Legal

Privacy Policy

How LaunchPad by MayR Labs Technologies collects, uses, shares, stores and protects your personal data under the Nigeria Data Protection Act 2023.

Last updated

This Privacy Policy explains what personal data LaunchPad collects when you visit our website or use our services, why we collect it, who we share it with, how long we keep it, and the rights you have over it. We have written it to reflect how our website and our delivery process actually work.

We process personal data in line with the Nigeria Data Protection Act 2023 (NDPA) and the regulations and guidance issued by the Nigeria Data Protection Commission (NDPC).

1. Who we are

LaunchPad is a business unit of MayR Labs Technologies (registered with the Corporate Affairs Commission as MAYR LABS TECHNOLOGIES, RC9662886), with its office in Asaba, Delta State, Nigeria. LaunchPad provides professional and business launch services, including career documents, CAC business registration and compliance, brand identity, digital presence, websites and operations setup.

Website builds are delivered by Fera, the software delivery unit of MayR Labs Technologies, under a single LaunchPad invoice. Fera handles your data under this same policy.

For the purposes of the NDPA, MayR Labs Technologies is the data controller for personal data processed through LaunchPad.

Contact for privacy matters: launchpad@mlabs.ng · WhatsApp/phone +234 904 603 1716

2. Summary

  • You do not need an account to use our website. Your quote is built and saved in your own browser.
  • We only receive your details if you choose to send us a quote or contact us.
  • When you engage us, we collect the documents and information each service genuinely requires, and we submit them to regulators and platforms only as needed to deliver that service.
  • We do not sell personal data and we do not use advertising trackers. We only use Google Analytics if you accept analytics cookies.
  • You can ask to access, correct or delete your data at any time.

3. Information we collect

3.1 When you browse the website

  • Your quote cart. When you use the price helper, packages or service catalogue, your selections are saved in your browser's local storage under the key launchpad:quote. This stays on your device and is not sent to us unless you choose to send your quote.
  • Offline cache. The website is a Progressive Web App. A service worker stores static files and pages on your device so the site loads quickly and works offline. This cache contains website content, not personal data about you.
  • Technical data. Like all websites, our hosting provider receives standard technical information when your browser requests a page, such as your IP address, browser type, and the time of the request. This is used to deliver the site, keep it secure and diagnose faults.
  • Fonts. Your browser requests fonts from Google Fonts, which means Google receives your IP address and browser details when the page loads.
  • Website analytics (only with your consent). If you accept analytics cookies, Google Analytics collects information about how you use the site, such as pages visited, visit duration, device and browser type, approximate location (city or country level) and the referring website, linked to a random identifier stored in a cookie. We use it in aggregate to improve the website. You can withdraw consent at any time using Cookie settings at the bottom of any page.

See our Cookie Policy for more detail on browser storage.

3.2 When you send us a quote or enquiry

In the quote drawer you may optionally enter your name and a phone number or email address. When you click Send on WhatsApp or Email quote, we record an enquiry in our database containing:

DataPurpose
NameTo address you correctly
Phone number or email addressTo follow up on your enquiry
Selected services and quoted totalTo prepare an accurate proposal
Channel used (WhatsApp or email) and dateTo respond through the channel you chose

Send on WhatsApp opens WhatsApp, which is operated by Meta; messages you send there are also subject to WhatsApp's own privacy terms. Email quote opens your own email application. Download PDF is generated entirely in your browser; nothing is sent to us.

If you contact us directly by email, phone or WhatsApp, we keep a record of that correspondence.

3.3 When you engage our services

We collect only what the service you have requested needs. Depending on the service, this may include:

Service areaTypical information
Career documents and applicationsCV content, work and education history, transcripts, certificates, references, LinkedIn profile details, personal statements
CAC business registration and complianceProprietor, director, shareholder, trustee and secretary details: full names, dates of birth, residential addresses, phone numbers, email addresses, means of identification, passport photographs, signatures, share allocations; CAC certificates and status reports
Tax and regulatory complianceTIN, CAC documents, business address, SCUML registration information
Brand identity and documentationLogos, brand assets, company information, business plan and financial projections you provide
Digital presence and websitesDomain, hosting, Google Business Profile and social media account details, including access credentials where required
Operations and payments setupBusiness bank account details, business verification documents and information required by Paystack, Monnify or other gateways; Google Workspace or Microsoft 365 admin details
BillingName, billing contact, invoices, payment records

3.4 Special care for sensitive items

Identity documents (for example, National ID, international passport, driver's licence, voter's card, NIN slips) are used only for the filing or verification that requires them. We store them in restricted locations, share them only with the relevant authority or platform, and delete or return them within the retention period set out in section 8.

Account credentials (passwords, admin access, one-time codes) are handled with particular care:

  • Wherever a platform allows it, we ask you to invite us as a user or delegate rather than share your password.
  • Where a password must be shared, we ask you to change it once our work is complete. We never ask for your internet banking passwords, card PINs or OTPs for financial transactions.
  • Credentials are kept only for as long as the task requires and are not stored in email threads or shared documents longer than necessary.

4. How and why we use your data

The NDPA requires a lawful basis for each use of personal data. We rely on the following:

PurposeLawful basis
Responding to your enquiry and preparing a quoteSteps taken at your request before entering into a contract; legitimate interests
Delivering the services you have engaged us for, including filings and account setupPerformance of a contract
Invoicing, accounting and tax recordsLegal obligation
Complying with requests from regulators, law enforcement or courtsLegal obligation
Keeping our website and systems secure, preventing fraudLegitimate interests
Measuring how the website is used with Google AnalyticsConsent
Publishing testimonials and case studiesConsent
Sending occasional updates about services you have used (where you have agreed)Consent

Where we rely on legitimate interests, we have considered your rights and expectations and concluded that the processing is proportionate. Where we rely on consent, you can withdraw it at any time without affecting earlier processing.

