1. Introduction

This Privacy Policy applies to Zinia ISP (Pty) Ltd, Zinia Connect (Pty) Ltd and Zinia Devworks (Pty) Ltd, collectively trading as Zinia (“Zinia”, “we”, “us”, or “our”), and is committed to protecting your personal information and ensuring that it is collected, used, and processed lawfully, transparently, and securely.

This Privacy Policy explains how we collect, use, disclose, and safeguard personal information when you:

  • Visit our website
  • Engage with our services
  • Communicate with us
  • Enter into a business relationship with us

This policy is aligned with the Protection of Personal Information Act, 4 of 2013 (POPIA), as well as applicable provisions of the Electronic Communications and Transactions Act (ECTA) and the Consumer Protection Act (CPA).

2. Company Information

Zinia ISP (Pty) Ltd, Zinia Connect (Pty) Ltd and Zinia Devworks (Pty) Ltd, collectively trading as Zinia.
Johannesburg, South Africa

General Contact: info@zinia.co.za / +27 11 462 0900

3. Information Officer

In accordance with POPIA, Zinia has appointed the following:

Deputy Information Officer:
Julie Davis
Email: privacy@zinia.co.za

The Information Officer is responsible for ensuring compliance with POPIA, managing data protection practices, and handling data-related requests.

You may contact the Information Officer for:

  • Access to your personal data
  • Correction or deletion requests
  • Objections to processing
  • Complaints regarding privacy

Access to information requests are governed by our PAIA Manual, available here: [link]

4. Scope of This Policy

This Privacy Policy applies to:

  • Website visitors
  • Prospective clients and leads
  • Existing clients
  • Suppliers and partners
  • Individuals interacting with Zinia

It covers both:

  • Personal information collected via the website, and
  • Information processed as part of our IT and technology services

5. Categories of Personal Information We Collect

User-generated content submitted through collaboration, support, productivity, automation, or AI-enabled platforms.

We may collect and process the following categories of personal information:

5.1 Identification & Contact Information

  • Full name
  • Email address
  • Phone number
  • Company name and job title

5.2 Business & Service Information

  • IT environment details
  • Infrastructure and system information
  • Service requirements and project data

5.3 Technical & Usage Data

  • IP address
  • Browser type and version
  • Device information
  • Pages visited and interaction data

5.4 Communication Data

  • Email correspondence
  • Support queries
  • Meeting notes and call records

5.5 Marketing Data

  • Preferences and consent records
  • Campaign interaction data

6. How We Collect Information

We collect personal information through:

  • Website forms (contact, enquiries, downloads)
  • Direct communication (email, phone, meetings)
  • Service delivery interactions
  • Cookies and tracking technologies
  • Third-party platforms (e.g. CRM, marketing tools)

7. Lawful Basis for Processing (POPIA Compliance)

We process personal information based on:

  • Consent – where you have explicitly agreed
  • Contractual necessity – to provide services to you
  • Legitimate interest – to operate and improve our business
  • Legal obligation – where required by law

8. How We Use Personal Information

We use personal information to:

  • Provide and manage our services
  • Deliver managed IT, cybersecurity, cloud, and connectivity solutions
  • Respond to enquiries and support requests
  • Manage client relationships and contracts
  • Improve website functionality and user experience
  • Conduct analytics and performance tracking
  • Send relevant communications and marketing (where permitted)
  • Ensure security, monitoring, and fraud prevention

 

Use of Artificial Intelligence and AI-Assisted Technologies

Zinia may use artificial intelligence (“AI”), machine learning, automation, and AI-assisted technologies to improve operational efficiency, service delivery, customer support, cybersecurity monitoring and reporting, software development, data analysis, and business administration.

Where AI-assisted technologies are used, Zinia implements reasonable measures to ensure that personal information is processed lawfully, securely, and in accordance with POPIA.

Zinia does not knowingly use personal information submitted through its website to train public AI models. Employees, contractors, and authorised users are required to follow internal policies governing the use of AI tools and the handling of personal information.

