Privacy Policy
How we handle your personal information — collected lawfully, used minimally, protected properly.
Last updated: 10 July 2026 • Applies to Computer Scientific Solutions (Pty) Ltd, Reg No 2017/103392/07 ("CSS", "we", "us").
This policy explains how CSS processes personal information in terms of the Protection of Personal Information Act 4 of 2013 (POPIA). It applies to clients, website visitors, guests at our hospitality property, suppliers and job applicants.
1. Who is responsible
CSS is the responsible party. Our Information Officer is the Director, reachable at support@csscomp.co.za or 073 445 7881, 151 Noorsekloof, Wavecrest, Jeffreys Bay.
2. What we collect and why
| Information | Why we process it | Lawful basis |
|---|---|---|
| Name, contact details, address | Quotes, invoicing, service delivery, deliveries | Contract performance |
| Banking/payment references | Receiving and reconciling payments, refunds | Contract & legal obligation |
| Device and system information | Repairs, support, monitoring under an SLA | Contract performance |
| Data on devices you hand in | Only as needed for the agreed repair/recovery work | Contract & consent |
| Guest details (hospitality) | Bookings, check-in, legal guest registers | Contract & legal obligation |
| Website enquiry details | Responding to your enquiry | Consent / legitimate interest |
3. What we do NOT do
- We do not sell or rent personal information to anyone.
- We do not read, copy or retain the contents of client devices beyond what the job requires.
- We do not send marketing without an opt-out, and we honour opt-outs immediately.
4. Sharing
We share personal information only with: suppliers and couriers (to fulfil orders), payment processors (PayFast, and in future SnapScan and Paystack — see the Payment Gateway Policy), our cloud business systems (accounting, CRM and support desk platforms, operated as our operators/processors), and authorities where the law requires it.
5. Security safeguards
We apply reasonable technical and organisational measures as required by section 19 of POPIA: access control, encryption in transit, managed antivirus and monitoring on our own systems, least-privilege access to client data, and confidentiality obligations on anyone working with us. Client devices in our workshop are stored securely and returned data-intact wherever technically possible.
6. Retention
We keep records only as long as needed for the purpose collected, or as required by law (e.g. financial records are retained per tax legislation, typically 5 years). Device images made for data-recovery work are deleted once the job is closed and paid, unless you ask us in writing to retain them.
7. Your rights as a data subject
- Access the personal information we hold about you.
- Ask us to correct or delete inaccurate, irrelevant or unlawfully obtained information.
- Object to processing, including direct marketing.
- Withdraw consent where processing is based on consent.
- Complain to the Information Regulator: inforegulator.org.za, complaints.IR@inforegulator.org.za.
To exercise any right, email our Information Officer at support@csscomp.co.za. We respond within a reasonable time and may verify your identity first.
8. Cookies & analytics
This website uses only the cookies necessary for it to function and basic, privacy-respecting analytics where enabled. We do not run third-party advertising trackers.
9. Changes
We may update this policy; the "last updated" date above reflects the current version. Material changes will be highlighted on this page.
See also: POPIA Compliance Statement • POPI Act Summary • Data Processor Agreement
