Ao Auto Traders

AO Auto Traders

Privacy Policy

AO Auto Traders (aouto.co.za) Privacy Policy

Effective Date: [Insert date]

1. Introduction

AO Auto Traders (“we”, “us”, “our”) is committed to protecting the personal information of our customers, users, and visitors (“you”, “your”) in compliance with the Protection of Personal Information Act (POPIA). This Privacy Policy explains what personal data we collect, how and why we use it, and your rights regarding that data.

2. Information We Collect

We may collect the following personal information:
  • Identification data: name, ID number, company name, contact details (e.g. phone, email), postal and billing address.
  • Vehicle-related data: vehicle preferences, enquiries, purchase history, financing details.

We collect only what’s necessary for the purposes described below this aligns with POPIA’s Processing Limitation principle.

3. How We Use Your Information

Your personal information is processed for the following lawful and specific purposes:
  • To respond to your enquiries or requests.
  • To facilitate vehicle sales, financing, or related services.
  • To comply with contractual and legal obligations.

4. Legal Basis for Processing

We process personal information when:

  • You provide explicit consent
  • Required for the performance of a contract (e.g., sale or finance agreement).
  • We have a legal obligation to process (e.g., regulatory compliance).
  • Processing serves our legitimate interests, balanced against your rights.

5. Data Accuracy

We take reasonable steps to ensure your personal information is accurate, complete, and up to date, in line with the Information Quality principle.

6. Retention and Deletion

Your personal data is retained only for as long as necessary to fulfill the purposes above or as required by law. Once no longer needed, it will be securely deleted or de-identified.

7. Security Measures

To protect your personal information, we implement appropriate technical and organizational safeguards, including:

  • Encryption of data in transit and at rest.
  • Access controls and role-based access.
  • Employee training on data protection best practices.
We also require third-party vendors to maintain equivalent safeguards under written agreements.

8. Data Breach Procedures

In the unlikely event of a data breach that may harm data subjects, we will promptly notify: The Information Regulator, and
Affected individuals, with details of the breach and mitigation steps taken

9. Your Rights

Under POPIA, you have the right to
  • Be informed about the collection and processing of your data.
  • Access the personal information we hold about you.
  • Correct or update inaccurate or incomplete data.
  • Delete or request erasure of data that’s no longer required.
  • Object to processing.
  • Restrict processing under certain conditions.
  • Not be discriminated against for exercising your rights.
Requests can be submitted via our official contact details on the website.

10. Policy Review

We will review this policy at least annually or whenever there are changes in our data practices or applicable law, per POPIA guidelines.

11. Changes to This Policy

Updates to our Privacy Policy will be posted on this page with a new effective date.