GDPR Compliance Policy – CrazyClicks

Last Updated: [Insert Date]

1. Introduction

CrazyClicks (“we”, “us”) complies with the General Data Protection Regulation (GDPR) for visitors from the European Union. This policy outlines how we collect, use, and protect personal data on https://crazyclicks.co.za.

2. Data Controller

CrazyClicks
20245 Malithi Street, Kraaifontein
Cape Town, South Africa
Email: info@crazyclicks.co.za

3. Lawful Basis for Processing

We process personal data when:
✓ You give explicit consent (e.g., newsletter signup)
✓ Necessary for contract fulfillment (e.g., purchases)
✓ Required by South African law

4. Data We Collect

• Identifiers: Name, email, IP address
• Commercial Data: Purchase history
• Technical Data: Browser type, cookies
• User Content: Reviews, comments

5. Your Rights (Articles 15-22 GDPR)

You may request to:
✓ Access your personal data
✓ Correct inaccurate information
✓ Erase your data (“Right to be Forgotten”)
✓ Restrict processing
✓ Receive your data in a portable format
✓ Object to processing
✓ Withdraw consent

6. Data Sharing & Transfers

We may share data with:
• Payment processors (for transactions)
• Email service providers (for communications)
• Analytics providers (Google Analytics)

All third parties comply with GDPR requirements. Data may be transferred outside the EU with appropriate safeguards.

7. Data Retention

We retain personal data only as long as necessary for:
• Service provision
• Legal compliance
• Dispute resolution

8. Security Measures

We implement:
• SSL encryption
• Regular security audits
• Limited employee access
• Secure password policies

9. Data Breach Protocol

In case of a breach affecting EU users, we will:

  1. Notify the relevant DPA within 72 hours
  2. Inform affected individuals when risk is high

10. Contact Information

For GDPR requests or questions:
📧 Email: info@crazyclicks.co.za
📬 Address: 20245 Malithi Street, Kraaifontein, Cape Town

Requests will be processed within 30 days.