Privacy Policy
Last updated: January 2025
FOKiiS (“we”, “us”, “our”) respects your privacy. This policy describes what data we collect, how we use it, and how we protect it when you use our photography gallery and payment platform.
1. Data we collect
Account and profile
When you sign up or use FOKiiS, we collect: email, password (hashed), name, business details (e.g. business name, service offerings), profile and branding content (e.g. logo), and account preferences.
Clients and galleries
When you add clients or create galleries, we store: client names, email addresses, phone numbers (if provided), and any notes you add. We also store the images and metadata you upload and the selections, payments, and delivery status linked to each gallery.
Payment and financial data
We do not store full card numbers. Payment processing is done by Paystack. We store transaction references, amounts, status, and (where applicable) bank account details you provide for payouts, in line with Paystack’s and our own legal and security requirements.
Usage and technical data
We collect log data (e.g. IP, device, browser), usage events (e.g. feature use, errors), and cookies or similar technologies needed for authentication, security, and improving the service.
2. How we use your data
We use the data above to:
- Provide, operate, and improve FOKiiS
- Process payments and payouts via Paystack
- Store and deliver images (including via third-party storage, e.g. Cloudinary)
- Send account-related and transactional emails (e.g. password reset, payment confirmations)
- Enforce our Terms, prevent fraud, and protect security
- Comply with legal and regulatory obligations
- Analyse usage to improve the product (e.g. performance, reliability)
3. Sharing and third parties
We share data only as needed to run the service and as stated here:
- Paystack — payment processing and payouts; see Paystack’s privacy policy for how they handle payment data
- Cloudinary — image storage and delivery
- Email / infrastructure — to send emails and host the service
- Legal and safety — when required by law or to protect rights and safety
We do not sell your personal data. We do not share it for third-party marketing.
4. Data retention
We retain account, gallery, and transaction data for as long as your account is active and as needed for legal, tax, or dispute resolution. After account closure, we may retain certain data in anonymised or aggregated form, or where we must keep it for law or contracts.
5. Security
We use industry-standard measures (e.g. encryption, access controls, secure APIs) to protect your data. You are responsible for keeping your password and account secure.
6. Your rights
Depending on where you live (including under Nigerian data protection law), you may have rights to access, correct, delete, or restrict use of your personal data. You can update much of your data in your account settings. For other requests or questions, use our Contact Support page.
7. Cookies and similar technologies
We use cookies and similar technologies for login, security, preferences, and analytics. You can control cookies via your browser; some features may not work fully if you disable them.
8. Changes to this policy
We may update this Privacy Policy from time to time. We will notify you of material changes via email or a notice in the product. The “Last updated” date at the top reflects the latest version.
9. Contact
For privacy-related questions or to exercise your rights, contact us via Contact Support.