The use of AI technologies does not remove Zinia’s responsibility to protect personal information and comply with applicable data protection legislation.

9. Service-Specific Data Processing

As an IT and technology service provider, Zinia may process data on behalf of clients, including:

  • System and infrastructure data
  • Network traffic and logs
  • User and access data
  • Security and monitoring data

In these cases:

  • Zinia acts as an Operator (Data Processor)
  • The client remains the Responsible Party (Data Controller)
  • Processing is governed by contractual agreements (e.g. MSA / SLA / DPA)

We implement strict controls to ensure the confidentiality, integrity, and security of client data.

10. Sharing of Personal Information

We may share personal information with:

10.1 Service Providers

Including:

  • Hosting providers
  • Cloud platforms (e.g. Microsoft, AWS)
  • CRM and marketing platforms
  • Analytics tools
  • IT support and monitoring systems

Cloud platforms, AI service providers, cybersecurity platforms, CRM platforms, communications providers, analytics platforms and other authorised technology partners.

All third parties are contractually required to protect your data.

10.2 Business Partners

Where necessary to deliver services or solutions.

10.3 Legal and Regulatory Authorities

Where required by law or to protect rights and safety.

10.4 Business Transfers

In the event of a merger, acquisition, or restructuring.

11. Cross-Border Data Transfers

Zinia may transfer, process, store, or permit access to personal information outside the Republic of South Africa where required for service delivery, business operations, cloud hosting, cybersecurity, communications, software platforms, artificial intelligence tools, backup services, or other technology services.

These transfers may involve service providers located in jurisdictions including, but not limited to, the United States, European Union member states, the United Kingdom, and other countries in which our authorised service providers operate.

Where personal information is transferred outside South Africa, Zinia takes reasonable steps to ensure that appropriate safeguards are in place, including contractual protections, vendor assessments, security controls, and compliance measures intended to satisfy applicable POPIA requirements.

12. Data Retention

We retain personal information only for as long as necessary:

  • Leads: retained for a reasonable period for follow-up
  • Clients: duration of relationship + legal retention period
  • Financial records: as required by South African law
  • Technical logs: limited retention for security and analysis

Data is securely deleted or anonymised when no longer required.

13. Security of Personal Information

Zinia implements industry-standard security measures, including:

  • Access control and authentication
  • Encryption where appropriate
  • Network and endpoint protection
  • Continuous monitoring and logging
  • Vulnerability management
  • Secure data storage practices
  • Acceptable Use Policies
  • Data Classification Standards
  • AI Governance Controls
  • Vendor Risk Assessments

While we take all reasonable steps, no system is completely secure.

14. Data Breach Response

In the event of a data breach:

  • We will investigate and contain the incident
  • Affected parties will be notified where required
  • The Information Regulator will be notified where applicable
  • Remediation steps will be implemented

15. Your Rights Under POPIA

You have the right to:

  • Access your personal information
  • Request correction or deletion
  • Object to processing
  • Withdraw consent
  • Lodge a complaint with the Information Regulator

Requests can be submitted to:
privacy@zinia.co.za

16. Direct Marketing

We comply with POPIA, ECTA, and CPA requirements:

  • Marketing is based on consent or an existing relationship
  • You may opt out at any time
  • Opt-out requests are processed free of charge

17. Cookies and Tracking Technologies

We use cookies and similar technologies to:

  • Ensure website functionality
  • Analyse traffic and performance
  • Improve user experience

Types of cookies include:

  • Essential cookies
  • Analytics cookies
  • Performance cookies

You can manage cookie preferences via your browser settings.

18. Third-Party Links

Our website may contain links to third-party websites.
We are not responsible for their privacy practices.

19. Children’s Privacy

Our services are not directed at children.
We do not knowingly collect personal information from minors.

20. Changes to This Policy

We may update this Privacy Policy from time to time.
Changes will be published on our website with an updated date.

21. Contact Us

For any privacy-related queries or requests:

Email: privacy@zinia.co.za
Phone: +27 11 462 0900