Privacy Policy
How nuvoteQ collects, uses, shares and protects personal information across our platforms — compliant with POPIA, GDPR, HIPAA and ECTA.
20 May 2026
Purpose
nuvoteQ commits to adhering with the Protection of Personal Information Act 4 of 2013 (POPIA), the Electronic Communications and Transactions Act 25 of 2002 (ECTA), the European Union General Data Protection Regulation (GDPR), the Health Insurance Portability and Accountability Act (HIPAA) and other applicable data protection laws.
Scope and responsibilities
This policy covers personal information collected from website visitors, account creators, profile managers and those communicating with nuvoteQ through online services. By using our services, you accept the terms of this policy.
If you disagree with any aspect of this policy, you may adjust your browser or device settings to restrict cookies — though some website functionality may be impaired as a result.
Personal information we collect
We collect personal information when you provide it through our platforms — at which point you are no longer anonymous to us.
- Names, email addresses and telephone numbers
- Login credentials and account preferences
- Gender, qualifications and professional experience
- Traffic, location and weblog data
- Communication records and feedback
Non-identifying information
We also collect non-identifying information including browser type, device information, IP addresses, demographic data and aggregated analytics through cookies and similar technologies.
If this non-identifying data ever becomes linked to your personal information, it receives the same protections as personal information under this policy.
Sensitive personal information
nuvoteQ does not collect sensitive personal information — health, religion, political beliefs, race, sexual orientation — through online services.
You should not provide such information unless specifically requested in writing through a documented consent process.
Legal basis for processing
We rely on one or more of the following legal bases depending on the processing purpose:
- Legitimate business interests — managing, operating or promoting our business
- Compliance with legal obligations
- Protection of vital individual interests
- Your explicit consent
How we use personal information
We use personal information to perform administrative and business functions, send administrative messages, obtain service feedback through surveys, respond to inquiries, assess and improve platform performance, inform you about our services and solutions, and maintain current contact details.
These activities support contractual relationships, legal compliance and our legitimate business interests.
Security
We employ physical, administrative and technical safeguards to protect information from loss, alteration, unauthorised access or disclosure. We maintain encryption at rest and in transit, role-based access controls and full audit trails across our infrastructure.
However, absolute security cannot be guaranteed due to the inherent risks of internet transmission. By transmitting information through our platforms you accept those risks.
Cross-border transfers
As a global organisation, we may transfer personal information internationally. For transfers to jurisdictions without adequate protection levels, we execute Data Processing Agreements ensuring adequate safeguards in line with GDPR Standard Contractual Clauses.
Your rights under POPIA and GDPR
Under both POPIA and GDPR, you have the right to:
- Access the personal information we hold about you
- Rectify inaccurate or incomplete information
- Request deletion in certain circumstances
- Restrict processing in specific situations
- Withdraw consent for future processing
- Object to processing based on legitimate interests
- Object to direct marketing and related profiling
- Avoid decisions based solely on automated processing
- Lodge complaints with the Information Regulator
Direct marketing
We may send marketing communications about our solutions and services. You can opt out at any time by contacting us — we comply with opt-out requests promptly.
Administrative messages necessary for service delivery will continue regardless of marketing opt-out status. We do not sell or rent personal information to third parties.
Retention
We retain personal information for as long as necessary for the purpose for which it was collected, or longer if legally required. Retention criteria consider legal, contractual or business obligations and any consent you have given.
Updates to this policy
We may update, amend or modify this policy from time to time. The last-updated date at the top of this page reflects the most recent revision. We encourage you to review the policy periodically.
Contact
For questions, privacy concerns or requests regarding personal information processing, contact our Information Officer at hello@nuvoteq.io or via the PAIA Manual contact process available at nuvoteq.io.
For questions about this document, contact our Information Officer at hello@nuvoteq.io — we respond within 30 days as required.