FULL PRIVACY POLICY FOR EINIK SOLUTIONS (PTY) LTD

Effective Date: 10 June 2026

EINIK Solutions (Pty) Ltd (“EINIK”, “we”, “us”, “our”) respects and is committed to protecting the privacy, confidentiality and security of personal information entrusted to us.

This Privacy Policy explains how EINIK collects, uses, stores, shares, protects and otherwise processes personal information in connection with our websites, software platforms, SaaS products, web applications, digital services, social media management services, software development services, website development services, automation services, AI-enabled services, digital marketing services, lead generation activities, communication channels and related business operations.

This Privacy Policy is intended to comply with applicable South African laws, including but not limited to:

• Protection of Personal Information Act 4 of 2013 (“POPIA”)
• Electronic Communications and Transactions Act 25 of 2002 (“ECTA”)
• Consumer Protection Act 68 of 2008 (“CPA”)
• Applicable common law privacy principles
• Any other applicable laws governing privacy, data protection, electronic communications and online business operations

By accessing our website, using our services, communicating with us, submitting information to us, engaging our services or using any software platform operated by EINIK, you acknowledge that your personal information may be processed in accordance with this Privacy Policy.

EINIK Solutions (Pty) Ltd

Website:
einiksolutions.com

Email:
[email protected]

For purposes of POPIA, EINIK generally acts as a Responsible Party when determining the purpose and means of processing personal information relating to prospects, clients, website visitors and users of our services.

In certain circumstances, EINIK may also act as an Operator on behalf of a client where we process information solely on that client’s instructions.

This Privacy Policy applies to personal information collected through:

• Our websites
• Contact forms
• Consultation requests
• Service enquiries
• Proposal requests
• Quotation requests
• Discovery sessions
• Client onboarding processes
• Software platforms
• SaaS products
• Customer portals
• User dashboards
• Web applications
• Social media channels
• Advertising campaigns
• Lead generation systems
• CRM systems
• Email communications
• Messaging applications
• Analytics tools
• Marketing automation systems
• Online forms
• Surveys
• Event registrations
• Payment systems
• Third-party integrations
• Future products and services offered by EINIK

Depending on your interaction with EINIK, we may collect and process the following categories of information.

We may collect:

• Full name
• Business name
• Email address
• Telephone number
• Mobile number
• Industry information
• Website address
• Social media profile links
• Service requirements
• Business size information
• Budget range information
• Project timelines
• Project objectives
• Business challenges
• Consultation notes
• Meeting records
• Service enquiries
• Communications with us
• Feedback
• Survey responses
• Marketing preferences

Where applicable, we may collect:

• Company name
• Company registration information
• VAT information
• Business contact information
• Business objectives
• Internal operational requirements
• Team structure information
• Platform requirements
• Workflow requirements
• Technical requirements

Where relevant, we may collect:

• Project information
• Technical specifications
• Hosting information
• Domain information
• Platform requirements
• Software requirements
• Branding information
• Marketing information
• User requirements
• Integration requirements

4.4 Platform and SaaS Information

For software platforms and SaaS services, we may collect:

• User account information
• Login credentials
• Authentication information
• Profile information
• User-generated content
• Platform activity records
• User preferences
• Dashboard activity
• Uploaded files
• Submitted data
• Subscription information
• Transaction records

When you access our website or systems, we may automatically collect:

• IP address
• Device information
• Browser information
• Operating system information
• Network information
• Geographic location data derived from IP addresses
• Referring websites
• Pages visited
• Session information
• Time spent on pages
• Clickstream information
• Website interaction information

We may collect:

• Website usage statistics
• Campaign performance information
• Advertising interaction data
• Conversion tracking data
• User engagement information
• Website performance metrics

We may collect information through:

• Cookies
• Pixels
• Tags
• Tracking technologies
• Local storage technologies
• Session technologies
• Analytics technologies

We may collect personal information through:

• Website forms
• Consultation forms
• Quote request forms
• Contact forms
• Digital Systems Audit requests
• Social media interactions
• Email communications
• Telephone calls
• Messaging applications
• Client onboarding processes
• Software platform registrations
• SaaS account creation
• CRM systems
• Analytics systems
• Advertising platforms
• Cookies and tracking technologies
• Third-party service integrations
• Publicly available sources where lawful
• Referrals and business introductions

We may process personal information for the following purposes:

To:

• Provide services
• Deliver software solutions
• Develop websites
• Develop web applications
• Deliver SaaS services
• Manage social media campaigns
• Implement automation systems
• Provide technical support
• Fulfil contractual obligations

To:

• Manage client relationships
• Conduct consultations
• Prepare proposals
• Issue quotations
• Onboard clients
• Manage projects
• Provide support services

To:

• Respond to enquiries
• Provide information about services
• Conduct marketing campaigns
• Generate business leads
• Improve conversion performance
• Communicate relevant business opportunities

To:

• Operate software systems
• Manage user accounts
• Authenticate users
• Maintain security
• Monitor platform performance
• Improve functionality

To:

• Analyse website performance
• Improve user experience
• Improve products and services
• Understand customer behaviour
• Develop future offerings

To:

• Comply with applicable laws
• Protect legal rights
• Prevent fraud
• Investigate misuse
• Respond to lawful requests

EINIK processes personal information where one or more lawful grounds exist under POPIA, including:

• Consent from the data subject
• Performance of a contract
• Compliance with legal obligations
• Protection of legitimate interests of the data subject
• Legitimate interests pursued by EINIK or an authorised third party
• Processing necessary for the proper performance of public law duties where applicable

EINIK may use personal information to market its services, products, platforms and business offerings.

