Stokvel Portal mark
STOKVEL PORTAL

POPIA Compliance Policy

How Stokvel Portal aligns with the Protection of Personal Information Act

1. Purpose

This POPIA Compliance Policy explains how Stokvel Portal complies with the Protection of Personal Information Act, 4 of 2013 ("POPIA").

2. Commitment to POPIA

We are committed to:

  • Lawful processing of personal information
  • Transparency
  • Information security
  • Responsible data handling
  • Protecting the rights of data subjects

3. Categories of Information Processed

We may process:

  • Identification information
  • Contact details
  • Financial contribution records
  • Uploaded payment proofs
  • Membership information
  • Device and technical data

4. Processing Principles

We process information according to POPIA principles:

  • Accountability
  • Processing limitation
  • Purpose specification
  • Further processing limitation
  • Information quality
  • Openness
  • Security safeguards
  • Data subject participation

5. Security Safeguards

Security measures include:

  • HTTPS encryption
  • Password hashing
  • Access controls
  • Audit logging
  • Server monitoring
  • Database backups

6. Data Subject Rights

Data subjects may:

  • Access their personal information
  • Correct inaccurate information
  • Request deletion where lawful
  • Lodge complaints with the Information Regulator

Information Regulator South Africa:
Information Regulator South Africa

7. Cross-Border Transfers

Where information is processed outside South Africa, reasonable safeguards will be implemented.

8. Breach Notification

Where required by law, affected parties and relevant authorities will be notified of material security breaches.

9. Contact

Email: popia@stokvelportal.com