Home Privacy Policy
Privacy & Data Protection

Privacy Policy

We respect your privacy. This policy explains what information we collect, why we collect it, how we use it, and the choices available to you.

Last updated: September 2026

Your privacy matters to us

Deo-Gratia Healthcare uses personal information only for legitimate business, service, security and legal purposes. We aim to collect only information that is reasonably necessary for providing our products and services.

1. Introduction

This Privacy Policy explains how Deo-Gratia Healthcare ("Deo-Gratia Healthcare", "we", "us" or "our") collects, uses, stores, protects and otherwise processes information relating to visitors and customers who use our website, products and services.

By accessing or using our website, creating an account, submitting information, contacting us or placing an order, you acknowledge that you have read and understood this Privacy Policy.

This policy should be read together with our Terms & Conditions.

2. Information We Collect

Depending on how you interact with our website, we may collect different categories of information.

2.1 Information you provide directly

  • Your name.
  • Email address.
  • Telephone or mobile number.
  • Delivery address and location information provided for an order.
  • Account login information where an account is created.
  • Order and purchase information.
  • Information supplied through contact, support or bulk-purchase forms.
  • Messages, enquiries, reviews or other information you voluntarily submit.
  • Newsletter subscription information.

2.2 Order and transaction information

When you purchase products through our website, we may process information necessary to fulfil the transaction, including your order number, products purchased, quantities, prices, delivery information, payment reference and transaction status.

2.3 Payment information

Payments made through the website may be processed by third-party payment providers such as Flutterwave. Payment card or other sensitive payment credentials may be handled directly by the applicable payment provider rather than being stored in our database.

We may retain payment-related information such as a transaction reference, payment status, amount, currency and transaction identifier where necessary for order processing, reconciliation, customer support, fraud prevention and accounting.

2.4 Information collected automatically

When you visit our website, certain technical information may be collected automatically, such as browser type, device information, approximate location derived from technical data, IP address, pages visited, referring pages and general website usage information.

This information helps us maintain website security, diagnose technical problems and improve the performance and usability of our website.

3. How We Use Your Information

We may use information we collect for purposes including:

  • Creating and managing customer accounts.
  • Processing and fulfilling orders.
  • Confirming payments and maintaining transaction records.
  • Arranging deliveries and communicating delivery updates.
  • Responding to customer enquiries and support requests.
  • Processing bulk-purchase enquiries.
  • Sending service-related notifications.
  • Sending newsletters or promotional communications where permitted.
  • Improving products, services and website functionality.
  • Detecting, preventing and investigating fraud, abuse and security incidents.
  • Maintaining accounting and business records.
  • Complying with applicable legal and regulatory obligations.

4. Lawful Basis for Processing

Where applicable, we process personal information on lawful grounds such as performing a contract with you, taking steps at your request before entering into a contract, complying with legal obligations, protecting legitimate business interests, preventing fraud or abuse, and obtaining consent where consent is required.

Where processing is based on consent, you may generally withdraw that consent subject to applicable legal requirements and legitimate reasons for retaining or processing the information.

5. Orders, Payments and Delivery

When you place an order, we use the information supplied during checkout to process the purchase and arrange delivery.

Your information may be shared with relevant service providers where this is necessary to complete your transaction, including payment processors, delivery providers and technical service providers.

We do not intentionally request payment-card passwords, PINs, OTPs or other authentication credentials through ordinary customer-support messages. You should never disclose such information to anyone claiming to represent Deo-Gratia Healthcare.

6. Communications

We may contact you by email, telephone, SMS or other appropriate communication channels concerning your account, order, payment, delivery, customer service request or other transaction-related matter.

Where you have subscribed to marketing communications, we may also send information about products, services, offers or other updates.

You may unsubscribe from marketing communications at any time using the available unsubscribe mechanism or by contacting us.

7. Cookies and Similar Technologies

Our website may use cookies and similar technologies to enable essential website functions, remember preferences, maintain sessions, support shopping-cart functionality, improve security and understand how visitors use the website.

Some cookies may be necessary for the website to function correctly. Other cookies may be used for analytics, preferences or other optional purposes.

You can manage cookies through your browser settings. Disabling certain cookies may affect some website functionality, including account or shopping features.

8. When We Share Personal Information

We do not sell your personal information as a business asset or provide it to third parties for their own unrelated marketing purposes without an appropriate legal basis.

Information may be shared where reasonably necessary with:

  • Payment processors and financial service providers.
  • Delivery and logistics providers.
  • Website hosting and infrastructure providers.
  • IT, security and technical service providers.
  • Professional advisers where reasonably necessary.
  • Government, regulatory or law-enforcement authorities where legally required.
  • Other service providers acting on our instructions and subject to appropriate safeguards.

