Privacy Policy
Last updated: September 3, 2026
Identity Platform ("we", "us", "the Platform") provides ID card registration, approval, and verification services to schools, colleges, and universities ("institutions"). This policy explains what information we collect, why, and how it's used — including through the Identity Platform Scanner mobile app and desktop sync application.
Who this applies to
This policy covers three kinds of users:
- Registrants — students and staff who submit an ID card registration through a link provided by their institution.
- Institution staff — HODs, administrators, and print/scan operators who review registrations, generate cards, and verify identities.
- Institutions — the schools, colleges, and universities that operate an account on the Platform.
Information we collect
When someone registers for an ID card, we collect:
- Name, gender, date of birth, phone number, and email address
- A passport-style photograph
- Academic or employment details (department, faculty, level/category, matriculation or staff number, academic session)
- State of origin and local government area (where requested by the institution)
- Next of kin name and contact details
Registration does not require creating a password-protected account — a registrant's submission is tied to a one-time link or, after a rejection, a single-use correction link sent by email.
Institution staff who sign in to manage the Platform additionally have:
- Name and email address, used for login and to attribute review/approval actions
- Role and department/organization assignment
The mobile Scanner app
The Identity Platform Scanner app lets institution staff verify a printed ID card by scanning its QR code. To do this, the app requests the following device permissions:
- Camera — to scan a card's QR code. No photo or video is stored on the device; the camera is only used live during a scan.
- Vibrate — to give haptic feedback when a scan succeeds.
- Biometric / Fingerprint — optionally used to unlock the app on the device itself; this data never leaves the device and is not sent to us.
- Location and NFC — reserved for on-site verification features; not all builds of the app use these actively.
Signing in to the Scanner app uses a one-time code sent to the operator's institutional email — no password is stored on the device. A successful scan retrieves the registrant's card status, photo, and identifying details from our servers over an encrypted connection; nothing is cached permanently on the device beyond the current session.
How we use this information
- To process, review, and approve or reject ID card registrations
- To generate and print physical ID cards
- To verify a card's authenticity and the holder's identity when scanned
- To notify registrants and staff about registration status, corrections, and login codes
- To maintain the security of accounts and detect suspicious sign-in activity (for example, a scanner login from an unrecognized device)
Who can see this information
Registration data is scoped to the institution a registrant applied to. It is visible only to that institution's authorized reviewers, administrators, and scan/print operators — never shared across institutions, and never sold to or shared with third parties for advertising or marketing purposes.
Data retention
We retain registration data for as long as an institution maintains an active account and as needed to support reissued or replacement cards, promotions between academic levels, and graduation records. An institution may request deletion of a specific record by contacting us at the address below.
Your choices
If you registered for an ID card and want to review, correct, or request deletion of your information, contact your institution directly, or reach us using the details below and we'll route the request to the relevant institution.
Contact us
Questions about this policy or a request regarding your data can be sent to support@ospoconsult.com.ng.