Last Updated: 28 September 2026
Digistra Wave Enterprise (“Digistra Wave,” “we,” “our,” or “us”) is committed to handling personal information responsibly and transparently.
This GDPR & Data Protection Policy explains the principles we follow when processing personal information through digistrawave.com, including information associated with user accounts, webinar registrations, subscriptions, payments, digital learning resources, communications, and website activity.
As a Ghana-based business, Digistra Wave handles personal information with regard to applicable Ghanaian data protection requirements, including the Data Protection Act, 2012 (Act 843). The EU General Data Protection Regulation (“GDPR”) or UK GDPR may additionally apply where their respective territorial requirements are satisfied.
1. Scope
This policy may apply when you:
- Visit digistrawave.com;
- Create an account;
- Register for a webinar;
- Purchase webinar access;
- Subscribe to learning services;
- Access eligible recordings or resources;
- Receive certificates where offered;
- Contact our support team;
- Subscribe to communications; or
- Otherwise interact with Digistra Wave.
The specific information processed depends on the services you use.
2. Data Protection Principles
Where applicable, Digistra Wave seeks to process personal information according to established data protection principles.
These include:
Lawfulness, fairness and transparency: Personal information should be processed fairly and on an appropriate legal basis.
Purpose limitation: Information should be collected for legitimate and identified purposes.
Data minimization: We seek to collect only information reasonably relevant to those purposes.
Accuracy: Reasonable steps may be taken to maintain accurate information where necessary.
Storage limitation: Personal information should not be retained indefinitely without an appropriate reason.
Security: Appropriate measures should be used to protect personal information against unauthorized access, loss, alteration, or misuse.
3. Personal Information We May Process
Depending on your interaction with Digistra Wave, we may process:
- Name and email address;
- Account information;
- Webinar registrations;
- Subscription information;
- Learning activity;
- Certificate-related information;
- Transaction references;
- Payment status;
- Communications and enquiries;
- Marketing preferences;
- IP address;
- Browser and device information;
- Website activity; and
- Security or diagnostic information.
We seek to avoid collecting unnecessary sensitive personal information.
4. Lawful Bases for Processing
Where GDPR or another applicable law requires a lawful basis, processing may rely on one or more appropriate grounds.
Contract
Processing may be necessary to create an account, administer a webinar registration, provide subscription access, or deliver another requested service.
Consent
Consent may be used for eligible marketing communications, certain cookies, or other optional processing where required.
Legitimate Interests
Certain processing may be necessary for legitimate operational purposes such as maintaining website security, preventing fraud, improving services, and managing platform performance.
We seek to balance these interests against applicable individual privacy rights.
Legal Obligation
Certain information may need to be processed or retained to comply with applicable legal, regulatory, accounting, or reporting obligations.
Other lawful grounds may apply where specifically permitted by law.
5. Webinar and Subscription Data
Information associated with webinars and subscriptions may be processed to:
- Confirm registrations;
- Provide access;
- Send joining instructions;
- Maintain subscriptions;
- Deliver eligible recordings;
- Provide learning resources;
- Record relevant participation;
- Administer certificates where applicable; and
- Resolve access or support issues.
We aim to limit this processing to information reasonably necessary for the relevant learning service.
6. Payment Information
Payments may be processed by independent third-party payment providers.
Digistra Wave may receive limited information such as transaction references, payment status, amount, and service purchased.
We do not intentionally store complete payment-card numbers or card security codes as part of ordinary user account information.
Payment providers may process information according to their own legal, privacy, and security obligations.
7. Your Data Protection Rights
Depending on the law applicable to your circumstances, you may have rights concerning your personal information.
These may include the right to:
- Request access to your information;
- Correct inaccurate or incomplete information;
- Request deletion in eligible circumstances;
- Restrict certain processing;
- Object to certain processing;
- Receive eligible information in a portable format;
- Withdraw consent where processing relies on consent; and
- Submit a complaint to an appropriate data protection authority.
These rights are not absolute and may be subject to lawful limitations or exceptions.
8. Right to Access
Where applicable, you may request confirmation of whether Digistra Wave processes your personal information and request access to eligible information.
We may need to verify your identity before providing information to protect accounts and personal data from unauthorized disclosure.
9. Right to Correction
Users may request correction of personal information that is inaccurate or incomplete.
Providing accurate account and contact information helps us administer webinar registrations, subscriptions, and support requests effectively.
10. Right to Deletion
Where legally applicable, users may request deletion of eligible personal information.
Deletion may be limited where information must reasonably be retained for:
- Legal compliance;
- Transaction records;
- Accounting;
- Fraud prevention;
- Security;
- Dispute resolution; or
- Legal claims.
Additional details are available in our Account & Data Deletion Policy.
