Privacy Policy

PREAMBLE

Recognising that

Section 14 of the Constitution of the Republic of South Africa, 1996, provides that everyone has the right to privacy. The right to privacy includes a right to protection against the unlawful collection, retention, dissemination and use of personal information.

And bearing in mind that

Consonant with the constitutional values of democracy and openness, the need for economic and social progress, within the framework of the information society, requires the removal of unnecessary impediments to the free flow of information, including personal information.

And in order to

Regulate, in harmony with international standards, the processing of personal information by public and private bodies in a manner that gives effect to the right to privacy subject to justifiable limitations that are aimed at protecting other rights and important interests.

1. INTRODUCTION

1.1. At Tayo Pay Pty Ltd (‘we’ ‘us’ ‘our’), we are committed to upholding the highest standards of data protection and privacy for our customers, employees, and stakeholders. As part of our dedication to transparency and compliance with regulatory requirements, we have developed this Notice in accordance with the Protection of Personal Information Act (POPIA).

1.1. At Tayo Pay Pty Ltd (‘we’ ‘us’ ‘our’), we are committed to upholding the highest standards of data protection and privacy for our customers, employees, and stakeholders. As part of our dedication to transparency and compliance with regulatory requirements, we have developed this Notice in accordance with the Protection of Personal Information Act (POPIA).

1.1. At Tayo Pay Pty Ltd (‘we’ ‘us’ ‘our’), we are committed to upholding the highest standards of data protection and privacy for our customers, employees, and stakeholders. As part of our dedication to transparency and compliance with regulatory requirements, we have developed this Notice in accordance with the Protection of Personal Information Act (POPIA).

2. WHAT IS POPIA

To promote the protection of personal information processed by public and private bodies; to introduce certain conditions so as to establish minimum requirements for the processing of personal information; to provide for the establishment of an Information Regulator to exercise certain powers and to perform certain duties and functions in terms of this Act and the Promotion of Access to Information Act, 2000; to provide for the issuing of codes of conduct; to provide for the rights of persons regarding unsolicited electronic communications and automated decision making; to regulate the flow of personal information across the borders of the Republic; and to provide for matters connected therewith.

3. PURPOSE

Protecting the personal information of our customers is paramount to our company. In compliance with applicable privacy laws, we adhere to general principles aimed at safeguarding this information. This privacy notice is crafted to provide our customers with insights into how we gather, utilises, and protect their personal data.

We collect various types of personal information from our customers, encompassing details they provide directly, information obtained during their interactions with our solutions or platforms, and their marketing preferences. This notice explains customers' privacy rights and describes the legal safeguards in place. Additionally, this notice extends to third parties, such as authorised agents and contractors, who may process personal information on our behalf. However, in cases where another party processes personal information under a contract or mandate, the privacy notice or notice of that party will take precedence. In this context, ‘processing’ refers to how we collect, utilise, store, disclose, and manage customers' personal information. We uphold the confidentiality of customer’s personal information and handle it with the utmost care.

Key to note

By utilising our platforms, solutions, or service channels, including both assisted and unassisted interactions, or by accepting any rules, agreements, contracts, mandates, or annexures with us, or by utilising any solutions offered by us, customers acknowledge and agree that:

It is necessary to
  • Conclude and fulfill contractual terms or obligations.
  • Comply with obligations imposed by law.
  • Protect or pursue our customers', or a third party's legitimate interests, including designing and offering solutions that best meet customers' needs.

Customers are advised to carefully review the consent request as it may impact their rights. They may manage their consent preferences on the company’s platform, and details on how to modify customer preferences are available on our app and website.

This underscores the importance of customer awareness and provides avenues for managing preferences in alignment with individual rights and preferences.

4. WHAT IS PERSONAL INFORMATION?

Personal information encompasses any data that either identifies or is closely linked to a customer. This includes, but is not limited to, the following details:

  • Marital status (e.g., married, single, divorced)
  • National origin
  • Age
  • Language
  • Date of birth
  • Educational background
  • Financial history (e.g., income, account transactions)
  • Employment history and current employment status
  • Gender or sex (for statistical purposes as required by law)
  • Identifying numbers (e.g., account number, identity number, passport number)
  • Email address.
  • Physical address (e.g., residential address, work address, or physical location)
  • Telephone number.
  • Information about the customer’s location (e.g., geolocation or GPS location)
  • Online identifiers (e.g., cookies, online analytical identifier numbers, internet protocol (IP) addresses, device fingerprints, device ID)
  • Social media profiles
  • Biometric information (e.g., fingerprints, signature, facial biometrics, or voice)
  • Race (for statistical purposes as required by law)

5. PROCESSING OF CUSTOMER INFORMATION

We will process customers’ personal information under the following circumstances:

  • When the customer has provided consent.
  • When legally authorised by the customer, the law, or a court-appointed authority.
  • When it is necessary to conclude or fulfill contractual obligations with the customer or to provide solutions to the customer.
  • When required by law or permitted by legal regulations.
  • When necessary to protect or pursue the legitimate interests of the customer, the company, or a third party.

