Nigeria and Qatar. Pickup and delivery. Direct support from every store.

SORVYRA STORE privacy

Your information should travel only where your order needs it.

This notice explains the shared SORVYRA account, storefront-specific order access, the providers that help operate the service, and the choices available to you.

Effective 11 August 2026

Section 01

Who is responsible for your information

SORVYRA STORE operates the shared customer-account and commerce platform. It is responsible for platform identity, security and shared service processing. The storefront named on an order also uses the information needed to manage its catalogue, fulfil that order, support the customer and handle returns.

Storefront managers and staff receive only the access granted for their storefront. The SORVYRA platform administrator can govern storefront access across the platform. You can contact the relevant storefront through the Contact page for order-specific questions or use the same page to raise a platform privacy request.

Section 02

Information we collect

  • Account and identity information, including your name, email address, telephone number, password hash, verification status, account preferences and security settings.
  • Commerce information, including storefront carts, selected product options, quantities, prices, discounts, currencies, orders, pickup or delivery choices, addresses, delivery notes, returns and customer-support history.
  • Payment records, including the provider, merchant reference, payment status, amount and currency. SORVYRA does not store your complete card number, card security code or online-banking credentials.
  • Manager and staff information, including applications, approvals, roles, storefront access and auditable catalogue, stock, order, delivery and return actions.
  • Technical and security information, including essential session and cart cookies, IP address, browser or device information, timestamps, request integrity information and security events.

Section 03

Where the information comes from

Most information comes directly from you when you register, sign in, place an order, submit a delivery address, request a return, apply to manage a store or contact support. Storefront staff add operational information such as stock changes, delivery quotes and fulfilment updates.

Payment providers send or expose transaction status that we verify against the server-recorded order. Delivery partners may provide delivery status. Security and session information is produced automatically when you use the service.

Section 04

Why we use it

  • To create and protect one SORVYRA account and verify account ownership.
  • To keep each storefront’s cart, currency, order, stock, payment and staff access correctly separated.
  • To process orders, verify payments, arrange pickup or delivery, provide installation where offered, and manage returns or disputes.
  • To send account, order, verified-payment, delivery and fulfilment messages requested by the service.
  • To prevent fraud, investigate abuse, preserve audit history and maintain the security and reliability of the platform.
  • To meet accounting, tax, consumer-protection, legal and regulatory obligations.
  • To send optional offers only where you have chosen to receive them or another lawful basis permits it.

Section 06

Who receives information

We do not sell customer personal information. We require service providers to use information for the agreed service and to protect it appropriately. External payment and courier services may also provide their own privacy notices for processing they control.

  • The authorized managers and staff of the storefront that owns your product or order.
  • Payment providers such as Paystack or Flutterwave, and the banks or payment networks involved in a transaction.
  • Hosting, database, email and media service providers used to operate SORVYRA, including Railway, Resend and Cloudinary where configured.
  • Delivery, pickup, installation and support partners where needed to fulfil the specific order.
  • Professional advisers, insurers, auditors, regulators, courts or law-enforcement bodies where disclosure is required or reasonably necessary to establish, exercise or defend legal rights.

Section 07

International processing

SORVYRA serves customers and storefronts in Nigeria and Qatar and uses online providers that may process or store information in other countries. This means information may cross national borders when an account, payment, email, image, hosting or support service is provided.

Where cross-border safeguards are required, we use provider contracts and other lawful measures appropriate to the information and destination. Storefront staff are not given unrestricted access to another storefront’s customer orders.

Section 08

How long we keep it

We keep account information while the account is active and for a reasonable period afterwards where needed for security, dispute resolution or legal compliance. Order, payment, return, stock and staff audit records may be retained for the periods required by accounting, tax, consumer, fraud-prevention and legal obligations.

Verification and recovery challenges expire, although limited security evidence may remain. When information is no longer reasonably needed, it is deleted, anonymised or securely isolated from normal use. A deletion request may not remove records we must keep by law or need to establish, exercise or defend a legal claim.

Section 09

Cookies and similar storage

SORVYRA currently uses essential cookies or equivalent browser storage to keep you signed in securely, protect requests and maintain storefront cart context. These features are necessary for the service to work and are not used to build an advertising profile.

We do not currently run third-party behavioural advertising or analytics cookies on SORVYRA STORE. A payment provider or another external website opened from SORVYRA may use its own cookies under its own notice.

Section 10

How we protect information

We use access controls, storefront scoping, password hashing, secure production cookies, origin checks, server-side amount and currency validation, audit records and restricted provider credentials. Sensitive provider secrets are not sent to the browser.

No internet service can promise absolute security. Please use a unique password, protect your email account and tell us promptly if you suspect unauthorized access or receive an unexpected order or verification message.

Section 11

Your choices and privacy rights

We may need to verify your identity before acting on a privacy request and may limit a response where necessary to protect another person, preserve security or comply with law. Contact us through the Contact page and identify the account email and relevant storefront without sending passwords, card details or verification codes.

  • Ask whether we process your information and request access to an appropriate copy.
  • Ask us to correct inaccurate or incomplete information.
  • Ask for deletion or restriction where the legal conditions are met.
  • Object to certain processing, including direct marketing, and withdraw consent for optional processing.
  • Request portability where applicable and ask for human review of a decision that significantly affects you if it was made solely by automated processing.
  • Complain to the relevant data-protection authority, including the Nigeria Data Protection Commission for protected Nigerian processing or the competent Qatar authority for protected Qatar processing.

Section 12

Children and changes to this notice

SORVYRA STORE is not directed to children. A person under 18 should not create an account or place an order without the involvement and permission of a parent or legal guardian. Contact us if you believe a child supplied personal information without appropriate authority.

We may update this notice when our service, providers or legal obligations change. Material changes will be published with a new effective date and, where required, communicated before they take effect.