RT8 Digital Group POPIA Compliance
Last Updated: October 27, 2024
RT8 Digital Group ("we," "our," or "us") is fully committed to complying with the Protection of Personal Information Act, 2013 (Act No. 4 of 2013) ("POPIA") of South Africa. This document outlines our commitment and practices regarding the lawful processing of personal information in accordance with POPIA's eight conditions.
1. Condition 1: Accountability
RT8 Digital Group takes full responsibility for ensuring that the conditions for the lawful processing of personal information are complied with. We have appointed an Information Officer who is responsible for the overall compliance with POPIA within our organization. Our Information Officer can be contacted at legal@rt8.co.za.
2. Condition 2: Processing Limitation
2.1. Minimality
We collect personal information directly from the data subject (you) where possible, and only that which is necessary for a specific, explicitly defined, and lawful purpose related to our functions or activities. We do not collect excessive information.
2.2. Consent, Justification, and Objection
We process personal information based on your consent, or where it is necessary for the performance of a contract, compliance with a legal obligation, protection of your legitimate interests, or our legitimate interests. You have the right to object to the processing of your personal information on reasonable grounds, unless legislation provides for such processing.
2.3. Collection Directly from Data Subject
We endeavor to collect personal information directly from you, unless:
- The information is contained in a public record.
- You have consented to the collection from another source.
- Collection from another source would not prejudice your legitimate interests.
- Collection from another source is necessary to maintain our legitimate interests or comply with law.
3. Condition 3: Purpose Specification
3.1. Collection for Specific Purpose
Personal information is collected for specific, explicitly defined, and lawful purposes related to our functions or activities, such as providing talent directory services, web/app development, music distribution, e-commerce transactions, and customer support.
3.2. Retention of Records
We retain personal information for no longer than is necessary to achieve the purpose for which it was collected, or as required by law or contract. Once the purpose is fulfilled, the information is securely destroyed or de-identified.
4. Condition 4: Further Processing Limitation
Further processing of personal information is only permitted if it is compatible with the purpose for which it was initially collected. If further processing is not compatible, we will seek your consent or rely on another lawful justification.
5. Condition 5: Information Quality
We take reasonable steps to ensure that the personal information we collect and process is complete, accurate, not misleading, and updated where necessary, having regard to the purpose for which the information is collected or further processed.
6. Condition 6: Openness
We maintain transparency about our personal information processing activities. This Privacy Policy and our Terms & Conditions clearly outline what information we collect, why we collect it, and how it is used. Upon request, we will provide you with details of the personal information we hold about you.
7. Condition 7: Security Safeguards
We implement appropriate technical and organizational measures to protect personal information against loss, damage, unauthorized destruction, unlawful access, or unlawful processing. These safeguards include:
- Encryption of data in transit and at rest where appropriate.
- Access controls and authentication mechanisms.
- Regular security assessments and vulnerability testing.
- Employee training on data protection and privacy.
- Secure physical storage for any hardcopy records.
In the event of a data breach, we will notify the Information Regulator and affected data subjects as required by POPIA.
8. Condition 8: Data Subject Participation
You, as the data subject, have the right to:
- Request Access: Request confirmation as to whether we hold personal information about you, and request a record or description of that information.
- Request Correction/Deletion: Request the correction, destruction, or deletion of personal information that is inaccurate, irrelevant, excessive, out of date, incomplete, misleading, or obtained unlawfully.
- Object to Processing: Object, on reasonable grounds, to the processing of your personal information.
To exercise these rights, please contact our Information Officer at legal@rt8.co.za. We will respond to your request within a reasonable timeframe and in accordance with POPIA requirements.
9. Contact Information
For any questions or concerns regarding our POPIA compliance or the processing of your personal information, please contact our Information Officer:
Information Officer: [Name/Department]
Email: legal@rt8.co.za
Website: rt8.co.za