LumiID

LumiID Privacy Policy

LumiID is a trusted digital identity verification platform built to empower businesses, developers, and institutions in Nigeria and beyond. Our mission is to simplify identity verification using modern APIs and a user-friendly interface.

Effective Date: November 6, 2025

Last Updated: November 6, 2025

This Privacy Policy describes how LumiID, a product of Ezydevs Technologies (“LumiID,” “we,” “our,” or “us”) collects, uses, shares, and protects personal data in accordance with the Nigeria Data Protection Regulation (NDPR 2019) and other applicable data protection laws.

By using our website https://lumiid.com or any LumiID services, you agree to the collection and use of your information as outlined in this policy.

1. Our Commitment to Data Protection

At LumiID, we prioritize your privacy and data security. We process all personal data lawfully, fairly, and transparently, ensuring it is used solely for the purpose for which it was collected.

2. Legal Basis for Processing Personal Data

  • Consent: When you explicitly agree to our data processing.
  • Contractual Necessity: To fulfill our obligations in providing verification and identity services.
  • Legal Obligation: When required by law or regulatory authorities.
  • Legitimate Interest: To improve and secure our services, prevent fraud, and enhance user experience.

3. Information We Collect

A. Personal Data You Provide

  • Full name, email address, and phone number
  • National Identification Number (NIN), BVN, or other government-issued identifiers
  • Identity documents (ID card, passport, driver’s license)
  • Payment and transaction details (wallet top-ups, invoices, etc.)
  • Business name and registration number (for corporate accounts)
  • Communication history (support messages, verification logs)

B. Automatically Collected Information

  • IP address, browser type, and device information
  • Pages visited, date/time of access, and referral source
  • Cookies and analytics data for performance optimization

4. Purpose of Data Processing

  • Identity verification and validation
  • Account creation and management
  • Wallet transactions and payment processing
  • Compliance with KYC/AML regulations
  • Preventing fraudulent or unauthorized activities
  • Customer support and service improvement
  • Legal and regulatory reporting obligations

5. Data Sharing and Disclosure

We do not sell your personal information. However, we may share your data under strict conditions with:

  • Verification Partners: Government agencies and licensed third-party verification APIs (e.g., NIN, BVN, Passport).
  • Financial Institutions: Payment gateways such as Paystack or banks for processing transactions.
  • Regulatory Bodies: When required by law, court order, or governmental request.
  • Service Providers: Who help with hosting, analytics, and technical support under binding confidentiality agreements.

All data sharing is conducted under Data Processing Agreements (DPAs) ensuring compliance with NDPR standards.

6. Data Retention

  • Personal data is retained only as long as necessary to fulfill obligations.
  • After the retention period, data is securely deleted or anonymized.
  • Verification records may be retained for compliance purposes as required by law.

7. Data Subject Rights

  • Right of Access: Request a copy of your personal data.
  • Right to Rectification: Correct inaccurate or incomplete data.
  • Right to Erasure: Request deletion of your data (“right to be forgotten”).
  • Right to Withdraw Consent: Stop us from processing your data at any time.
  • Right to Data Portability: Request transfer of your data to another controller.
  • Right to Object: Object to data processing on legitimate grounds.

To exercise any of these rights, please contact our Data Protection Officer (DPO) via: privacy@lumiid.com

8. International Data Transfers

  • Contractual clauses ensuring compliance with NDPR and GDPR standards.
  • Secure data transmission and storage using encryption protocols.

9. Data Security

  • Secure Sockets Layer (SSL/TLS) encryption.
  • Multi-factor authentication for system access.
  • Continuous vulnerability monitoring and audits.
  • Data minimization and access control principles.

While we maintain robust safeguards, no electronic storage or transmission method is 100% secure. You are encouraged to keep your login credentials confidential.

10. Children’s Privacy

Our services are not designed for individuals under 18 years of age. We do not knowingly collect data from minors. If a child’s information is inadvertently collected, we will promptly delete it.

11. Updates to This Policy

We may update this Privacy Policy periodically to reflect legal, technical, or business changes. We will notify you of significant updates through email or prominent platform notices.

12. Contact Information

If you have questions, requests, or complaints about this policy or how we handle your data, please contact our Data Protection Officer (DPO):

Data Protection Officer (DPO)
Ezydevs Technologies (LumiID Division)
📧 privacy@lumiid.com
🌍 https://lumiid.com
🏢 Gboko, Benue State, Nigeria

✅ NDPR Principles Observed

  • Lawful, fair, and transparent processing
  • Purpose limitation
  • Data minimization
  • Accuracy
  • Storage limitation
  • Integrity and confidentiality
  • Accountability