6. CUSTOMERS DUTIES AND RIGHTS

Customers have certain duties and rights regarding the personal information held by us:

Proof of Identity: Customers must provide proof of identity when enforcing their rights concerning their personal information. We will verify the identity of the customer based on this proof.

Notification of Changes Customers are responsible for informing us promptly about any changes to their personal information. This notification should be provided as soon as possible after the change occurs.

If you wish to exercise any of these rights, some rights may have limitations based on legal requirements or other legitimate interests. Requests must be made in writing, and we will acknowledge your request and endeavor to respond within 30 days of receiving your request, explaining any delays. Please contact us at [email protected] to enforce any of these rights.

Your rights regarding your personal data are as follows:
  • Right to be Informed: You have the right to be informed about how we collect and use your personal data.
  • Right of Access: You have the right to access your personal data that we hold.
  • Right to Correct: You have the right to rectify any inaccurate personal data and to complete any incomplete information.
  • Right to Delete/Distraction: You may request us to erase your personal data.
  • Right to Restrict Processing: You have the right to request the restriction of processing of your personal data.
  • Right to Object: You have the right to object to the processing of your personal data.
  • Right to Withdraw Consent: You have the right to withdraw consent that you have previously provided to the processing of your personal data.
  • Right to Complain: You have the right to complain to the processing of your personal data.
The contact details of the Information Regulator are provided below:

Tel no. +27 (0)10 023 5200
Website: https://inforegulator.org.za
Complaints email: [email protected]
General enquiries email: [email protected]

7. RETENTION OF CUSTOMER PERSONAL INFORMATION

We retain customers' personal information for the following durations: As Required by Law: Personal information will be kept for the duration mandated by relevant laws.

  • Contractual Obligations: If a contract between the customer and us necessitates the retention of personal data, it will be kept accordingly.
  • Customer Consent: If customers provide consent for us to retain their data, it will be retained accordingly.
  • Business Purposes: Personal information may be retained if necessary to achieve the purposes outlined in this notice or for lawful business purposes.
  • Statistical or Research Purposes: Data may be retained for statistical or research purposes.

It's important to note that we may retain customers' personal information even if they no longer have a relationship with us or if they request deletion, provided that the law permits or requires such retention.

8. DATA COLLECTION

We collect data primarily to facilitate the provision of our products and services. The specific type of data gathered varies depending on your requirements and preferences. Please note that the following list may not encompass all the data we collect:

Sender & Receiver:
  • Full names & Surname
  • ID Number
  • ID Document Image
  • Date of Birth
  • Country
  • Mobile Number
  • Relationship to Sender
  • Gender
  • Identity profile (i.e., Sanctions)
  • City (i.e., Payment Location)
  • Signature (Collection Slip)
  • Employment Details
  • Title
  • Preferred Name
  • Place of residence
  • Email Address
  • Date of Birth
  • Address
  • Proof of Address
  • Banking Details
  • Education
  • Work history
  • Medical Information
  • Credit, criminal and offences checks
  • Evaluation and assessment results
  • Professional information about you from business networking sites (like LinkedIn)
  • Internal Interview Notes
  • Information on your next-of-kin or emergency contact/s.
  • Information you share (during interviews, on your cover letter and resume etc)

9. WHEN WHY AND HOW WE COLLECT YOUR DATA

We collect your data for various purposes, and here's a breakdown of when, why, and how we collect it:

