Ubuzima+
Privacy Policy
Effective date: 19 September 2026
Ubuzima+ is a secure digital health and business operations platform used by authorized organizations and their staff. This Privacy Policy explains how information is handled when users access the Ubuzima+ Android application and related Ubuzima+ services.
1. Information we handle
Depending on the organization, user role, and modules enabled, Ubuzima+ may process:
- Account and profile information, such as name, email address, phone number, user/account identifier, role, branch, tenant, or workspace association.
- Authentication and security information, such as session information, access events, audit records, and security controls required to protect accounts.
- Business and operational records, including sales, point-of-sale, products, inventory, procurement, supplier, reporting, administrative, and other records entered or generated through authorized workflows.
- Pharmacy, customer, patient, and health-related information when an authorized organization uses workflows that require those records, including dispensing or care-support information.
- Finance and insurance-related operational information when relevant modules are used. Pharmacy customers may optionally save one or more insurer preferences so Ubuzima+ can use insurer participation as one relevance signal when ranking available pharmacy offers; insurer mismatch does not hide an otherwise available offer.
- Messages and user-generated operational content submitted through authorized messaging, notes, forms, or workflow features.
- Technical information required for secure operation, diagnostics, notification delivery, connectivity, and service reliability.
- Camera and product-image information when an authorized user intentionally scans a barcode/code or captures/uploads a product image for the pharmacy catalogue. Product images may be normalized for commercial presentation and are governed before customer display. The native Android application is not designed to store raw biometric templates; biometric matching is performed by Android.
2. How information is used
Information is used to authenticate users, provide requested business and health-operation functionality, enforce role and tenant access, maintain security and auditability, support transactions and reporting, deliver requested notifications, troubleshoot service issues, and meet legitimate operational, legal, regulatory, and security requirements.
3. Data sharing and service providers
Ubuzima+ does not sell personal or sensitive user data. Information may be accessible to authorized users within the relevant organization and may be processed by infrastructure, hosting, communications, security, support, or other service providers acting on behalf of Ubuzima+. Information may also be disclosed when required by law or when a user or organization intentionally initiates a workflow that requires transfer to an authorized recipient.
4. Device permissions
The Android app may request Internet/network access, camera access for barcode scanning and authorized product-photo capture, notifications, vibration/haptic functions, wake/boot functionality used by notifications, and biometric/fingerprint authentication. Customer pharmacy discovery can use an approximate or precise location only when the user explicitly chooses a nearby-pharmacy location feature and the device/browser permits it; customers can instead search pharmacies manually by name, branch, or address. Ubuzima+ does not otherwise require location and does not request contacts, SMS, call-log, microphone, or broad media/storage permissions in the current Android release.
5. Security
Ubuzima+ uses HTTPS for production network traffic and authenticated, role-aware and tenant-aware access controls. Access may be audited. The native sign-in experience is designed not to persist plaintext account passwords on the device. Users and organizations are responsible for keeping authorized credentials secure and limiting access to approved personnel.
6. Retention, correction, and deletion
Information is retained for as long as necessary to provide the service and for legitimate business, security, audit, contractual, legal, or regulatory requirements. Retention periods may vary according to the record type and the requirements of the organization responsible for the data.
Ubuzima+ supports self-service customer account creation for pharmacy customers. Customer accounts can be deleted directly in Ubuzima+ Customer under Profile → Delete customer account. A public deletion-request route is also available at /customer/delete-account/ for customers who cannot access the app. Pharmacy staff and organizational accounts remain provisioned and managed by authorized organizations or administrators. Users may also request correction, access, or deletion by contacting info@ubuzimaplus.com. Where information is controlled by a user’s organization, a request may be referred to that organization’s authorized administrator. Data that must be retained for legal, regulatory, fraud-prevention, security, or audit purposes may be retained for the required period; retained pharmacy transaction records can be detached from a deleted customer portal account where appropriate.
7. Children
Ubuzima+ serves authorized organizational users and pharmacy customers. The customer account experience is intended for adults and is not designed or marketed for children.
8. International processing
Where service providers or authorized operations involve processing across jurisdictions, Ubuzima+ applies appropriate contractual, organizational, and technical safeguards required for the information concerned.
9. Changes to this policy
This policy may be updated when the application, data practices, or legal requirements change. The effective date above will be updated when material revisions are published.
10. Contact
For privacy questions, support, data-access requests, correction requests, or deletion requests, contact info@ubuzimaplus.com.
Application: Ubuzima+ • Package: com.ubuzimaplus.app