Privacy Policy

Effective Date: March 21, 2026

onGist ("we", "us", or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our platform.

By using onGist, you agree to the practices described in this policy.

1. Scope

This Privacy Policy applies to:

  • our website (https://ongist.com)
  • mobile applications
  • APIs and related services

2. Information We Collect

2.1 Personal Information

We may collect:

  • name or username
  • email address
  • profile information (bio, avatar)
  • payment details (processed via third-party providers)

2.2 User-Generated Content

questions
answers
comments
uploaded media

This content may be publicly visible depending on your settings.

2.3 Usage Data

We automatically collect:

  • IP address
  • device type and OS
  • browser type
  • pages visited
  • time spent on pages
  • interaction data (votes, clicks, scrolls)
  • 2.4 Cookies and Tracking Technologies

    We use:

    cookieslocal storageanalytics tools

    to improve user experience and analyze usage.

    4. How We Use Your Information

    We use your data to:

    provide and operate the platform
    personalize user experience
    enable content sharing and interaction
    calculate reputation, trust scores, and badges
    process payments and transactions
    detect fraud and abuse
    improve our services
    communicate with you

    5. AI and Automated Processing

    onGist may use automated systems (including AI) to:

    • moderate content
    • detect spam and abuse
    • rank and recommend content
    • calculate trust scores

    These systems may impact visibility of content or account actions.

    6. Sharing of Information

    6.1 Service Providers

    hosting providerspayment processorsanalytics services

    6.2 Legal Requirements

    We may disclose data if required to:

    • comply with legal obligations
    • enforce our Terms
    • protect users and platform integrity

    6.3 Business Transfers

    In case of merger, acquisition, or sale of assets.

    7. International Data Transfers

    Your data may be processed outside Nigeria or the European Economic Area (EEA).

    Where applicable, we ensure:

    • adequate safeguards
    • standard contractual clauses
    • compliance with NDPR and GDPR requirements

    8. Data Retention

    We retain your data:

    as long as your account is active
    as necessary to provide services
    to comply with legal obligations

    We may retain anonymized data indefinitely.

    9. Your Rights

    GDPR9.1 Under GDPR (EU Users)

    You have the right to:

  • access your data
  • correct inaccurate data
  • request deletion ("right to be forgotten")
  • restrict processing
  • object to processing
  • data portability
  • NDPR9.2 Under NDPR (Nigeria)

    You have the right to:

    • request access to your personal data
    • correct inaccuracies
    • withdraw consent
    • request deletion where applicable

    9.3 Exercising Your Rights

    You can contact us at:

    privacy@ongist.com

    We may require identity verification before processing requests.

    10. Data Security

    We implement:

    🔒encryption (HTTPS)
    👤access controls
    📊monitoring and logging
    🏗️secure infrastructure

    However, no system is completely secure.

    11. Children's Privacy

    onGist is not intended for children under 13.

    We do not knowingly collect data from children.

    13. Cookies Policy (Summary)

    We use cookies to:

    keep you logged inremember preferencesanalyze usage

    You can control cookies via your browser settings.

    14. Changes to This Policy

    We may update this Privacy Policy periodically.

    We will notify users of significant changes.

    15. Data Protection Officer

    Our Data Protection Officer can be reached at:

    dpo@ongist.com

    16. Contact

    For questions about this policy, contact us at:

    privacy@ongist.com

    17. Compliance Statement

    onGist is committed to complying with the Nigeria Data Protection Regulation (NDPR) and the General Data Protection Regulation (GDPR) for EU users. We regularly review our data practices to ensure compliance with applicable data protection laws.