Account information
Name, email address, authentication identifiers, profile details and account-security events.
Privacy and data protection
This notice explains how DebitGuard processes personal information when people use the website, create accounts, join workspaces, purchase subscriptions, submit enquiries or use the Consumer Complaint Risk Intelligence service.
DebitGuard is the responsible party for personal information processed for the operation of the DebitGuard service. Privacy and Information Officer enquiries may be sent to support@debitguard.co.za.
Name, email address, authentication identifiers, profile details and account-security events.
Workspace name, account type, membership, Admin/Analyst/Viewer role, invitations, saved companies and configuration choices.
Plan, billing interval, Paddle customer, transaction and subscription identifiers, entitlement status and cancellation dates. DebitGuard does not receive or store full payment-card details.
Companies searched or saved, monitoring configurations, snapshots, alerts, reports, selected periods and actions needed to provide an audit trail.
Contact details, organisation information and messages submitted through enterprise enquiries, email or support channels.
Security logs, request metadata, browser storage, essential cookies or tokens, error information and limited anti-abuse records.
Depending on the activity, processing is based on consent, performance of a contract, compliance with legal obligations, protection of legitimate interests, or another lawful ground recognised by applicable data-protection law.
DebitGuard uses specialised service providers to operate the platform. They process information only for the relevant service and under their own security and privacy commitments.
Information may also be disclosed where required by law, a regulator, court process, security investigation, corporate transaction or the protection of DebitGuard, its users or others.
Some service providers and infrastructure may process information outside South Africa. DebitGuard takes reasonable steps to use reputable providers and appropriate contractual, organisational and technical safeguards for cross-border processing.
DebitGuard currently uses essential authentication sessions, security tokens and browser storage needed for sign-in, active-workspace selection, anonymous preview limits, checkout continuation and service functionality. These are not used to sell personal information.
A separate consent banner will be introduced before any non-essential advertising or behavioural analytics technology is activated.
Information is retained for as long as reasonably necessary to provide the service, maintain security and audit trails, resolve disputes and meet legal, tax, accounting and regulatory obligations. Retention periods vary according to the record and the customer relationship. Information that is no longer required is deleted, de-identified or securely restricted where appropriate.
DebitGuard applies role-based access, authenticated server requests, row-level database controls, secret management, signed webhook verification, encrypted connections and other reasonable technical and organisational measures. No internet service can guarantee absolute security, and users must keep credentials confidential and notify DebitGuard promptly of suspected misuse.
Subject to applicable law, you may request access to personal information, correction or deletion of inaccurate or unnecessary information, object to certain processing, withdraw consent where processing depends on consent, or raise a complaint.
Send requests to support@debitguard.co.za. You may also lodge a complaint with the Information Regulator (South Africa).
DebitGuard is a professional service and is not intended for children. Accounts must be created by people who are at least 18 years old and able to enter into binding agreements.
This notice may be updated as the service, providers, data sources or legal requirements change. Material updates will be communicated through the website, account or email where appropriate.