Privacy Policy
How Cardinal Dovel Group Ltd. collects, uses, and protects your information.
1. Who We Are
Cardinal Dovel Group Ltd. ("CDG", "the Company", "we", "us", or "our") is a company incorporated in the Republic of Ghana, with its registered address at 4 Limia Street, Accra, Ghana. We operate the website at cardinaldovelgroup.com (the "Website"). For the purposes of the Data Protection Act, 2012 (Act 843), Cardinal Dovel Group Ltd. is the data controller responsible for the personal data described in this policy. Our primary contact email is info@cardinaldovelgroup.com.
2. Scope of This Policy
This policy applies to personal data we collect through the Website, including our inquiry and contact forms. It does not apply to information collected offline (for example, through physical meetings, phone calls, or paper documents) or to any information exchanged as part of a separate written contract with CDG, which may be subject to its own confidentiality and data-handling terms.
3. Information We Collect
We collect information you voluntarily submit through our inquiry form, which may include:
- Full name and organization or company name
- Email address and phone number
- City and country
- Inquiry type, timeline, indicative budget, and details of your request
We also automatically collect limited technical information when you browse the Website, such as IP address, browser type, device type, pages visited, and referring pages, generally through our hosting and security provider (Cloudflare). This information is used for security, fraud prevention, and understanding aggregate website usage, and is not used to build individual marketing profiles.
4. Legal Basis for Processing
Under the Data Protection Act, 2012 (Act 843), we process your personal data on the following bases: (a) your consent, given by voluntarily submitting the inquiry form; (b) our legitimate business interest in responding to inquiries and maintaining relationships with clients, partners, and suppliers; and (c) where applicable, to take steps toward entering into a contract with you or your organization, or to comply with a legal obligation.
5. How We Use Your Information
We use the information you provide to:
- Respond to and process your inquiry, including routing it to the relevant department
- Communicate with you about CDG's products, services, or a potential business relationship
- Maintain records of business correspondence and inquiries
- Comply with applicable legal, tax, procurement, or regulatory requirements
- Protect the security and integrity of the Website
We do not sell your personal data. We do not use your information for unrelated third-party marketing, and we do not use automated decision-making or profiling that produces legal or similarly significant effects on you.
6. What We Do Not Collect
This Website is not designed to collect medical records, diagnostic results, or other sensitive patient health information, and you should not submit such information through our inquiry form or any other part of the Website. If you need to share sensitive health-related information with us, please contact us directly so we can arrange an appropriate, secure channel.
7. Sharing and Disclosure of Information
We share personal data only as necessary to operate the Website and respond to your inquiry, including with:
- Zoho ZeptoMail - our transactional email service provider, used solely to deliver inquiry notifications and confirmation emails.
- Cloudflare - our website hosting, content delivery, and security provider.
- Relevant CDG departments (for example, healthcare, government, or import/export teams), solely to respond to your specific inquiry.
- Government authorities or professional advisers, where we are required to do so by law or to establish, exercise, or defend a legal claim.
We do not sell, rent, or trade your personal data to unrelated third parties for their own marketing purposes.
8. International Data Transfers
Some of our service providers (including Cloudflare and Zoho ZeptoMail) may process or store data on servers located outside Ghana. Where personal data is transferred outside Ghana, we take steps intended to ensure it receives a level of protection consistent with the Data Protection Act, 2012 (Act 843), including relying on providers with recognized international security and data-protection standards.
9. Data Retention
We retain inquiry data for as long as reasonably necessary to respond to your request, maintain a record of business correspondence, and comply with our legal, accounting, or regulatory obligations, and in any event for no longer than seven (7) years after our last contact with you, in line with our record-keeping obligations. When personal data is no longer needed for these purposes, we take reasonable steps to delete or anonymize it.
10. Data Security
We use reasonable technical and organizational measures to protect personal data submitted through the Website, including transmission of form submissions over encrypted (HTTPS) connections, restricted access to inquiry data on a need-to-know basis, and use of reputable third-party infrastructure providers (Cloudflare, Zoho) with their own security safeguards. However, no method of transmission or storage over the internet is completely secure, and we cannot guarantee absolute security.
11. Your Rights Under the Data Protection Act, 2012 (Act 843)
As a data subject, you have the right to:
- Be informed of the use to which your personal data is to be put, as set out in this policy
- Access the personal data we hold about you
- Request correction or updating of inaccurate or incomplete personal data
- Object to, or request that we stop, processing your personal data for direct marketing
- Withdraw consent to processing at any time, where processing is based on consent
- Request deletion of personal data that is no longer required for the purpose it was collected
- Lodge a complaint with Ghana's Data Protection Commission if you believe your rights under Act 843 have been infringed
To exercise any of these rights, please contact us using the details in Section 15 below. We will respond within a reasonable time and in accordance with the Data Protection Act, 2012 (Act 843).
12. Cookies and Website Analytics
The Website may use limited, privacy-conscious analytics (such as Cloudflare Web Analytics) to understand aggregate visitor traffic. Where used, this analytics service does not use cookies or collect personally identifiable information for tracking individual visitors across websites. If this changes in future - for example, if we introduce cookie-based advertising or tracking - we will update this policy and, where required by law, request your consent.
13. Children's Privacy
This Website is intended for business and institutional use and is not directed at children. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, please contact us so we can delete it.
14. Third-Party Links
The Website may contain links to third-party websites (for example, social media platforms). We are not responsible for the privacy practices or content of third-party websites. We encourage you to review the privacy policy of any third-party website you visit.
15. How to Contact Us
For privacy-related questions, to exercise your data protection rights, or to raise a concern, please contact us at info@cardinaldovelgroup.com, or by post at 4 Limia Street, Accra, Ghana. If you are not satisfied with our response, you may lodge a complaint with Ghana's Data Protection Commission.
16. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. We will post the updated version on this page with a revised "Last updated" date. We encourage you to review this page periodically.
17. Governing Law
This Privacy Policy is governed by the laws of the Republic of Ghana, including the Data Protection Act, 2012 (Act 843) and the Electronic Transactions Act, 2008 (Act 772).
Last updated: 24 July 2026
