How we collect, use, and protect your information.
Kredo, operated by Ifeony Innovations, respects your privacy and is committed to protecting your personal data. This Privacy Policy explains how we collect, use, share, and safeguard information when you use our platform in compliance with Africa's National Data Protection Regulation (NDPR) 2019.
Kredo is a business management SaaS platform operated by:
As a data controller, we determine the purposes and means of processing your personal data.
We collect the following categories of personal data:
| Category | Examples | Source |
|---|---|---|
| Identity Data | Full name, business name | You (registration) |
| Contact Data | Email address, phone number | You (registration/profile) |
| Financial Data | Revenue figures, document amounts | You (business activity) |
| Transaction Data | Payment references, subscription records | You + Paystack |
| Technical Data | IP address, browser type, device info | Automatic (platform logs) |
| Usage Data | Pages visited, features used, timestamps | Automatic |
| Customer Data | Your customers' names, emails, phones | You (CRM) |
| Communications | Support ticket content, emails sent to us | You |
We do not collect special categories of data (health, biometrics, political opinions) and we do not knowingly collect data from children under 18.
We process your data under the following legal bases:
Specific uses include:
We do not sell your personal data. We share data only in these circumstances:
All third-party processors are bound by data processing agreements.
We retain your data for as long as your account is active plus an additional 2 years for accounting and legal compliance purposes. Specifically:
We implement robust technical and organizational measures to protect your data, including:
No system is completely infallible. In the event of a data breach affecting your personal data, we will notify you within 72 hours as required by the NDPR.
Kredo uses only essential session cookies required for the platform to function (authentication state, CSRF tokens, theme preferences). We do not use advertising, tracking, or third-party analytics cookies. We do not use Google Analytics or similar third-party tracking scripts.
Under Africa's National Data Protection Regulation (NDPR), you have the following rights regarding your personal data:
To exercise any of these rights, email hello@trykredo.com with the subject line "Data Rights Request". We will respond within 30 days.
Kredo is strictly a business tool intended for adults aged 18 and over. We do not knowingly collect or process personal data from anyone under 18 years of age. If we become aware that we have inadvertently collected data from a minor, we will delete it immediately.
Kredo may contain links to third-party websites (e.g., Paystack, WhatsApp, Google Play). We are not responsible for the privacy practices of these external sites. We encourage you to review their privacy policies before providing them with personal information.
Kredo operates in full compliance with Africa's National Data Protection Regulation (NDPR) 2019 and the Africa Data Protection Act 2023. We have appointed a Data Protection Officer (DPO) who can be reached at hello@trykredo.com. We conduct regular Data Protection Impact Assessments (DPIAs) for high-risk processing activities.
We may update this Privacy Policy from time to time. Material changes will be notified to you via email at least 14 days before they take effect. We encourage you to review this page periodically. The "Last Updated" date at the top of this page indicates when changes were most recently made.
For any privacy-related queries, data rights requests, or to report a suspected breach:
You also have the right to lodge a complaint with the Africa Data Protection Commission (NDPC) if you believe your rights have been violated.