ShellRick Tech (Pty) Ltd (“Company”, “we”, “us”) operates qrop.co.za (the “Service”). We are committed to protecting your personal information in compliance with the Protection of Personal Information Act (POPIA) and, where applicable, the General Data Protection Regulation (GDPR).
1. Who We Are
ShellRick Tech (Pty) Ltd is a private company registered in the Republic of South Africa. We provide a QR-code generation and management platform available at qrop.co.za.
2. What Information We Collect
We collect and process only what is necessary to provide and improve the Service:
2.1 Account Information
Name, email address, password.
2.2 Billing Information
Card details are processed by our payment partners (e.g., Yoco or Stripe) and not stored on our servers. We may store billing address and transaction metadata for invoicing and compliance.
2.3 Usage Data
IP address, browser type, device information, pages viewed, and actions on the site for analytics and security.
2.4 Generated Content
QR codes, configurations, and linked URLs you choose to host through the Service.
2.5 Support Data
Emails or messages you send us for support and issue resolution.
3. How We Use Your Information
- Provide, maintain, and improve the Service.
- Process payments and manage subscriptions.
- Communicate updates, invoices, and technical notices.
- Detect, prevent, and address fraud or misuse.
- Comply with legal obligations.
We do not sell or rent your data.
4. Legal Basis for Processing (GDPR)
- Contractual necessity (to provide the Service).
- Legitimate interests (security, analytics, improvements).
- Legal obligations (tax and regulatory compliance).
- Consent (marketing emails; you may withdraw at any time).
5. Data Retention
- Account data: retained for the duration of your account.
- Transaction data: retained for 5 years for tax/audit.
- Support data: retained for up to 24 months after ticket closure.
You may request deletion at privacy@shellrick.tech.
6. Your Rights
- Access, correct, or delete personal data.
- Withdraw consent for marketing.
- Request data export/portability.
- Lodge a complaint with the Information Regulator of South Africa or your local data authority (for GDPR).
7. Data Security
We implement encryption, access controls, and secure hosting. Payment processing is handled by PCI-DSS compliant providers (e.g., Yoco or Stripe).
8. Cross-Border Transfers
Your information may be processed in or outside South Africa. We ensure adequate protection consistent with POPIA/GDPR requirements.
9. Cookies
We use essential cookies for authentication and analytics cookies to improve service performance. You can control cookies in your browser settings.
10. Changes to this Policy
We may update this policy. The latest version will be available at https://qrop.co.za/privacy. Continued use indicates acceptance of updates.
11. Contact Us
Email: privacy@shellrick.tech • Website: https://qrop.co.za