiration of the retention period, data will be securely deleted, anonymized, or archived in compliance with NDPA.
We do not sell your data.
We may share your data with:
Regulators (e.g., NDPC) where required by law.
Third-party service providers (IT, cloud hosting, training platforms) under strict confidentiality agreements.
International partners only where adequate safeguards (e.g., Standard Contractual Clauses) are in place.
Under the NDPA, you have the following rights:
Right to be informed about how your data is processed.
Right of access to your personal data.
Right to rectification of inaccurate or incomplete data.
Right to erasure (“right to be forgotten”).
Right to restrict processing in certain circumstances.
Right to data portability.
Right to object to processing for marketing or legitimate interests.
Right to withdraw consent at any time.
To exercise these rights, contact us at: [Insert Privacy Email]
We implement appropriate technical and organizational measures to protect personal data against unauthorized access, loss, misuse, or disclosure. These include encryption, access controls, staff training, and periodic security audits.
Our website uses cookies and similar technologies to enhance user experience, analyze traffic, and improve content delivery. You can manage cookie preferences in your browser settings.
If you have any questions, concerns, or complaints regarding this Privacy Policy or how your data is handled, please contact us at:
📧 [info@privacyneedle.com]
📞 [+234 9074807]
🏢 Privacy Needle, [5, ogunsiji street allen avenue, ikeja lagos]
You may also lodge a complaint with the Nigeria Data Protection Commission (NDPC) if you believe your rights have been violated.