We do not use your data for automated decision-making that produces legal or similarly significant effects on you.

5. Who we share your data with

5.1 Regulators and authorities

To deliver registration and compliance services, we submit information to the relevant authority, including the Corporate Affairs Commission (CAC), the Nigeria Revenue Service (NRS) and the Special Control Unit against Money Laundering (SCUML) / Nigerian Financial Intelligence Unit (NFIU). We submit only what the specific filing requires. Where the law requires filings to be made by an accredited agent, we work with CAC-accredited agents, who receive your data solely for that filing.

5.2 Platforms used to deliver your service

As needed for your service, we share information with platforms such as Google (Workspace, Business Profile), Microsoft (365), LinkedIn, Paystack, Monnify, and domain registrars. Each platform processes your data under its own terms and privacy policy.

5.3 Our service providers

We use the following providers to run our website and operations. They process data on our behalf and under our instructions:

ProviderRole
NetlifyWebsite hosting and content delivery
NeonManaged database that stores enquiry records
ClerkAuthentication for our staff-only admin area
CloudinaryStorage and delivery of website images, including testimonial photos
Google FontsFont delivery to your browser
Google AnalyticsWebsite usage statistics, only if you accept analytics cookies
WhatsApp (Meta)Messaging, only when you choose to contact us that way

5.4 Other disclosures

We may disclose data where required by law, to protect our legal rights, or as part of a business reorganisation, in which case your data would remain protected under terms at least as strong as this policy.

We never sell personal data or share it for third-party advertising.

6. International transfers

Some of our service providers (including Netlify, Neon, Clerk, Cloudinary, Google and Meta) may store or process data outside Nigeria. Where personal data is transferred abroad, we rely on the transfer mechanisms permitted under the NDPA, such as the recipient country or organisation offering an adequate level of protection, contractual safeguards with the provider, or, where appropriate, your consent. We choose providers that maintain recognised security and data protection standards.

7. How we protect your data

We apply technical and organisational measures proportionate to the sensitivity of the data, including:

  • encryption of data in transit (HTTPS) and use of providers that encrypt data at rest;
  • access to our admin area restricted to authorised staff through authenticated sign-in;
  • least-privilege access to client documents, so only staff working on your service can see them;
  • secure deletion of identity documents and credentials when they are no longer needed;
  • staff confidentiality obligations and guidance on handling client data.

No system is completely secure, but we work to keep risks low and review our practices regularly.

7.1 Personal data breaches

If a breach occurs that is likely to result in a risk to your rights and freedoms, we will notify the NDPC within the timeframe required by law, and we will inform you without undue delay where the breach is likely to result in a high risk to you, explaining what happened and the steps you can take.

8. How long we keep your data

DataRetention period
Quote cart in your browserUntil you clear it or your browser storage
Website analytics (Google Analytics)14 months, then deleted automatically; the cookies in your browser last up to 2 years unless you withdraw consent or clear them
Enquiries that do not become engagementsUp to 24 months from the last contact
Client records, contracts, invoices and payment records6 years after the end of the engagement, for tax and accounting purposes
Identity documents (copies)Deleted or returned within 90 days after delivery of the service, unless the law requires us to keep them longer
Account credentialsDeleted once the task is complete; we ask you to change shared passwords
Deliverables (CVs, logos, documents)Kept for the duration of the client record so we can help with future revisions, unless you ask us to delete them
TestimonialsUntil you withdraw consent

After these periods, data is securely deleted or anonymised.

9. Your rights

Under the NDPA you have the right to:

  • Access the personal data we hold about you and receive a copy;
  • Rectification of inaccurate or incomplete data;
  • Erasure of your data where there is no longer a lawful reason for us to keep it;
  • Restriction of processing in certain circumstances, such as while a dispute about accuracy is resolved;
  • Data portability, receiving data you provided in a structured, commonly used format;
  • Object to processing based on legitimate interests;
  • Withdraw consent at any time where we rely on consent;
  • Complain to the Nigeria Data Protection Commission (NDPC) if you believe we have not handled your data lawfully.

To exercise any right, email launchpad@mlabs.ng. We may ask you to verify your identity. We will respond within the period required by law and, in any case, aim to respond within 30 days. Some rights are limited where we must keep data to meet a legal obligation, for example records of a completed CAC filing or invoices required for tax purposes.

We would appreciate the chance to address any concern before you approach the NDPC, but you are free to contact the Commission at any time.

10. Children

Our services are not directed at anyone under 18, and we do not knowingly collect personal data from children. Where a student under 18 needs help with an application (for example, a scholarship or admission), we work with a parent or guardian, who provides the information and consents on the student's behalf. If you believe a child has sent us personal data without that consent, please contact us and we will delete it.

Our website and deliverables may link to third-party websites and platforms. We are not responsible for their privacy practices, and we encourage you to read their policies.

12. Changes to this policy

We may update this policy when our services, providers or legal obligations change. The "last updated" date at the top of the page shows when it was last revised. Where changes are significant, we will highlight them on the website or tell active clients directly.

13. Contact us

MayR Labs Technologies (LaunchPad) Asaba, Delta State, Nigeria Email: launchpad@mlabs.ng WhatsApp/phone: +234 904 603 1716 Website: launchpad.mlabs.ng

See also our Terms of Use, Cookie Policy and Refund & Cancellation Policy.