I am committed to protecting your privacy. This policy explains how I, Rabatho Laka, handle your personal information across my entire website, including my portfolio and the RL ART online store, in accordance with the South African Protection of Personal Information Act (POPIA).
Who I am
My website address is: https://rabatholaka.com. I am an artist based in Johannesburg, South Africa. This policy applies to all visitors to the site, whether you are viewing my portfolio or purchasing artwork from my store.
Information I collect and why
Store Orders: When you purchase from me, I collect your name, email, phone number, and physical address. I need this to process your order, communicate updates, and arrange delivery.
Comments: When visitors leave comments, I collect the data shown in the comments form, and also the visitor’s IP address and browser user agent string to help spam detection.
Gravatar: An anonymized string created from your email address (also called a hash) may be provided to the Gravatar service to see if you are using it. The Gravatar service privacy policy is available here: https://automattic.com/privacy/. After approval of your comment, your profile picture is visible to the public in the context of your comment.
Cookies: If you leave a comment, you may opt-in to saving your name and email in cookies for your convenience. If you visit my login page, a temporary cookie is set to determine if your browser accepts cookies. When you log in, I set up cookies to save your login info and screen display choices. I also use cookies to track cart contents while you browse.
Embedded content from other websites
Articles and pages on this site may include embedded content (e.g. videos, images, articles, etc.). Embedded content from other websites behaves in the exact same way as if the visitor has visited the other website. These websites may collect data about you, use cookies, embed additional third-party tracking, and monitor your interaction with that embedded content, including tracking your interaction with the embedded content if you have an account and are logged in to that website.
Analytics
Who I share your data with
I do not sell your data. To run this website and fulfill orders, I share information with:
Payment Processors: Payments are handled through secure, PCI-compliant gateways. I do not store your credit card details.
Courier Services: Your delivery details are shared with vetted courier and logistics partners to ensure your order reaches you.
Spam Detection: Visitor comments may be checked through an automated spam detection service.
How long we retain your data
Comments: If you leave a comment, the comment and its metadata are retained indefinitely.
Order Records: I retain financial records (orders and invoices) for 5 years to comply with South African tax laws (SARS).
User Profiles: For users that register on my website, I store the personal information provided in the user profile. All users can see, edit, or delete their personal information at any time (except they cannot change their username).
What rights you have over your data
If you have an account on this site, or have left comments, you can request to receive an exported file of the personal data I hold about you. You can also request that I erase any personal data I hold. This does not include any data I am obliged to keep for administrative, legal, or security purposes.
Where we send your data
Visitor comments may be checked through an automated spam detection service. This service may be located outside of South Africa, but I ensure that any such service maintains strict data protection standards.
Additional Information & Security
How we protect your data
My website uses SSL encryption for all data transmission. I use strong password protocols and limit administrative access to your information.
What data breach procedures we have in place
In the event of a data breach, I will notify the Information Regulator and affected users within 72 hours of discovery, as required by POPIA.
What third parties we receive data from
I may receive technical confirmation of payments from my payment gateways.
What automated decision making and/or profiling we do with user data
I do not use your data for automated profiling or decision-making.
Industry regulatory disclosure requirements
I comply with the Electronic Communications and Transactions Act (ECTA) and the Consumer Protection Act (CPA) of South Africa.
Your contact information
For any privacy-related inquiries, please contact me at: admin@rabatholaka.com