  • Entering into Agreements: When you engage in an agreement with us, create a profile, or request assistance, we collect data to provide you with services, assist you before agreement, and fulfill legal obligations.
  • Service Provision: When we provide services, we collect specific information necessary to fulfill our obligations to you. This data must be accurate and complete.
  • Communication: We keep records of your email and chat correspondence to understand your needs and improve our service. Telephone calls to and from our Support teams are recorded for quality and monitoring purposes.
  • Recruitment: If you apply for a job or sign up for job updates, we collect information for recruitment purposes.
  • Other Information: Data is collected when you fill out forms on our website, participate in surveys or questionnaires, or communicate with us for assistance or reporting issues.
  • Profile Creation: When you create a profile, use our services, or communicate with us, data is collected to provide services, ensure top customer service, and meet legal obligations.
Additionally, we obtain data from other sources:
  • Referrals: Data may be received from individuals who refer you for a position.
  • Third-Party Providers: Background, criminal, credit, education, and identity checks may be conducted by providers, along with data collection from public sources or data enrichment providers, advertising networks, analytics providers, and search information providers.
  • Market Research: Data is obtained from market research conducted by us or third-party providers.
  • Sanction Lists: Information is gathered from sanction lists to ensure compliance.
  • Log Files: Log data on website or app usage is recorded to understand visitor behavior.
  • Mobile App: Information collected includes identity details, device type, operating system, and performance data to provide notifications and improve app performance.
  • Cookies: Cookies are used to enhance user experience, track page visits, and serve relevant promotions and advertising.
  • Office Visits: Personal data may be collected during office visits, including CCTV recordings for safety and security purposes.
  • Biometric Data: Biometric recognition may be used for secure app access and to prevent unlawful acts.
  • ice: All calls made to our offices are recorded and stored for a period of 5 years. Recordings are POPIA compliant.
  • Google Maps API: Google places API and geocoding API are used for address verification and other services.

10. REASONS FOR DATA PROCESSING

Data processing may occur for various reasons, all of which aim to ensure that personal information is processed in a lawful, fair, and transparent manner while respecting individuals' privacy rights. Below are the reasons why we process customer personal information.

  • Compliance: To comply with laws and regulations, especially those governing financial services.
  • Security: Data is processed to troubleshoot and detect problems with the service and maintain service security.
  • Product and Service Improvement: Data analysis is conducted to evaluate, improve, and personalize products and services.
  • Marketing: Marketing communications are sent based on consent or legitimate interest, and options to unsubscribe are provided.
  • Further Processing: Data is processed for additional purposes if consent is given, the data is public, or to comply with legal obligations.

11. WHO DO WE SHARE YOUR PERSONAL DATA WITH AND WHY?

We may share personal data with business partners, regulatory authorities, and other entities as necessary to fulfill legal obligations or provide services to our customers.

12. DATA TRANSFER & STORAGE

We are required by law to transfer/store/back up a customer’s personal information to third parties in another province or country under the following circumstances:

  • Where the customer’s personal information will be adequately protected under the other country’s laws or an agreement with the third-party recipient.
  • When the transfer is necessary to enter into or perform under a contract with the customer or a contract with a third party that is in the customer’s interest.
  • When the customer has provided consent to the transfer.
  • When it is not reasonably practical to obtain the customer’s consent, but the transfer is in the customer’s interest.
  • These transfers will occur within the requirements and safeguards of applicable laws or privacy rules that bind the company.
  • Where possible, the party processing a customer’s personal information in another country will agree to apply the same level of protection as available by law in the customer’s country. If the other country’s laws provide better protection, the other country’s laws would be agreed to and applied.

13. HOW WE SAFEGUARD CUSTOMERS’ PERSONAL INFORMATION

We are committed to safeguarding our customers’ personal information through appropriate and reasonable technical and organizational measures, aligning with industry best practices. Security measures encompass physical, technological, and procedural safeguards, ensuring robust protection.

Key aspects include:
  • Ensuring the security of systems through monitoring access and usage.
  • Secure storage of customer records.
  • Safeguard customer information from damage.
  • Controlled access to premises, systems, and records.
  • Secure disposal or deletion of records when necessary.

We endeavor to protect personal data transmitted via the internet; we cannot guarantee absolute security. Nevertheless, we employ stringent procedures and security features to mitigate unauthorized access. Customers are also encouraged to take steps to protect their personal information.

14. CHANGES TO THIS PRIVACY NOTICE

The most current version of this Policy governs our practices concerning personal data collection, processing, and disclosure. Any revisions to the notice will be duly noted on this page. We reserve the right to amend this Policy at any time without notice. By continuing to use this website, you agree to be bound by the current version of this Policy.

15. CONTACT US

If you have any questions about this disclaimer, please contact us at:

Email: Click here
Support: +27 87 711 0050
Whatsapp: +27 76 805 0711