Legal

Privacy Policy

SaintsLink is a South African technology company that builds software, cloud applications, AI systems, business platforms, and digital services for global customers.

This Privacy Policy explains how we collect, use, share, and protect personal information when you engage with our websites, products, services, applications, APIs, marketplaces, portals, and future offerings.

Scope

This policy applies to all SaintsLink products and services, including Flow CRM, Bookly, Sentinel Nexus ERP, SaintsLink Business OS, POS systems, AI applications, customer portals, internal dashboards, APIs, mobile apps, client portals, marketplace services, Academy, research platforms, and any future products or releases.

It covers data processed through our websites, marketing, sales, support, subscription services, and customer deployments, regardless of whether the information originates from South Africa, the EU, the UK, or other jurisdictions.

Key Definitions

Personal Information means any information that identifies an individual, such as name, email address, phone number, login credentials, or device identifiers.

Customer Data means information that our customers provide through our products or services, including business records, transaction details, contact lists, sales data, operational information, and user-generated content.

Service Data means metadata, usage details, diagnostics, logs, analytics, cookies, device information, and support interactions that help us operate and improve our products.

Information We Collect

Information You Provide

We collect information that you or your organization provide directly, such as when you register for an account, subscribe to a service, complete a request form, contact support, or use a customer portal.

Information Collected Automatically

When you use our platforms, we automatically collect information about your device, browser, network, and interactions.

AI Services and Automated Processing

We may collect and process data to support AI services, model training, analytics, behavior patterns, and automation. We treat personal information used in these contexts with the same protections as other data and apply safeguards to prevent unauthorized use.

How We Use Information

We use personal information to deliver and improve our products, keep our systems secure, and communicate with customers and prospects.

Legal Bases for Processing

For South African residents, our processing is based on POPIA-compliant grounds such as contract performance, legitimate interest, consent, compliance, and protection of rights.

For European and UK residents, we also rely on GDPR legal bases including contract performance, legitimate interests, consent, legal obligation, and vital interests.

Where required, we will ask for your consent before collecting personal information for specific purposes beyond the scope of providing our services.

Sharing Information

We do not sell personal information. We share data only to operate our services, support customers, comply with law, or protect rights.

International Data Transfers

SaintsLink operates globally and may transfer personal information across borders. When data moves outside South Africa, the European Union, or the UK, we use appropriate safeguards such as standard contractual clauses, binding corporate rules, and approved transfer mechanisms to protect it.

Data Storage and Retention

We store information on secure servers operated by our cloud providers and protect it through technical and organizational controls.

We retain personal information only as long as needed to meet the purposes described in this policy, comply with legal obligations, resolve disputes, and support our services. Retention periods vary by data type and product context.

Security Measures

We implement administrative, technical, and physical measures to protect information, including encryption, access controls, network protections, logging, and regular security reviews.

No system is completely secure. We monitor our systems for vulnerabilities and respond to incidents based on established breach procedures.

User Rights

Under POPIA and GDPR, you may have rights including access, correction, deletion, objection, restriction, portability, and withdrawal of consent. We respond to requests in accordance with applicable law.

Marketing Preferences

You may opt out of marketing messages at any time by following the instructions in the message or contacting us at hello@saintslink.com. We may still send you transactional or service-related messages related to your account.

Children's Privacy

Our services are not intended for children under 13. We do not knowingly collect personal information from children without parental consent. If we learn that we have collected such information, we will take steps to delete it.

Third Party Services

We use third-party services and integrations that may have their own privacy practices. This policy does not apply to those third parties. We encourage you to review their privacy policies before sharing information.

AI Services and Automated Decision Making

SaintsLink may use artificial intelligence and automated tools to improve products, analyze trends, and automate workflows. We do not rely solely on automated decision-making for high-risk decisions affecting individuals without appropriate human review and safeguards.

Data Breach Procedures

If we identify a security incident involving personal information, we will investigate promptly, contain the incident, notify affected parties as required by law, and take corrective action.

Changes to This Policy

We may update this Privacy Policy to reflect changes in our services or legal obligations. We will publish the revised policy on this page and update the effective date. Significant changes will be communicated as appropriate.

Contact Information

If you have questions, requests, or concerns about this Privacy Policy, contact us at:

contact Ops: +27 68 554 7675

Address: SaintsLink, South Africa

Back to Home