GlimmedicGlimmedic
Back to home

Compliance & Regulation

Glimmedic operates across multiple jurisdictions and is committed to full compliance with healthcare data protection laws globally.

Our Compliance Approach

Healthcare data is among the most sensitive personal information. Glimmedic applies privacy-by-design principles, meaning data protection is built into every feature — not added as an afterthought. We operate under a multi-jurisdictional compliance model that addresses the requirements of Nigeria, the European Union, the United Kingdom, and other markets we serve.

🇳🇬

NDPR — Nigeria

Active

Nigeria Data Protection Regulation

  • Registered with the Nigeria Data Protection Commission (NDPC)
  • All patient data of Nigerian residents processed per NDPR guidelines
  • Data subjects have rights to access, correct, and delete their data
  • Data Protection Impact Assessments (DPIA) conducted for high-risk processing
  • Breach notification within 72 hours of discovery
🇪🇺

GDPR — European Union

Active

General Data Protection Regulation

  • Lawful bases for processing: consent, contract performance, legitimate interest
  • Data minimisation — we only collect what is necessary
  • Purpose limitation — data used only for stated purposes
  • EU/EEA data stays within adequacy-decision jurisdictions
  • Data subject rights: access, rectification, erasure, portability, objection
🇬🇧

UK GDPR

Active

UK General Data Protection Regulation

  • UK GDPR applies to all UK-resident practitioners and patients
  • Compliant with the Data Protection Act 2018
  • ICO (Information Commissioner's Office) guidance followed
  • UK practitioners' data processed in compliance with NHS Digital standards where applicable
🇺🇸

HIPAA-Aware (US)

Active

Health Insurance Portability and Accountability Act

  • US-based practitioners should review HIPAA applicability for their practice
  • Glimmedic is designed with HIPAA-aligned security standards
  • Business Associate Agreements (BAA) available on request for US practitioners
  • Contact Glimmedic@gmail.com to request a BAA

Your Rights as a Data Subject

Right to Access

Request a copy of all personal data we hold about you.

Right to Rectification

Correct inaccurate or incomplete data in your profile.

Right to Erasure

Request deletion of your data (subject to legal retention requirements).

Right to Portability

Receive your data in a machine-readable format.

Right to Object

Object to processing of your data for direct marketing or profiling.

Right to Withdraw Consent

Withdraw consent at any time without affecting prior lawful processing.

To exercise any of these rights, email us at Glimmedic@gmail.com. We will respond within 30 days.

We use cookies to improve your experience. By using Glimmedic, you agree to our cookie policy.