Growth ERP
Loading...

Growth ERP

Loading your workspace...

Protection of Personal Information

Our commitment to protecting your personal information in compliance with POPI Act and GDPR.

At Growth ERP, we are committed to protecting your personal information and ensuring compliance with data protection laws, including the Protection of Personal Information Act (POPI Act) in South Africa and the General Data Protection Regulation (GDPR) in the European Union.

This page outlines our commitment to data protection, your rights regarding your personal information, and how we handle, process, and protect your data in accordance with applicable privacy laws.

Last Updated: December 1, 2025

Legal Framework Compliance

POPI Act (South Africa)

We comply with the Protection of Personal Information Act No. 4 of 2013 (POPI Act), which regulates the processing of personal information in South Africa. Our compliance includes:

  • Lawful processing of personal information
  • Minimization of data collection
  • Purpose limitation and data retention
  • Security safeguards
  • Data subject participation rights

GDPR (European Union)

For users in the European Union, we comply with the General Data Protection Regulation (GDPR), which provides comprehensive data protection rights. Our compliance includes:

  • Lawful basis for processing
  • Data minimization and purpose limitation
  • Data accuracy and storage limitation
  • Integrity and confidentiality
  • Accountability and transparency

Your Data Protection Rights

Right to Access

You have the right to request access to your personal information that we hold, including details about how we process it.

Right to Rectification

You can request correction of inaccurate or incomplete personal information at any time.

Right to Erasure

You may request deletion of your personal information in certain circumstances, subject to legal obligations.

Right to Restrict Processing

You can request that we limit how we use your personal information in specific situations.

Right to Data Portability

You have the right to receive your personal data in a structured, commonly used format.

Right to Object

You can object to processing of your personal information for certain purposes, including direct marketing.

Right to Withdraw Consent

Where processing is based on consent, you have the right to withdraw consent at any time.

Right to Lodge a Complaint

You have the right to lodge a complaint with the relevant data protection authority in your jurisdiction.

How We Protect Your Data

We implement comprehensive security measures to protect your personal information:

  • Encryption: All data in transit is encrypted using TLS/SSL protocols, and sensitive data at rest is encrypted using industry-standard encryption algorithms.
  • Access Controls: Strict access controls and authentication mechanisms ensure that only authorized personnel can access personal information.
  • Secure Data Centers: Our data is stored in secure, certified data centers with physical security measures and environmental controls.
  • Regular Security Audits: We conduct regular security audits, vulnerability assessments, and penetration testing to identify and address security risks.
  • Data Backup and Recovery: Regular backups ensure data availability and integrity, with disaster recovery procedures in place.
  • Employee Training: Our staff receive regular training on data protection, privacy, and security best practices.
  • Incident Response: We have established procedures for detecting, reporting, and responding to data security incidents.

Data Processing Principles

We adhere to the following principles when processing your personal information:

Lawfulness and Fairness

We process personal information lawfully and fairly, with a legitimate legal basis for each processing activity.

Purpose Limitation

We collect personal information only for specified, explicit, and legitimate purposes and do not process it in a manner incompatible with those purposes.

Data Minimization

We collect and process only the personal information that is adequate, relevant, and necessary for the intended purpose.

Accuracy

We take reasonable steps to ensure personal information is accurate, complete, and kept up to date.

Storage Limitation

We retain personal information only for as long as necessary to fulfill the purposes for which it was collected or as required by law.

Integrity and Confidentiality

We implement appropriate technical and organizational measures to protect personal information against unauthorized access, loss, or destruction.

Data Sharing and International Transfers

We do not sell your personal information to third parties. We may share your data only in the following circumstances:

  • Service Providers: With trusted third-party service providers who assist us in operating our platform (e.g., cloud hosting, payment processing, email services), subject to strict confidentiality agreements.
  • Legal Requirements: When required by law, court order, or regulatory authority, or to protect our rights and the safety of our users.
  • Business Transfers: In connection with a merger, acquisition, or sale of assets, with appropriate notice to users.
  • With Your Consent: When you have explicitly consented to the sharing of your information.

International Transfers: If we transfer personal information outside your country, we ensure appropriate safeguards are in place, such as Standard Contractual Clauses (SCCs) or adequacy decisions, to protect your data in accordance with applicable data protection laws.

Exercising Your Rights

To exercise any of your data protection rights, please contact us using the information provided below. We will respond to your request within the timeframes required by applicable law (typically 30 days for POPI Act and 1 month for GDPR).

When making a request, please provide:

  • Your full name and contact information
  • Proof of identity (to verify your request)
  • Clear description of the right you wish to exercise
  • Details of the personal information concerned (if applicable)

We may need to verify your identity before processing your request to ensure the security of your personal information.

Contact Us

If you have questions about our data protection practices, wish to exercise your rights, or need to report a data protection concern, please contact us through any of the following channels:

Growth ERP

Data Protection Officer / Privacy Officer

Support Email

support@growtherp.net

For support inquiries and technical assistance

Phone Support

+254759925255

Available during business hours

Contact Form

Submit Inquiry Form

Submit detailed inquiries through our contact form

Support Tickets

Available in your Growth ERP dashboard

Create and track support tickets for technical issues

For more detailed information about how we collect, use, and protect your personal information, please review our Privacy Policy.

Live Rates