Privacy Policy
Effective 6 April 2026 · Last Updated 23 July 2026
MOAA TECH Nigeria Limited (“MOAA TECH,” “we,” “us”) protects the privacy of everyone who interacts with Sharp, Sharp+, the Console, and moaatech.com (the “Services”). This policy explains what we collect, how we use it, and your rights, in line with the Nigeria Data Protection Act 2023 (NDPA).
1. Our Role
For some data we decide how and why it is processed; for the rest we act only on our customers’ instructions:
| Data | Our Role |
|---|---|
| Account, billing, and website usage data | Controller |
| Message content and recipient details sent through Sharp | Processor (your organization is the controller) |
| Customer records stored in Sharp+ | Processor (your organization is the controller) |
If you received a message from one of our customers or your data is stored by one, contact that organization directly about your data; we support them in honouring your request.
2. What We Collect
- Account details: name, email, phone number, organization. Passwords and API keys are stored only as one-way hashes.
- Billing records: wallet balance and transaction history. Card details are handled entirely by our payment processor and never touch our servers.
- Message data: content, recipients, sender IDs, and delivery metadata you submit through Sharp, plus customer records you keep in Sharp+.
- Technical data: device and log information, delivery statuses from carriers, and audit logs of significant account actions.
3. How We Use It
To operate and improve the Services: routing and delivering your messages, processing wallet transactions, showing you delivery analytics, securing the platform against fraud and abuse, responding to support requests, and meeting legal obligations. Where we rely on consent (such as marketing emails), you can withdraw it at any time. We do not sell personal data.
4. Sharing
We share data only with the providers needed to run the Services: telecom carriers and channel providers that deliver your messages across SMS, WhatsApp, and Email, our payment processor, and our hosting infrastructure, each bound by data processing agreements. We may also disclose data where the law requires it, and data may transfer with the business in a merger or sale, subject to this policy. Where a provider operates outside Nigeria, we apply the NDPA’s cross-border safeguards.
5. How Long We Keep It
| Data | Retention |
|---|---|
| Message content | 30 days |
| Delivery logs | 90 days |
| Audit logs | 24 months |
| Account data | Life of the account, plus 12 months |
| Billing records | 7 years (Nigerian tax law) |
| Sharp+ customer records | Life of the account, deleted on request at termination |
6. Your Rights
Under the NDPA you may request access to your data, correction, deletion, a portable copy, or a restriction of processing, and you may object to processing or withdraw consent at any time. Write to info@moaatech.com; we respond within 30 days.
7. Security
We protect data with encryption in transit, encrypted storage of sensitive fields, role-based access controls, audit logging, and rate limiting with fraud detection. If a breach ever puts your rights at risk, we will notify the appropriate regulator and affected users as the NDPA requires. No system is perfectly secure, so we cannot guarantee absolute security.
8. Cookies
The website and Console use essential cookies for sign-in and session management, and anonymous analytics to improve the Services. We do not use third-party advertising cookies or tracking pixels.
9. Children and Third Parties
The Services are not directed at anyone under 18, and we do not knowingly collect children’s data. Links to third-party sites are governed by those sites’ own privacy practices.
10. Changes and Contact
Material changes to this policy are announced at least 30 days in advance via the Console or email.
Data Protection Officer, MOAA TECH Nigeria Limited
Suite 307, Plot 307 The Kings Plaza
Ahmadu Bello Way, Kado, Abuja
Email: info@moaatech.com · Web: moaatech.com