Data Protection
Last updated: 2026
This page describes how the MIAA 2026 platform, controlled by Babykaafo, protects the information you share with us. It complements our Privacy Policy, which covers what we collect and why.
One Record Per Person
Every person who registers with MIAA is assigned a single MIAA ID, used consistently across every activity they take part in. Before creating a new record, the system checks whether you already exist in our database — by WhatsApp number, phone number, email, or name and date of birth — so your information is not needlessly duplicated across separate, disconnected records.
Access Controls
Access to your information is restricted by role. A Regional Coordinator can only see people and organisations assigned to their own region. A Health Facility Admin can only see screening and referral records assigned to their own facility. An MIAA Implementation Partner administrator can only see their own organisation's people. Every admin action on your record — who viewed it, what changed, and when — is recorded in an audit log.
Health Facility Partners
No health facility is given access to MIAA coordination data until a signed data-sharing agreement is in place between Babykaafo and that facility. Health facilities receive only the coordination information needed to arrange a screening — never a clinical record, which remains with the facility itself.
Storage and Transmission
Your information is stored with access-controlled, encrypted-in-transit infrastructure, and messages sent to you (SMS, WhatsApp, email) are delivered through vetted messaging and email providers. Payment information for paid registrations is processed directly by our payment provider — MIAA does not store your card details.
Requesting Your Data
You can ask what information MIAA holds about you, ask us to correct it, or ask us to delete it, by contacting us on our national WhatsApp line, 0560 700 700.
