KENNEDIA HMO PRIVACY POLICY
Last Updated: November 11, 2025
This Privacy Policy (“Policy”) explains how Kennedia HMO (“Kennedia HMO,” “Company,” “we,” “us,” or “our”) collects, uses, stores, shares, and protects your personal data when you interact with our digital platforms — including our website, mobile application, and other online services (collectively, the “Service”).
It also explains your privacy rights under applicable data protection laws, including
By accessing or using our Service, you acknowledge that you have read, understood, and agree to the terms of this Privacy Policy.
2.1 Interpretation
Words with initial capital letters have specific meanings. These definitions apply whether the terms appear in singular or plural.
2.2 Definitions
We process your personal data only when permitted by applicable law. The legal bases include:
Where consent is required, you may withdraw it at any time by contacting us.
We collect the following categories of data:
4.1 Personal Data
4.2 Usage and Technical Data
4.3 Third-Party Data
Our website uses cookies, pixel tags, and similar technologies to collect information for analytics, personalization, and security.
Types of Cookies
You can control cookies through your browser settings. Refusing cookies may affect site functionality.
We do not sell or rent your personal data.
However, we may share data with trusted entities in these circumstances:
Category | Purpose | Safeguards |
Service Providers | To provide IT, analytics, claims, or communication services | Bound by data protection agreements |
Affiliates / Partners | To manage cross-border operations or integrated services | Process data consistent with this Policy |
Regulatory Authorities | To comply with lawful requests or audits | Limited to legally required information |
Business Transfers | During mergers, restructuring, or acquisitions | Data protected by confidentiality clauses |
All third parties must maintain adequate security measures and process your data only for authorized purposes.
Your personal data may be transferred to servers or processors outside your country.
Whenever we transfer data internationally, we ensure:
We retain personal data only for as long as necessary to fulfill the purposes for which it was collected, including:
After the retention period, data will be securely deleted or anonymized.
We adopt industry-standard administrative, technical, and physical safeguards to protect personal data, including:
If a data breach occurs that poses a risk to your rights and freedoms, we will notify you and the appropriate authority (e.g., NITDA or an EU supervisory authority) within statutory time limits.
Depending on your jurisdiction, you have the following rights:
Right | Description |
Access | Request copies of your personal data we hold. |
Rectification | Correct inaccurate or incomplete data. |
Erasure (“Right to be Forgotten”) | Request deletion of data no longer necessary. |
Restriction | Ask us to limit how we use your data. |
Portability | Obtain your data in a structured, machine-readable format. |
Objection | Object to processing based on legitimate interests or direct marketing. |
Withdrawal of Consent | Withdraw consent where processing is based on it. |
Lodge a Complaint | File a complaint with NITDA (Nigeria) or an EU supervisory authority. |
To exercise any right, contact us using the details in Section 15. We may request verification of your identity before fulfilling requests.
We understand the importance of protecting children’s data.
Kennedia HMO does not use automated decision-making that produces legal or similarly significant effects without human involvement.
If such processes are introduced (e.g., automated claims scoring), we will ensure transparency and the ability to request human review.
Kennedia HMO maintains a Data Protection Compliance Program consistent with NDPR Implementation Framework (2020) and GDPR Articles 5 and 24, including:
Our DPO monitors compliance, manages incidents, and serves as liaison with regulators and data subjects.
You can manage your communication preferences (marketing emails, notifications) at any time through your account settings or by contacting us.
We may still send essential communications (e.g., claim confirmations, policy updates) even if you opt out of marketing messages.
Our Service may contain links to other websites.
We are not responsible for the privacy practices or content of such third-party sites. We encourage you to review their privacy policies before providing personal data.
We may update this Policy periodically to reflect regulatory, technical, or operational changes.
Updates will be posted on our website with a new “Last Updated” date.
Significant changes will be communicated via email or notification prior to taking effect.
Continued use of our Service after changes signifies acceptance of the revised Policy.
This Policy is governed by the laws of the Federal Republic of Nigeria, including the NDPR (2019) and NDPA (2023).
Where applicable, cross-border users within the European Economic Area (EEA) are also protected under the GDPR.
Disputes shall be subject to the exclusive jurisdiction of the competent courts in Lagos State, Nigeria, unless otherwise required by law.
If you have any questions, requests, or complaints about this Privacy Policy or our data protection practices, please contact:
Data Protection Officer
Kennedia HMO
14B Kingsley Emu Street, Off Chris Efuyemi Onanuga Street, Lekki Phase 1, Lagos State, Nigeria
Email: info@kennediahmo.com
Website: https://www.kennediahmo.com
You may also lodge a complaint with:
© Kennedia HMO.
All Rights Reserved | Privacy Policy