Last updated: [2025/10/19]
1. Introduction
Chaos Coordinator (“we”, “us”, “our”) is committed to protecting your privacy and handling your personal information transparently and securely. This Privacy Policy explains how we collect, use, store, share, and protect your personal data when you visit or interact with our Site and services.
This Policy is designed with reference to the Protection of Personal Information Act (POPIA) of South Africa, and (if relevant) the General Data Protection Regulation (GDPR) of the EU
By visiting or using our Site, or by engaging our services, you agree to the terms of this Privacy Policy.
2. Information we collect
We may collect the following types of information:
a) Personal Information you provide
When you engage with us, subscribe, contact us, request a quote, or otherwise communicate, you may provide us with:
- Name
- Email address
- Telephone number
- Company name
- Job title
- Business address
- Any additional information you choose to provide (e.g. in messages, forms, support requests)
b) Automatically collected / technical information
When you visit or use our Site, we may automatically collect:
- IP address
- Browser type and version
- Device type (desktop, mobile, tablet)
- Operating system
- Pages you viewed, time spent on pages
- Referral source (how you arrived at the Site)
- Clickstream data, navigation paths
- Cookie or tracking data (see Cookie Policy above)
- To provide and maintain our services (e.g. to respond to requests, manage client relationships)
c) Third-party sources
We may receive certain information from third-party services (e.g. analytics providers, social media platforms) in accordance with their privacy terms and policies.
3. How we use your information
We may use your personal data for the following purposes:
- To provide and maintain our services (e.g. to respond to requests, manage client relationships)
- To communicate with you (e.g. respond to inquiries, send updates or newsletters)
- To process transactions and billing
- To improve and optimize our Site, services, content, and marketing
- To monitor usage, trends, and statistics
- To comply with legal obligations or enforce our rights
- Where otherwise permitted by law or with your consent
4. Legal bases / justification (for GDPR / POPIA)
Under POPIA, we rely on one or more of the following when processing your data:
- Consent — where you have given your permission
- Contract / performance of services — where processing is necessary to deliver the services you request
- Legitimate interests — such as improving our services, marketing (balanced with your rights)
- Legal obligation — where required by law or regulation
If GDPR applies (e.g. you are in the EU), additional legal bases and rights will apply (e.g. data subject rights, cross-border transfers).
5. Legal bases / justification (for GDPR / POPIA)
We will not sell your personal data. But we may share your data in the following circumstances:
- Service providers / contractors: We may engage third parties (e.g. hosting, email delivery services, analytics, payment processors) who assist us in delivering services. These parties act as data processors and are bound by confidentiality and data protection obligations.
- Legal / regulatory requirements: Where required by law, regulation, court order, or governmental authority, we may disclose information.
- Business transfers: In the event of a merger, acquisition, or sale of assets, your information may be transferred (subject to confidentiality and protections).
- With your consent: We may share information with your consent or as you direct.
6. Data retention
We retain your personal information only as long as necessary to fulfil the purposes for which it was collected (e.g. to provide services, comply with legal obligations, or resolve disputes). After that, we securely delete or anonymize it.
7. International / cross-border transfers
If we or our service providers transfer your data outside South Africa (or outside the EU, if applicable), we will ensure appropriate safeguards (such as Standard Contractual Clauses, or ensuring the recipient country has adequate protections) are in place
8. Data security
We implement appropriate technical and organizational measures to protect your personal data from loss, misuse, unauthorized access, disclosure, alteration, or destruction. However, no internet transmission is completely secure — we cannot guarantee absolute security, so please use care in what you share.
9. Your rights
Under POPIA (and GDPR, if applicable), you may have the following rights:
- Right to access the personal data we hold about you
- Right to correction or rectification of incorrect or incomplete data
- Right to deletion / erasure (in certain circumstances)
- Right to object to or restrict processing
- Right to portability (in certain circumstances)
- Right to withdraw consent (if processing based on consent)
- Right to lodge a complaint with a supervisory authority
If you wish to exercise any of these rights, please contact us (see “Contact Us” below). We may require identity verification before acting on such requests.
10. Children
Our Site and services are not directed at children under 13 (or other applicable age). We do not knowingly collect personal information from children. If we become aware of such collection, we will seek to delete the data.
11. Links to other websites
Our Site may include links to external websites not operated by us. This Privacy Policy does not apply to those sites. We encourage you to review the privacy policies of those third parties.
12. Changes to this Privacy Policy
We reserve the right to update or amend this Policy at any time. We will post the revised Policy on our Site with a new “Last updated” date. Where changes are material, we may notify you directly (e.g. via email or website notice).
