Privacy Policy
Last updated: March 02, 2026
1. Introduction
The Lokal Shop ("we", "us", "our") is committed to protecting your personal information and your right to privacy in accordance with the Protection of Personal Information Act 4 of 2013 (POPIA) and other applicable South African laws.
This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website or make a purchase.
2. Information We Collect
2.1 Personal Information
We collect personal information that you voluntarily provide when you:
- Create an account
- Place an order
- Subscribe to our newsletter
- Contact us
This information may include:
- Name and surname
- Email address
- Phone number
- Delivery address
- Billing address
- Payment information (processed securely through our payment provider)
2.2 Automatically Collected Information
When you visit our website, we may automatically collect:
- IP address
- Browser type and version
- Device information
- Pages visited and time spent
- Referring website
3. Purpose of Processing (POPIA Section 13)
We process your personal information for the following purposes:
- Order Fulfillment: To process and deliver your orders
- Communication: To send order confirmations, shipping updates, and respond to inquiries
- Marketing: To send promotional content (only with your consent)
- Legal Compliance: To comply with legal obligations
- Website Improvement: To analyze usage and improve our services
- Fraud Prevention: To protect against fraudulent transactions
4. Legal Basis for Processing
Under POPIA, we process your personal information based on:
- Contract: Processing necessary to fulfill our contract with you (orders)
- Consent: Where you have given explicit consent (marketing emails)
- Legitimate Interest: For fraud prevention and website security
- Legal Obligation: To comply with South African law
5. Information Sharing
We may share your personal information with:
- Delivery Partners: To ship your orders
- Payment Processors: To process payments securely
- Service Providers: Who assist with website hosting and email services
- Legal Authorities: When required by law
We do not sell your personal information to third parties.
6. Data Security
We implement appropriate technical and organizational measures to protect your personal information, including:
- SSL encryption for data transmission
- Secure payment processing through certified providers
- Limited access to personal information
- Regular security assessments
However, no electronic transmission over the internet is 100% secure, and we cannot guarantee absolute security.
7. Data Retention
We retain your personal information only for as long as necessary to:
- Fulfill the purposes for which it was collected
- Comply with legal requirements (e.g., tax records for 5 years)
- Resolve disputes and enforce agreements
8. Your Rights Under POPIA
You have the right to:
- Access: Request a copy of your personal information we hold
- Correction: Request correction of inaccurate information
- Deletion: Request deletion of your personal information (subject to legal retention requirements)
- Object: Object to processing of your information for direct marketing
- Withdraw Consent: Withdraw consent for marketing communications at any time
- Lodge a Complaint: File a complaint with the Information Regulator
To exercise these rights, please contact us using the details below.
9. Cookies
Our website uses cookies to:
- Remember your shopping cart
- Keep you logged in
- Analyze website traffic
- Improve your browsing experience
You can control cookies through your browser settings. Disabling cookies may affect website functionality.
10. Marketing Communications
We will only send marketing communications if you have opted in. You can unsubscribe at any time by:
- Clicking the unsubscribe link in our emails
- Contacting us directly
11. Children's Privacy
Our website is not intended for children under 18 years of age. We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately.
12. Cross-Border Transfers
Your information may be transferred to and processed in countries outside South Africa (e.g., for hosting services). We ensure adequate protection is in place as required by POPIA Section 72.
13. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes by posting a notice on our website or sending an email.
14. Information Regulator
If you are not satisfied with how we handle your personal information, you have the right to lodge a complaint with:
The Information Regulator (South Africa)
Website: www.justice.gov.za/inforeg
Email: inforeg@justice.gov.za
15. Contact Us
For any questions about this Privacy Policy or to exercise your rights, please contact us:
Email: info@thelokalshop.co.za