POPIA Compliance

Privacy Policy

Effective Date: 20 February 2026

1. Introduction & Information Officer

Welcome to Corvian ("we", "us", "our"). We are committed to safeguarding the personal information of our clients, newsletter subscribers, and online guests. This Policy describes how we collect, handle, and store personal data in strict compliance with the Protection of Personal Information Act, No. 4 of 2013 (POPIA) of South Africa.

For any queries regarding this Policy, please contact our Information Officer at [email protected].

2. Data We Collect

We process personal data that you provide to us directly through forms, as well as data gathered automatically when you browse our website. This includes:

  • Direct Contact Details: Name, professional email address, phone number, and message text submitted via our contact and subscription forms.
  • Analytical Tracking Details: IP addresses, browser types, device profiles, session durations, and user activity logs tracked via active analytics packages (subject to consent).

3. Purposes and Lawful Bases of Processing

We process your data only where there is a clear lawful basis under Section 11 of POPIA. The table below outlines our key processing activities:

Purpose of ProcessingData ScopeLawful Basis (POPIA)
Responding to business requestsName, email, phone, company briefConsent / Pre-contractual steps
Distributing tech newslettersEmail addressExplicit Consent (Opt-in)
Optimizing website experienceIP address, cookie metricsLegitimate interest / User Consent

4. Cookie Preferences & Google Consent Mode v2

We utilize the advanced model of Google Consent Mode v2. Before you express a choice on our cookie banner, all non-essential analytics and marketing trackers remain disabled (status set to "denied"). Only strictly necessary security and system-critical cookies are active. You can modify or withdraw your preferences at any moment via the "Cookie Settings" option in our footer.

5. Sharing and Transborder Transfers

We do not lease or sell corporate client details to third-party list brokers. We may share records with vetted infrastructure providers, secure cloud hosts, or when mandated by law enforcement. Any transborder storage of data is protected by binding corporate rules or agreements that offer an equivalent level of protection as POPIA.

6. Data Retention Period

We retain your personal details only as long as necessary to fulfill our business consulting terms, support newsletter distribution, or meet statutory storage obligations. When no longer required, files are permanently de-identified or securely deleted.

7. Your Legal Rights

Under Chapter 8 of POPIA, you have the right to:

  • Request access to your stored personal records.
  • Request the correction or deletion of outdated or incorrect files.
  • Object to any processing activities based on legitimate interests.
  • Lodge a complaint with the national regulatory authority.

The supervisory authority in South Africa is the Information Regulator:
Website: https://inforegulator.org.za/
Email: [email protected]

8. Children's Privacy

We do not offer services to or knowingly collect data from individuals under the age of 18 without explicit parental or legal guardian consent.