Last updated: April 2026
MedCart Kenya ("we", "our", or "us") is committed to protecting the privacy and security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your data when you visit our website and use our services.
1. Information We Collect
Personal Information
When you create an account, place an order, or contact us, we may collect:
- Full name, email address, and phone number
- Delivery address and billing information
- Date of birth (where required for age-restricted products)
- M-Pesa phone number or payment card details (processed securely by our payment partners)
Order Information
We collect details about products you purchase, order history, delivery preferences, and prescription information where applicable.
Browsing Data
We automatically collect certain information when you visit our website, including your IP address, browser type, device information, pages viewed, and referring URLs.
2. How We Use Your Information
We use the information we collect to:
- Process and fulfill your orders, including prescription verification
- Communicate with you about your orders, account, and promotional offers
- Improve our website, products, and services
- Provide customer support and respond to your inquiries
- Comply with legal obligations and regulatory requirements
- Detect and prevent fraud or unauthorized activities
3. Prescription Information
Prescription information is handled with the highest level of confidentiality. All prescriptions are verified by our licensed pharmacists in accordance with the Pharmacy and Poisons Act of Kenya. Prescription data is stored securely and is only accessible to authorized pharmaceutical personnel. We do not share prescription information with third parties except as required by law or for the purpose of dispensing your medication.
4. Data Security
We implement industry-standard security measures to protect your personal information, including SSL/TLS encryption for data transmission, secure server infrastructure, and restricted access controls. Payment information is processed through PCI-DSS compliant payment processors and is never stored on our servers.
5. Cookies
Our website uses cookies and similar technologies to:
- Remember your preferences and login sessions
- Analyze website traffic and usage patterns
- Provide personalized product recommendations
- Improve website performance and user experience
You can manage your cookie preferences through your browser settings. Disabling cookies may affect certain features of our website.
6. Third-Party Services
We may share your information with trusted third-party service providers who assist us in operating our business:
- Payment Processors: M-Pesa (Safaricom), Visa, and MasterCard payment gateways for secure transaction processing
- Delivery Partners: Courier and logistics companies for order fulfillment and delivery
- Analytics Providers: Services that help us understand website usage and improve our offerings
These third parties are contractually obligated to protect your data and use it only for the purposes we specify.
7. Your Rights
Under applicable data protection laws, you have the right to:
- Access: Request a copy of the personal data we hold about you
- Correction: Request correction of inaccurate or incomplete data
- Deletion: Request deletion of your personal data, subject to legal retention requirements
- Objection: Object to the processing of your data for marketing purposes
- Portability: Request transfer of your data to another service provider
To exercise any of these rights, please contact us at support@afyacart.net.
8. Data Retention
We retain your personal information for as long as necessary to fulfill the purposes outlined in this policy, comply with legal obligations, resolve disputes, and enforce our agreements. Order and transaction records are retained for a minimum of seven years as required by Kenyan tax and pharmaceutical regulations.
9. Children's Privacy
Our services are not directed to individuals under the age of 18. We do not knowingly collect personal information from children. If we become aware that we have collected data from a child without parental consent, we will take steps to delete that information promptly.
10. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or applicable laws. We will notify you of any material changes by posting the updated policy on our website with a revised "Last updated" date. We encourage you to review this policy periodically.
11. Contact Us
If you have any questions or concerns about this Privacy Policy or our data practices, please contact us:
- Email: support@afyacart.net
- Phone: +254 734 600 890
- Address: Nairobi, Kenya