SecVite logo

Privacy Policy

Last updated: 28 July 2026

This Privacy Policy explains how SECVITE LTD (“SecVite”, “we”, “us”), collects, uses, discloses and protects personal data when you use our websites, mobile applications, event pages, Atlas planning experience and related services (together, the “Service”). Please read it together with our Terms & Conditions.

1. Who is responsible for your data

SecVite is responsible for personal data used to provide accounts, payments, security, support, analytics and the Service generally. An event organizer is responsible for deciding which guests to add, invite or manage and must have a lawful basis to provide their data to SecVite. We process that guest data to provide the organizer’s requested event-management functions and also use limited data for our own security, legal and operational purposes.

2. Personal data we collect

  • Account and profile data — name, email address, phone number, profile image, authentication identifiers and sign-in information from Google, Apple or another login provider you choose.
  • Identity and payout verification data — identification, date of birth, address, bank or payout details and verification results required by us or our payment partners.
  • Event and organizer data — event details, settings, venues, budgets, vendors, tasks, tickets, pricing, settlement instructions and organizer communications.
  • Guest and invitation data — names, contact details, groups, plus-ones, RSVP decisions, approvals, invitation designs, uploaded files, QR or invitation codes and check-in records.
  • Payment and gifting data — payer or contributor details, amount, currency, reference, message, anonymity choice, refund, chargeback, payout and transaction status. SecVite does not store complete card credentials; payment providers process them directly.
  • Atlas and support data — answers and messages entered in the website assistant, planning summaries sent through a WhatsApp link, and communications with customer support.
  • Public and shared content — event pages, organizer details, invitation content, gift messages, leaderboard names or other information you choose to make visible to guests or the public.
  • Device and usage data — IP address, browser or device type, operating system, page and feature interactions, crash or diagnostic information, referral source and approximate region inferred from technical signals.
  • Preferences and marketing data — currency and region preferences, consent choices, newsletter subscriptions and communication preferences.

We receive data directly from you, from organizers or guests, from devices and cookies, and from providers such as authentication, payment, analytics, hosting and communication services.

3. How and why we use personal data

  • Provide accounts and operate events, invitations, RSVPs, guest lists, vendor workflows, QR and offline check-in, ticketing, gifting and payouts.
  • Personalize and continue an event plan through Atlas and connect the website handoff to WhatsApp.
  • Process and reconcile transactions, refunds, chargebacks, fees, taxes, identity checks and payouts.
  • Authenticate users, prevent duplicate or unauthorized entry, detect fraud, investigate abuse and protect users, events and funds.
  • Send invitations, confirmations, reminders, security notices, support responses and other service communications.
  • Provide marketing communications where permitted and allow you to unsubscribe from promotional messages.
  • Measure performance, understand feature usage, troubleshoot errors and improve the Service.
  • Comply with legal, regulatory, accounting and law-enforcement obligations and establish, exercise or defend legal claims.

4. Legal bases

Depending on the context, we process personal data because it is necessary to perform a contract with you; to comply with a legal obligation; with your consent; to protect vital interests; or for legitimate interests such as operating, securing and improving the Service, preventing fraud and supporting users. Where we rely on consent, you may withdraw it without affecting earlier lawful processing.

5. Atlas, WhatsApp and automated tools

The website Atlas experience stores its conversation in your browser session so it can continue across pages. When you choose to continue on WhatsApp, a planning summary is placed into a WhatsApp link for you to review and send. WhatsApp then processes data under its own terms and privacy policy. We may use automated tools to generate planning suggestions, detect fraud or prioritize security review. We do not use solely automated decisions that produce legal or similarly significant effects unless permitted by law and appropriate safeguards are provided.

6. Payments and financial compliance

Payments are handled through third-party payment providers, including Flutterwave where available. We and those providers may use identity, transaction, device and risk information for payment processing, settlement, anti-money-laundering checks, sanctions screening, fraud prevention, chargebacks and legal compliance. Payment providers act under their own privacy notices for activities they independently control.

7. When we disclose personal data

We do not sell personal data. We may disclose it:

  • To organizers, guests and assigned event team members as necessary to operate an event. Organizers can see information such as RSVP, approval, gifting and check-in status for their event.
  • To payment, identity-verification, hosting, storage, analytics, communications, customer-support, security and professional-service providers acting under contractual or legal duties.
  • To Google, Apple, WhatsApp or other third-party services when you choose to use their sign-in, communication or platform features.
  • To authorities, regulators, courts, advisers or affected parties where required by law or reasonably necessary to protect rights, safety, users, funds or the integrity of the Service.
  • As part of a financing, merger, reorganization, acquisition or sale of assets, subject to appropriate confidentiality and data-protection safeguards.
  • With another person when you direct us or give valid consent.

8. International transfers

SecVite and its providers may process data outside Nigeria. Where personal data is transferred internationally, we use a lawful transfer mechanism and appropriate safeguards required by the Nigeria Data Protection Act 2023 and other applicable laws. These may include an adequacy basis, contractual protections or another legally recognized mechanism.

9. Retention

We retain personal data only for as long as reasonably necessary for the purposes described here. Retention depends on account and event status, the type and sensitivity of data, organizer instructions, fraud and security needs, limitation periods, and financial, tax, anti-money-laundering or other legal record-keeping requirements. Deleting an account does not require us to delete data that must be retained by law, is needed to resolve disputes or protect the Service, or remains in secured backups until ordinary deletion cycles complete.

10. Security and data incidents

We use technical and organizational safeguards designed to protect personal data, including access controls, secure tokens, encrypted transmission and protected invitation codes. No system is completely secure. If a personal-data breach creates a legally reportable risk, we will notify the Nigeria Data Protection Commission and affected people as required by law.

11. Your privacy rights

Subject to applicable law, you may request access to and a copy of your data; correction or deletion; restriction of or objection to processing; portability; withdrawal of consent; and information about safeguards for international transfers. You may also object to direct marketing and request human review where applicable to a significant automated decision.

Contact [email protected]. We may verify your identity before acting on a request. If the request concerns data controlled by an organizer, we may direct you to that organizer or assist them in responding. You may lodge a complaint with the Nigeria Data Protection Commission.

12. Cookies, analytics and device storage

We use necessary browser storage for functions such as session continuity and saved currency preferences. Google Analytics is enabled by default on our public website so we can understand visits, page usage, feature engagement, performance and errors, and improve the Service. This may involve device, browser, approximate location and usage identifiers being sent to Google. We do not enable Google advertising storage, ad personalisation or advertising-user-data features. You may limit analytics through your browser or device controls, although blocking necessary storage may affect site features.

13. Children

Organizer accounts, payouts and payment features are intended for people aged 18 or older. Events may include guests who are children, but organizers must have authority to provide their data and should collect only what is necessary. A parent or guardian may contact us about a child’s data.

14. Third-party links and services

The Service may link to event venues, vendors, app stores, payment pages, WhatsApp and other third parties. Their privacy practices are governed by their own notices, and SecVite is not responsible for practices we do not control.

15. Changes to this Policy

We may update this Policy to reflect changes to the Service or the law. We will post the revised version and date here and provide additional notice where a material change requires it.

16. Contact

SECVITE LTD, Ikeja, Lagos, Nigeria.
Privacy enquiries: [email protected]
Phone: +234 704 025 3232