POPIA
POPIA Compliance
Welcome to The Toffee Gallery Daily. This page explains how we comply with the Protection of Personal Information Act (POPIA), South Africa’s primary data protection law. While we do not collect or store personal information through user registration or databases, we respect your rights under POPIA and are committed to transparency in how we handle personal data that may be automatically collected.
Scope and Applicability
POPIA applies to any responsible party that processes personal information within South Africa. Although The Toffee Gallery Daily is an informational blog with no user accounts or subscription system, we may automatically collect limited personal information through website analytics, server logs, and cookies. This includes IP addresses, browser types, and usage patterns. We process this data solely for website functionality, traffic analysis, and improving user experience.
Your Rights Under POPIA
Under POPIA, you have the following rights:
- Right to access your personal information held by us
- Right to request correction of inaccurate or incomplete data
- Right to request deletion of your personal information where applicable
- Right to object to processing of your data for direct marketing or profiling
- Right to be informed about how and why your data is processed
How We Comply
We comply with POPIA by:
- Minimizing data collection to only what is necessary for website operation
- Not storing personal information in identifiable databases
- Using anonymized analytics tools where possible
- Implementing reasonable technical measures to protect data from unauthorized access
- Ensuring third-party service providers (e.g., analytics platforms) comply with POPIA
Data We Process
The only personal information we may process includes:
- IP addresses (automatically logged by servers)
- Browser and device information (collected via cookies for analytics)
- Timestamps and pages visited (for traffic analysis)
This data is not linked to names, emails, or other identifiers. We do not collect phone numbers, physical addresses, or financial information.
Legal Basis for Processing
Our processing of personal information is based on legitimate interest under POPIA Section 11(1)(e), as it is necessary for the proper functioning of our website, ensuring security, and delivering relevant content. We do not process sensitive personal information or use data for automated decision-making.
How to Exercise Your Rights
To exercise your rights under POPIA, please contact us via email at [email protected]. Include your full name, contact details, and a clear description of your request (e.g., "I wish to access the data you hold about me"). We will respond without undue delay and within the legal timeframe.
Response Timeframes
Under POPIA, we are required to respond to requests within 30 days. If additional time is needed, we will notify you in writing with the reasons for the delay.
No Discrimination Policy
We will not deny you access to our website, provide you with a different level of service, or charge you fees for exercising your rights under POPIA. Your decision to request access, correction, or deletion of your data will not affect your ability to browse or read our content.
Updates and Changes
We may update this compliance page periodically to reflect changes in POPIA or our data practices. The most recent version will always be posted here with an updated "Last Updated" date.
Contact Information
If you have any questions, concerns, or wish to lodge a complaint regarding our handling of personal information, please contact:
Tristan Ferreira
30 Chiappini Street, Cape Town, 8001, South Africa
Email: [email protected]
You may also contact the Information Regulator of South Africa at www.justice.gov.za/inforeg/ if you believe your rights under POPIA have been violated.