Legal & Compliance

Privacy Policy

This policy explains how The GoLive Digital Solutions Company Ltd. collects, uses, shares and safeguards your personal data when you use our services.

Effective date
17 June 2026
Data controller
The GoLive Digital Solutions Company Ltd.
NDPR Compliance Badge

NDPA 2023 & GAID 2025 Compliant

1. Who We Are

The GoLive Digital Solutions Company Ltd. ("GoLive," "we," "us," or "our") is an authorized Microsoft Indirect Reseller incorporated in Nigeria (RC1644767) with registered office at 7 Ibiyinka Olorunbe Close, Victoria Island, Lagos 106104, Nigeria. We operate the GoLive Cloud Marketplace at cloud.golivecompany.com and serve businesses across Africa with Microsoft 365, Azure, Copilot and Defender solutions.

We are the data controller responsible for your personal information under the Nigeria Data Protection Act (NDPA) 2023 and the General Application and Implementation Directive (GAID) effective September 2025.

Scope of this policy

This policy applies to all personal data processed by The GoLive Digital Solutions Company Ltd. across our website, client portal, assessment forms, migration requests and related services. It does not cover third-party websites we may link to, including Microsoft's own services.

2. Information We Collect

We collect information you provide directly, data generated through your use of our services, and information from Microsoft as your CSP.

  • Identity & contact data: Full name, business email address, phone number and WhatsApp number.
  • Business data: Company name, industry, domain name, number of users and current email provider.
  • Microsoft tenant data: Tenant ID, domain, license count and subscription details (as your CSP).
  • Transaction data: Services purchased, invoices, payment metadata and renewal dates.
  • Technical data: IP address, device type, browser and usage analytics from cloud.golivecompany.com.

Microsoft data access

As your Microsoft CSP, GoLive has administrative access to your tenant. We do NOT access the content of your emails, files, Teams messages or other Microsoft 365 data unless you explicitly grant access for a specific support purpose.

3. How We Use Your Data

We use your personal data to deliver and improve our Microsoft cloud services, communicate with you, process payments, and meet legal obligations. We never sell your personal data to third parties.

  • Setting up and managing your Microsoft 365 tenant and licenses
  • Processing assessment and migration requests
  • Sending invoices, renewal reminders and support communications
  • Configuring security settings (MFA, SPF, DKIM, DMARC, Defender)
  • Responding to support requests within our SLA
  • Notifying you of Microsoft product updates relevant to your subscription
  • Sending marketing communications where you have opted in

Marketing communications

We only send marketing messages where you have opted in. You can withdraw consent at any time by emailing contact@golivecompany.com or using the unsubscribe link in any marketing email.

We process personal data only where we have a valid legal basis under the NDPA 2023.

Processing activityLegal basis
Providing and maintaining our Microsoft 365 servicesPerformance of a contract
Processing payments and issuing invoicesLegal obligation
Sending marketing communicationsConsent
Improving services and preventing fraudLegitimate interests
Responding to legal or regulatory requestsLegal obligation
Microsoft CSP license provisioningPerformance of a contract

5. Data Sharing & Disclosure

GoLive does not sell your personal information. We may share your information with:

  • Microsoft Corporation: As your CSP, we share necessary business information to provision and manage your Microsoft 365 licenses. Microsoft's privacy practices are at privacy.microsoft.com.
  • Authorized distributors: Ingram Micro, Crayon or Westcon as our Microsoft Indirect Provider for license ordering. They process data under their own data protection agreements.
  • Payment processors: For invoice and subscription management, bound by appropriate data protection standards.
  • Legal authorities: Where required by Nigerian law, court order or government request.

6. Data Retention

We retain personal data only for as long as necessary to fulfil the purposes for which it was collected, including legal, tax and accounting requirements under Nigerian law.

Data categoryRetention periodReason
Active customer recordsDuration of service + 7 yearsService delivery and statutory financial obligations
Assessment & lead enquiries2 years from enquiry dateSales relationship management
Invoice and payment records7 yearsNigerian tax law compliance
Support communications3 yearsQuality assurance and dispute resolution
Marketing preferencesUntil consent withdrawn + 1 yearConsent-based processing
Website visitor logs90 daysSecurity monitoring

7. Your Rights

Under the NDPA 2023 and GAID 2025, you have the following rights regarding your personal data. To exercise any right, contact us at contact@golivecompany.com. We respond within 30 days.

Right to Access

Request a copy of the personal data we hold about you and confirmation of how it is processed.

Right to Rectification

Ask us to correct inaccurate or incomplete personal information without undue delay.

Right to Erasure

Request deletion of your personal data where there is no lawful reason for us to keep it.

Right to Restrict

Limit how we process your data while a query or objection about its use is resolved.

Right to Portability

Receive your data in a structured, machine-readable format or have it transferred elsewhere.

Right to Object

Object to processing based on legitimate interests or to direct marketing at any time.

Right to Withdraw Consent

Withdraw consent you previously gave, without affecting the lawfulness of prior processing.

Right to Lodge a Complaint

File a complaint with the Nigeria Data Protection Commission (NDPC) if your rights are breached.

8. Data Security

We implement appropriate technical and organizational measures to protect your data, including:

  • Encrypted data transmission using HTTPS/TLS
  • MongoDB database with authentication and role-based access controls
  • Access controls limiting data to authorized GoLive staff only
  • Regular security reviews and vulnerability assessments
  • Staff training on data protection and security
  • Incident response procedures for data breaches

Breach notification

In the event of a personal data breach likely to affect your rights and freedoms, we will notify affected individuals and the Nigeria Data Protection Commission (NDPC) within 72 hours, as required by the NDPA 2023.

9. International Transfers

As your Microsoft CSP, your Microsoft 365 data may be processed and stored in Microsoft data centres outside Nigeria. For Africa-based GoLive clients, data is typically stored in Microsoft's South Africa North or South Africa West data centres.

We ensure international data transfers comply with NDPA 2023 requirements through Microsoft's Data Processing Agreement, Standard Contractual Clauses, and Microsoft's certifications including ISO 27001 and SOC 2 Type II.

10. Cookies

The GoLive Cloud Marketplace uses only essential session cookies required for portal login and security, and privacy-respecting analytics to understand how visitors use our website. We do not use advertising cookies, third-party tracking cookies, or share browsing data with advertisers.

11. Contact Us

For questions about this Privacy Policy or to exercise your rights, contact our Data Protection Officer:

Data Protection Officer

The GoLive Digital Solutions Company Ltd. · RC1644767

Email
contact@golivecompany.com
WhatsApp / Phone
+234 808 358 7801
Address
7 Ibiyinka Olorunbe Close, Victoria Island, Lagos 106104, Nigeria
Regulatory authority: Nigeria Data Protection Commission (NDPC) — ndpc.gov.ng