11. Marketing Rights
Where promotional communications are sent, users may have the right to opt out at any time.
Eligible marketing emails may include an unsubscribe mechanism.
Marketing opt-outs do not prevent necessary communications relating to webinar access, subscriptions, transactions, account administration, or security.
12. Cookies and Consent
Digistra Wave may use cookies and similar technologies for website functionality, security, preferences, analytics, and other appropriate purposes.
Where applicable law requires consent before non-essential cookies are used, we will seek to provide an appropriate consent mechanism.
Further information is available in our Cookie Policy.
13. Automated Processing and AI
Digistra Wave may provide educational content about artificial intelligence and automation.
Providing AI-related educational material does not mean that personal information submitted through Digistra Wave is automatically used to train AI models.
If automated technologies are used for recommendations, analytics, personalization, security, or fraud detection, relevant personal information will be handled according to applicable data protection requirements.
We do not claim to make solely automated decisions producing legal or similarly significant effects unless such functionality is actually implemented and appropriately disclosed.
14. International Data Transfers
Some service providers supporting Digistra Wave may process information outside Ghana or outside the user’s country.
Where GDPR or another applicable data protection law requires safeguards for international transfers, appropriate mechanisms may be used.
Depending on the circumstances, these may include:
- Adequacy mechanisms;
- Standard Contractual Clauses;
- Appropriate contractual safeguards; or
- Other legally recognized transfer mechanisms.
15. Data Retention
Personal information is retained only for as long as reasonably necessary for the purpose for which it is processed and applicable legal obligations.
Retention may depend on:
- Account activity;
- Webinar participation;
- Subscription status;
- Transactions;
- Certificate records;
- Customer support;
- Security requirements;
- Fraud prevention;
- Dispute resolution; and
- Legal or accounting obligations.
Information no longer reasonably required may be deleted, anonymized, or securely handled according to applicable requirements.
16. Data Security
Digistra Wave seeks to use reasonable organizational and technical safeguards appropriate to the nature of the information processed.
Measures may include, where applicable:
- Secure connections;
- Access controls;
- Account authentication;
- Secure hosting;
- System monitoring;
- Security updates;
- Backup measures; and
- Fraud-prevention controls.
No online system can guarantee absolute security, but reasonable measures should be maintained to reduce foreseeable risks.
17. Personal Data Breaches
If a personal data breach occurs, Digistra Wave may take reasonable steps to investigate, contain, document, and address the incident.
Where applicable law requires notification, relevant authorities and/or affected individuals may be informed within the legally required framework.
Our response will depend on factors such as the nature of the information involved, potential risks, and applicable legal obligations.
18. Third-Party Data Processors
Digistra Wave may use external service providers for functions such as:
- Hosting;
- Cloud infrastructure;
- Webinar delivery;
- Payment processing;
- Email communications;
- Analytics;
- Video services;
- Security; and
- Customer support.
Where third parties process personal information on our behalf, we seek to use appropriate arrangements consistent with applicable data protection requirements.
19. Ghana Data Protection Requirements
Digistra Wave operates from Ghana and therefore considers applicable requirements under Ghana’s Data Protection Act, 2012 (Act 843) when processing personal information.
Our approach includes principles concerning lawful processing, appropriate use of personal information, security, transparency, and applicable individual rights.
Where relevant, individuals may also have rights to raise data protection concerns with the appropriate Ghanaian authority.
20. GDPR and International Users
The GDPR does not automatically apply to every Digistra Wave user simply because the website can be accessed internationally.
Where Digistra Wave’s processing falls within the territorial scope of the EU GDPR, applicable GDPR obligations will be respected.
Similarly, UK GDPR requirements will be considered where their territorial scope applies.
Users in other jurisdictions may also have privacy rights under applicable local laws.
21. Exercising Your Rights
Privacy and data protection requests may be sent to:
support@digistrawave.com
Please provide sufficient information for us to identify the relevant account or records and understand your request.
We may request reasonable verification before acting on certain requests.
Do not send passwords, complete card details, or unnecessary sensitive information by email.
22. Changes to This Policy
Digistra Wave may update this GDPR & Data Protection Policy when its services, technology, processing practices, or applicable legal requirements change.
The latest version will be published on digistrawave.com with an updated revision date.
Effective Date: 28 September 2026
Last Updated: 28 September 2026
23. Contact Us
For privacy questions, GDPR enquiries, data protection concerns, or requests relating to personal information, contact:
Digistra Wave Enterprise
Website: digistrawave.com
Address: NE-0838-0649, HNO B333, Near Naa Sheriga JHS, Tunni, Naa Sheriga JHS, Tunni, Ghana
Information Email: info@digistrawave.com
Support Email: support@digistrawave.com