Privacy Policy

Last Updated: December, 2025

1. Introduction

This Privacy Policy explains how the applicable Pharmachain entity (“Company,” “we,” “us,” or “our”) collects, uses, and safeguards personal information when you use our digital platform, applications, and services (the “Platform”), including PharmachainAI. Depending on your location, the Company refers to:

Each Company operates independently and acts as the data controller for personal data processed in connection with its respective users. Nothing in this Privacy Policy creates joint control, partnership, or shared liability between the Companies. We are committed to protecting your privacy and complying with applicable data protection laws, including:

By creating an account or using the Platform, you acknowledge that certain personal information is required to provide our services. Where we process medical, health-related, or other sensitive personal data, we do so only with your explicit consent, which is obtained through clear affirmative actions (such as account registration, consent checkboxes, or in-app confirmations). You may withdraw your consent at any time, subject to applicable legal and regulatory obligations.

2. Data Controller

The applicable Pharmachain entity acts as the data controller for personal information processed through the Platform, depending on the user’s location.

Contact Information:

For any data protection inquiries or complaints, you may contact us at the above email or the relevant regulatory authority in your jurisdiction.

3. Information We Collect

We collect information that you provide directly and information automatically collected when you use or interact with our Platform. Categories of personal information include:

  1. Personal Information: Name, Phone number, Email address, IP address, Approximate location, User-generated content(messages, notes, reviews, or submissions)
  2. Prescription Information: Where necessary to assist in locating medications, users may voluntarily submit prescription information. Prescription data is collected solely for the purpose of facilitating pharmacy searches and is not retained beyond what is necessary for that purpose.
  3. Financial Information: The Company does not collect, store, or process payment card details, banking information, or billing information.

    All payments are processed through verified third-party payment gateways or processors, which act as independent data controllers and handle such information in accordance with their own privacy policies.

  4. Blockchain and Token Data:
    • PHAI utility token usage data
    • Wallet addresses
    • Transaction metadata associated with searches, reservations, or services
    • Facilitating pharmacy searches, reservations, PHAI token-related Platform functionality, and AI-powered medicine searches
  5. Third-Party Data:

    Certain third-party services integrated with the Platform such as payment processors, blockchain wallet providers, and infrastructure partners, may act as independent data controllers and process personal information in accordance with their own privacy policies. Where such services are used, we make reasonable efforts to clearly identify them within the Platform or at the point of use, and to provide access to their privacy policies so users can make informed decisions before engaging with those services.

4. How We Use Personal Information

We may use your information for purposes including:

5.Lawful Basis for Processing

We process personal information based on one or more lawful bases:

For US users, this includes compliance with HIPAA and Texas Data Privacy and Security Act (TDPSA) rights where applicable.

6. Disclosure of Personal Information

We may share your information with:

All disclosures comply with NDPR (Nigeria) and HIPAA/ Texas Data Privacy and Security Act (TDPSA) (USA) requirements.

7. Data Subject Rights

Nigeria (NDPA/NDPR):

USA (Texas Data Privacy and Security Act (TDPSA) /HIPAA):

To exercise any rights, contact: [email protected]. Identity verification may be required.

8. Data Security

We implement technical, administrative, and organizational measures to protect your personal data:

While we take all reasonable measures, no transmission over the Internet is 100% secure

9. Data Retention

We retain personal data only as long as necessary to provide services and comply with legal obligations, considering:

10. Blockchain and AI Transparency

Pharmachain uses artificial intelligence (AI) technologies to support medicine-related searches and to present relevant pharmaceutical information based on user inputs. These AI tools analyze search queries and related data to help users identify medications, availability, and general pharmaceutical guidance.

AI-generated results are provided for informational and support purposes only. They are not intended to replace professional medical advice, diagnosis, or treatment. Users are encouraged to consult qualified healthcare professionals before making medical decisions.

Pharmachain also utilizes blockchain technology in connection with the PHAI utility token to enable secure, transparent, and verifiable transactions related to searches and pharmacy reservations. Blockchain records associated with token usage are permanent and cannot be altered or deleted.

Where personal information is processed alongside blockchain transactions, Pharmachain minimizes on-chain personal data and stores identifiable information off-chain where possible. If a user requests deletion of personal data, we will take reasonable steps to anonymize or disassociate identifiable information from blockchain records, to the extent technically and legally feasible

11. Age of Consent

Our services are intended only for individuals who have the legal capacity to consent under applicable law. We do not knowingly collect personal data from individuals who lack such capacity.

12. Links to Other Sites

The Platform may contain links to third-party websites. We are not responsible for the content or privacy practices of those sites. Review their privacy policies separately

13. Patient-Pharmacist/Pharmacies Confidentiality

Medical and prescription information may be shared with registered pharmacists and Pharmacy Partners to facilitate medication guidance, fulfillment, and service delivery

14. Personal Data Breach Response and Remedies

Pharmachain AI takes personal data protection seriously and has established procedures to identify, assess, manage, and respond to personal data breaches in accordance with applicable data protection laws.

In the event of a confirmed or suspected personal data breach, we will, where required by applicable law, take the following actions:

a. Investigation and Containment We will promptly investigate the incident and take immediate steps to secure affected systems, limit further exposure, and preserve relevant evidence. Reported or identified violations of this Privacy Policy will be reviewed and addressed within a reasonable timeframe, typically within fifteen (15) days, depending on the nature and complexity of the incident.

b. Risk and Impact Assessment We will assess the scope and severity of the breach, including:

c. Notification of Users and Regulators Where required under applicable law, we will notify affected users and relevant regulatory authorities within legally prescribed timeframes. Such notifications will include, where appropriate:

Affected users will receive confirmation and relevant information as soon as reasonably practicable, taking into account the need for accurate investigation and lawful reporting obligations.

d. Mitigation and Remedial Measures We will take reasonable and proportionate steps to mitigate the effects of the breach, which may include:

e. Corrective and Disciplinary Actions Following a breach, Pharmachain AI will review and strengthen its technical, administrative, and organizational safeguards to reduce the likelihood of similar incidents in the future. Employees, contractors, or representatives found to have violated this Privacy Policy may be subject to appropriate disciplinary or corrective measures, including sanctions, access restrictions, or termination, typically within fifteen (15) days, subject to due process and applicable law.

f. Third-Party Incidents Where a breach involves personal data processed by third-party service providers, Pharmachain AI will work with such parties to ensure appropriate remedial action is taken in accordance with contractual obligations and applicable legal requirements.

15. Complaints

You may file complaints with:

We encourage contacting us first at [email protected] to resolve concerns

16. Changes to this Privacy Policy

We may update this Privacy Policy in compliance with NDPA, NDPR, HIPAA, and Texas Data Privacy and Security Act (TDPSA) Changes are effective immediately upon posting on the Platform.

17. Contact Information

By using PharmachainAI or the Platform, you agree to this Privacy Policy. If you do not agree, please refrain from using our services.