A compliance API, not just a dashboard
Compliance fails at the integration boundary. Handling a DSAR properly means reaching into the systems that actually hold the data — your core banking platform, your CRM, your warehouse. These are the interfaces for doing that without exporting raw personal data into a spreadsheet.
DSAR API & Reference
Raise, track and fulfil data subject requests programmatically, so your own systems participate in the workflow rather than someone copying results between screens.
- Full endpoint reference with request and response shapes
- Quickstart for a first integration
- Scoped API keys per project, revocable independently
Authentication & Key Management
Project-scoped API keys, hashed at rest and revocable without disturbing your other integrations.
- Keys issued and revoked per project
- Hashed storage — the raw key is shown once
- Requests attributed to the key that made them
Integration Sandbox
A console for firing real requests at the gateway with a synthetic identifier, so you can watch your own handler respond to an erasure or access request before a live customer raises one.
- Erasure, access and portability request types exercised interactively
- Synthetic customer identifiers generated per test run, tagged as sandbox-originated
- Integration checklist to work through before going live
Blueprints & Signed Webhooks
Reference patterns for common Nigerian stacks, plus signed webhooks so your backend hears about consent and DSAR events as they happen.
- Integration blueprints for typical data source topologies
- HMAC SHA-256 signatures your endpoint can verify
- Delivery logs with status and duration for every attempt
Explore the rest of the platform
Consent management built for Nigerian regulation
Banner, cookie scanning, mobile SDKs and an evidentiary consent register.
Data Subject RightsDSAR handling and grievances, on the statutory clock
A DSAR register under section 34 and a SNAG grievance desk under GAID Schedule 9.
Governance & RiskRoPA, DPIAs and a risk register the regulator will recognise
Records of processing, impact assessments, vulnerability indexes and a 5×5 risk register.
Audit & ReportingFile your Compliance Audit Return without the annual scramble
Audit workbench, CAR evidence pack exporter and the statutory fee calculator.
Third-Party RiskYour processors are your exposure
Vendor due diligence under §29, processor DPAs and cross-border transfer assessments.
WorkforceThe obligations that point inward, not at your customers
Staff training under §24, employee privacy notices and the Basic Privacy Checklist.
For PartnersSee your whole client book in one place
Client portfolio, licence renewals and usage for channel partners and resellers.
Incident ResponseThe 72-hour clock starts the moment you know
Breach assessment, NDPC notification and remediation through to root cause.
See it against your own compliance gaps.
We'll walk you through the modules that matter for how your organisation actually processes personal data — using your own site, not a canned demo.
- A 30-minute walkthrough, no slides
- A live cookie scan of your website, yours to keep
- Straight answers on scope, timelines and pricing