Marketing communications may be sent by:

• Email
• SMS
• Telephone
• Messaging applications
• Social media platforms
• Advertising platforms

Where required by POPIA, we will obtain appropriate consent before sending direct electronic marketing communications.

Recipients may opt out of marketing communications at any time by:

• Using the unsubscribe mechanism provided
• Contacting us directly
• Requesting removal from marketing databases

Opt-out requests will be processed within a reasonable period.

Our websites and platforms may use cookies and similar technologies.

These technologies may be used to:

• Ensure website functionality
• Improve performance
• Remember preferences
• Measure usage
• Improve security
• Analyse traffic
• Support advertising activities
• Measure campaign performance

Cookies may include:

• Essential cookies
• Functional cookies
• Performance cookies
• Analytics cookies
• Marketing cookies
• Advertising cookies

Users may control cookies through browser settings, although disabling certain cookies may affect functionality.

EINIK may engage third-party service providers to assist with operations.

These providers may include:

• Hosting providers
• Cloud service providers
• Analytics providers
• CRM providers
• Marketing automation providers
• Communication providers
• Payment service providers
• Software infrastructure providers
• Customer support providers
• Security providers
• Advertising providers
• Social media platforms
• AI and automation providers

Such providers may process personal information on our behalf and are expected to implement appropriate safeguards.

We may disclose personal information where reasonably necessary:

• To service providers
• To cloud providers
• To payment processors
• To analytics providers
• To software infrastructure providers
• To legal advisors
• To auditors
• To insurers
• To regulators
• To law enforcement authorities
• To courts and tribunals
• To business partners where necessary for service delivery
• In connection with mergers, acquisitions, restructures or business transfers

We do not sell personal information.

EINIK may utilise cloud infrastructure, software providers and technology providers located inside or outside South Africa.

Personal information may therefore be transferred to jurisdictions outside South Africa.

Where cross-border transfers occur, EINIK will take reasonable steps to ensure that:

• The recipient is subject to laws, binding agreements or safeguards that provide an adequate level of protection; or
• The transfer is otherwise authorised under POPIA.

EINIK may utilise automation technologies, artificial intelligence tools, machine learning systems and software-assisted technologies in connection with service delivery and internal business operations.

Such technologies may be used for:

• Content generation
• Software development assistance
• Data analysis
• Workflow automation
• Customer support enhancement
• Project management
• Communication support
• Marketing support
• Operational efficiency

Where personal information is processed through such technologies, reasonable safeguards will be implemented to protect confidentiality and security.

EINIK implements reasonable technical and organisational measures designed to protect personal information against:

• Loss
• Misuse
• Unauthorised access
• Unauthorised disclosure
• Alteration
• Destruction

Security measures may include:

• Access controls
• Authentication controls
• Password protection
• Encryption where appropriate
• Security monitoring
• Secure hosting environments
• Backup systems
• Network security controls
• Staff confidentiality obligations
• Vendor due diligence

No system can guarantee absolute security and users acknowledge the inherent risks associated with electronic communications and internet-based services.

Personal information will be retained only for as long as:

• Necessary for the purposes for which it was collected
• Required by law
• Required by contractual obligations
• Necessary for dispute resolution
• Necessary to protect legal rights
• Required for legitimate business purposes

Once retention is no longer necessary, information will be securely deleted, anonymised or destroyed where reasonably practicable.

Subject to applicable law, data subjects may have the right to:

• Request confirmation regarding processing
• Access personal information
• Request correction of inaccurate information
• Request updating of information
• Request deletion where appropriate
• Object to certain processing activities
• Withdraw consent where processing relies on consent
• Restrict certain processing activities
• Lodge complaints with the Information Regulator

Requests may be submitted using the contact details contained in this Privacy Policy.

Reasonable verification of identity may be required before requests are processed.

EINIK does not knowingly collect personal information from children in a manner prohibited by applicable law.

Where services are directed toward or involve minors, processing will occur only where legally permitted and subject to appropriate authorisation where required.

Parents or guardians who believe a child has provided personal information unlawfully may contact EINIK for assistance.

In the event of a security incident involving personal information, EINIK will take appropriate steps to:

• Investigate the incident
• Mitigate risks
• Secure affected systems
• Assess legal obligations
• Notify affected parties where required by law
• Notify relevant regulatory authorities where required

Our websites, content and communications may contain links to third-party websites, applications or services.

EINIK is not responsible for the privacy practices, content or security of third-party platforms.

Users should review the privacy policies of such third parties independently.

EINIK may expand its services in the future, including but not limited to:

• SaaS platforms
• Customer portals
• Educational platforms
• Marketplace platforms
• AI-enabled systems
• Automation services
• CRM services
• Digital marketing systems
• Communication systems
• Analytics platforms
• Mobile applications
• Additional software products

This Privacy Policy applies to such services unless supplemented by service-specific privacy notices.

EINIK reserves the right to amend this Privacy Policy from time to time.

Updated versions may be published on our website.

The latest version will supersede previous versions upon publication unless otherwise stated.

Continued use of our services after amendments take effect constitutes acceptance of the revised Privacy Policy to the extent permitted by law.

If you believe that your personal information has been processed unlawfully or contrary to this Privacy Policy, you may contact EINIK using the details below.

You may also lodge a complaint with the Information Regulator of South Africa.

EINIK Solutions (Pty) Ltd

Website:
einiksolutions.com

Email:
[email protected]

For privacy-related requests, complaints, objections, corrections, access requests or questions regarding this Privacy Policy, please contact us using the details above.