IP & Geo Verification
IP addresses are captured specifically to detect cloned codes and fake products circulating in different regions.
First-Party Analytics
We track internal performance and pageviews directly on our secure servers. Zero third-party ad networks.
Bank-Grade Security
All data is encrypted in transit (TLS 1.3) and at rest with strict access controls and audit logging.
1Information We Collect Automatically (Including IP Addresses)
When you use AfiCheck to scan a product code, verify an authentication label, or navigate our portals, our systems automatically collect certain technical telemetry:
- Internet Protocol (IP) Address: Your public IP address is logged when you submit product verification requests, load web pages, or interact with our APIs.
- Approximate Geolocation: Derived from your IP address (e.g., country, state/province, and city) or provided with your explicit browser permission (GPS coordinates) to pinpoint the point of verification.
- Device & Browser Identifiers: Operating system, browser type and version, language preference, and User-Agent strings.
- Verification Event Telemetry: The scanned code or serial number, timestamp of scan, scan count, and verification status (genuine, suspected counterfeit, recalled, or expired).
2Why We Capture IP Addresses: Anti-Counterfeit Fraud Detection
AfiCheck is an anti-counterfeit and product verification platform protecting consumer health and brand integrity. IP capture is a critical pillar of our fraud detection architecture:
If a single unique serialization code is scanned in Lagos and then simultaneously scanned in London minutes later, our threat engine uses IP geolocation to alert you that the code has been illegally duplicated.
If a batch of pharmaceuticals or consumables is flagged for recall, IP location data helps ensure affected stock is identified in the right regional markets.
IP addresses are monitored to prevent automated scanners, scrapers, and malicious bots from attempting dictionary attacks on valid serialization hashes.
Provides verifiable forensic evidence to regulatory authorities (such as NAFDAC, FDA, or SON) when prosecuting counterfeit syndicates.
3First-Party Site Analytics & Telemetry
We operate our own custom, first-party internal site analytics engine directly connected to the AfiCheck API:
- What is recorded: Anonymous pageviews, route transitions, button interactions, device screen category, and scan error rates.
- Session Token: An anonymous pseudorandom session token is stored temporarily in your browser session (
aficheck_sid) to understand visitor journeys and fix usability bugs. - Zero Third-Party Advertising: We do not run Google AdSense, Meta Pixel, cross-site trackers, or commercial data brokers. Your navigation history is never sold or shared.
4How We Share Data with Verified Manufacturers
When you verify an authentic or counterfeit product, the verification event (including the scanned serial number, verification status, timestamp, and approximate geographical location) is relayed to the verified brand manufacturer.
This intelligence enables the manufacturer to investigate illicit distribution channels, alert retailers of compromised batches, and protect other consumers from harm.
5Data Retention & Security
We implement technical and organizational security measures to protect your information:
- All communications are encrypted using Transport Layer Security (TLS 1.3).
- Sensitive verification databases are encrypted at rest with strict role-based access.
- Routine analytical and network access logs are retained only as long as necessary for security auditing and counterfeit forensics, after which they are pruned or anonymized.
6Your Data Privacy Rights & Contact Information
Under applicable data protection laws (including the Nigeria Data Protection Act 2023 / NDPR and international privacy frameworks), you have the right to request access to, correction of, or deletion of your personal data.