POPIA Statutory Policy · Act No. 4 of 2013

Protection of Personal Information Act (POPIA) Privacy Policy

Version 2026.1 · Effective Date: 1 January 2026 · Republic of South Africa

1. Regulatory Framework & Roles Under POPIA

This Privacy Policy outlines how ProSecure OS processes personal information in compliance with the Protection of Personal Information Act No. 4 of 2013 ("POPIA"):

2. Categories of Information Processed

To enable security operations management, shift verification, and BCEA payroll calculations, ProSecure processes:

3. Purpose of Processing

All personal and biometric data is processed strictly for legitimate operational purposes:

4. Subscriber Warranties & Guard Consent Obligations

The Subscriber warrants and covenants that:

5. Local South African Data Sovereignty

All database records, biometric mathematical descriptors, shift clock logs, and patrol telemetry are hosted and stored exclusively within enterprise ISO-27001 certified data centers located in Johannesburg and Cape Town, South Africa. Zero guard personal information is transferred or exported outside South African territorial borders.

6. POPIA Rights: Pre-Deletion Data Portability & Right to Erasure

In full compliance with Sections 14 and 24 of POPIA, ProSecure OS provides automated data governance tools directly in the system settings:

7. Enterprise Security Safeguards

We maintain strict administrative, technical, and physical safeguards to protect personal information:

8. Information Officer Contact & Regulatory Inquiries

For questions regarding this policy or to exercise POPIA statutory rights, contact the ProSecure Information Officer at privacy@prosecure.co.za. If you are dissatisfied with our response, you retain the right to lodge a complaint with the Information Regulator of South Africa (complaints.IR@justice.gov.za).