Where we engage third-party service providers to process personal information on our behalf, we seek to ensure that appropriate confidentiality and security measures are maintained.

9. Third-Party Services

Our website may rely on third-party services to provide payment processing, hosting, analytics, communications, security, delivery or other functionality.

These providers may process information according to their own privacy policies and applicable contractual obligations. We encourage customers to review the privacy notices of third-party services where relevant.

For online payments, our website may use Flutterwave. Payment processing is subject to the applicable terms and privacy practices of the payment provider.

10. Data Security

We take reasonable technical and organisational measures designed to protect personal information against unauthorised access, disclosure, alteration, loss, misuse or destruction.

Security measures may include access controls, authentication mechanisms, secure server configurations, database protections, monitoring and other appropriate safeguards.

However, no internet transmission or electronic storage system can be guaranteed to be completely secure. Customers should also take reasonable steps to protect their own account credentials and devices.

11. Account Security

If you create an account, you are responsible for maintaining the confidentiality of your login details and for activity conducted through your account, subject to applicable law.

If you believe that your account or personal information has been compromised, please contact us promptly so that appropriate steps can be taken.

12. Children's Privacy

Our website is intended for general consumers and is not knowingly directed at children who are not legally permitted to enter into transactions.

We do not knowingly collect personal information from children for purposes that are prohibited by applicable law. If you believe that a child has provided personal information to us improperly, please contact us.

13. Product and Health-Related Information

Deo-Gratia Healthcare may offer personal-care, healthcare-related, cosmetic or wellness products. Information displayed on product pages is intended to help customers understand the products and should not automatically be treated as personalised medical advice.

Customers should read product labels, directions, warnings and other supplied information carefully and seek advice from an appropriately qualified healthcare professional where necessary.

Where a product is subject to prescription, professional supervision, age restrictions or other legal requirements, we may require additional information or decline an order where necessary to comply with applicable law.

14. Your Personal Data Choices

Depending on applicable law, you may have rights relating to your personal information, including rights to:

  • Request access to personal information we hold about you.
  • Request correction of inaccurate or incomplete information.
  • Request deletion of personal information where applicable.
  • Object to or request restriction of certain processing.
  • Withdraw consent where processing relies on consent.
  • Request information about how your personal data is processed.
  • Opt out of certain marketing communications.

These rights are subject to applicable legal conditions, exemptions and legitimate reasons for retaining or processing information.

15. How to Exercise Your Privacy Rights

To make a privacy-related request, contact us using the details provided in the Contact Us section below.

We may need to verify your identity or request additional information before responding to a request. This is done to protect personal information from unauthorised disclosure.

We aim to respond to valid requests within a reasonable period and in accordance with applicable data-protection requirements.

16. Data Retention

We retain personal information only for as long as reasonably necessary for the purposes described in this Privacy Policy, including fulfilling transactions, maintaining business and accounting records, resolving disputes, preventing fraud, enforcing agreements and complying with legal or regulatory obligations.

Different categories of information may therefore be retained for different periods depending on their purpose and applicable requirements.

17. International or Third-Party Processing

Some technology, payment, hosting or service providers used by our website may process information from locations outside Nigeria or through infrastructure located in other jurisdictions.

Where applicable, we seek to ensure that such processing is carried out with appropriate legal and security safeguards.

18. Links to Other Websites

Our website may contain links to third-party websites or services. We are not responsible for the privacy practices, security or content of websites that we do not operate.

You should review the privacy policy of any third-party website before providing it with personal information.

19. Fraud Prevention and Legal Compliance

We may process and retain information where reasonably necessary to investigate suspected fraud, abuse, unauthorised transactions, security incidents or other unlawful activity.

We may also disclose information to competent authorities where required or permitted by applicable law.

20. Business Transfers

If Deo-Gratia Healthcare undergoes a merger, acquisition, restructuring, sale of assets or similar business transaction, personal information may be transferred as part of that transaction, subject to applicable law and appropriate safeguards.

21. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our services, technology, legal requirements or business practices.

When changes are made, the updated version will be published on this page with a revised "Last updated" date where appropriate.

We encourage you to review this page periodically to remain informed about how we handle personal information.

22. Governing Law

This Privacy Policy is intended to operate subject to applicable laws and regulations of the Federal Republic of Nigeria, including applicable data-protection requirements.

Nothing in this Privacy Policy is intended to exclude, restrict or waive a right or protection that cannot lawfully be excluded, restricted or waived.

23. Contact Us

If you have questions about this Privacy Policy, want to exercise an applicable privacy right, or have concerns about how your information is being handled, please contact Deo-Gratia Healthcare.

Important

This Privacy Policy is intended to provide clear information about our privacy practices. It does not remove or limit any privacy or consumer right that cannot lawfully be excluded under applicable Nigerian law.