POPIA Compliance Statement

Protection of Personal Information Act (South Africa)

1. Introduction

This statement outlines how Lebotha. complies with the Protection of Personal Information Act 4 of 2013 (POPIA) of South Africa. We are committed to protecting your privacy and ensuring that your personal information is processed lawfully, transparently, and securely.

2. Information Officer

The designated Information Officer responsible for POPIA compliance is:

3. Purpose of Processing

Personal information (such as names, emails, and professional details) is processed solely for the purpose of facilitating secure, invite-only digital communication between the Administrator and invited Guests. We collect only the minimum data required to verify identity and enable chat functionality.

4. Security Safeguards

We implement strict technical and organizational measures to prevent loss, damage, or unauthorized access to personal information, including:

  • Unique invite codes with automated expiration (Time-to-Live).
  • Data encryption in transit.
  • Role-based access controls limiting data visibility strictly to authorized parties.

5. Cross-Border Transfers

In order to provide push notifications and host our infrastructure, some data may be transferred to secure servers located outside of South Africa (e.g., Firebase infrastructure). These providers comply with stringent international data protection standards equivalent to POPIA.

6. Rights of Data Subjects

Under POPIA, you have the right to:

  • Request access to the personal information we hold about you.
  • Request the correction or deletion of your personal information (which can also be done directly via the App).
  • Object to the processing of your personal information.
  • Lodge a complaint with the Information Regulator of South Africa.
© 2026 Robby Lebotha. All rights reserved.