Last updated: 3 September 2026
OneNode (Pty) Ltd (“OneNode”, “we”, “us” or “our”) respects your privacy and processes personal information in accordance with the Protection of Personal Information Act 4 of 2013 (POPIA) and other applicable South African law. This policy explains what we collect, why we use it, who may receive it and the choices available to you.
1. Responsible party
OneNode (Pty) Ltd is the responsible party for personal information processed through this website and in delivering our services. Privacy requests may be sent to support@onenode.co.za or made by calling +27 68 617 8074.
2. Personal information we collect
- Identity and contact details, such as your name, telephone number, email address, organisation and role.
- Request and communication details, including messages, support requests, feedback, files and interaction history.
- Client and service details needed to quote, contract, deliver, administer and support agreed work.
- Technical information, such as device, operating system, IP address, browser, diagnostic, security and service-log data where relevant to the request.
- Transaction and billing records, excluding full card or banking credentials unless a payment process specifically requires them.
- Website and analytics information, including cookie identifiers, referral information and pages visited where those tools are enabled.
- Marketing preferences and records of consent, objection, unsubscribe or other communication choices.
3. How information is collected
We collect information directly from you through forms, email, telephone, WhatsApp, service interactions and agreements. We may also receive relevant information from an authorised representative, your organisation, a service provider involved in your environment, public sources, or automatically from your browser and device.
4. Why we process information
- To respond to enquiries, assessments, support requests, feedback and feature or bug reports.
- To prepare proposals, enter into agreements and deliver, administer and improve services.
- To diagnose problems, protect systems, prevent misuse and maintain appropriate service and security records.
- To manage billing, supplier coordination, legal obligations and business administration.
- To send service communications and, where permitted or consented to, relevant marketing messages.
- To operate, secure, measure and improve the website and client experience.
- To establish, exercise or defend legal rights and comply with lawful requests.
Depending on the circumstances, processing is based on consent, performance of a contract, compliance with law, protection of a legitimate interest, or another ground permitted by POPIA.
5. Required and optional information
Fields marked as required are needed to process the relevant request. If you do not provide them, we may be unable to respond or deliver the requested service. Other information is voluntary, although additional context may help us diagnose or scope the work.
6. Sharing and operators
We do not sell personal information. We may disclose only what is reasonably necessary to authorised staff, contractors, hosting, email, analytics, support, security, accounting, payment or other service providers acting for us; suppliers or technology providers involved in your authorised request; professional advisers; and regulators, courts or public authorities where lawfully required. Recipients are expected to protect the information and use it only for the authorised purpose.
7. Cross-border processing
Some cloud, email, security, support or analytics providers may process information outside South Africa. Where this occurs, we take reasonable steps to use recipients and arrangements that provide an appropriate level of protection as required by POPIA.
8. Retention
We keep personal information only for as long as reasonably needed for the purpose collected, an agreed service, legal or contractual obligations, security and dispute requirements, or another lawful business need. Information is then deleted, destroyed or de-identified where reasonably practicable.
9. Security and incidents
We use reasonable technical and organisational safeguards appropriate to the nature of the information and the risks involved. No online system can be guaranteed completely secure. Where a qualifying security compromise occurs, we will follow applicable notification and response requirements.
10. Direct marketing
Electronic marketing is sent only where permitted by law. You may object or unsubscribe at any time using the option in the message or by contacting us. Service, security and transactional communications may still be sent where necessary.
11. Cookies and analytics
The site uses essential storage for security, operation and remembering your privacy choices. Optional analytics help us understand site use. Optional marketing technologies help measure campaigns. Analytics and marketing storage are denied until you choose otherwise through the cookie preferences shown on the site. You can accept, reject or manage the optional categories and change your selection later through the Cookie preferences link in the footer. Browser controls can also block or delete stored information, although doing so may affect site functionality.
12. Your rights
- Ask whether we hold personal information about you and request access to it.
- Request correction, completion, deletion or destruction where the law permits.
- Object to certain processing or withdraw consent where consent is the basis used.
- Ask for information about recipients or categories of recipients.
- Complain to the Information Regulator or seek another remedy available in law.
We may need to verify your identity before actioning a request. Access requests may also be made under our PAIA Manual.
13. Information Regulator
Complaints may be submitted to the Information Regulator (South Africa). Current contact details and complaint channels are available at inforegulator.org.za.
14. Children, third-party links and automated decisions
This site is not directed at children and we do not knowingly collect a child’s information without appropriate authority. External websites have their own privacy practices. We do not ordinarily make decisions through solely automated processing that produce legal or similarly significant effects without giving an appropriate notice.
15. Changes to this policy
We may update this policy as our services, technology or legal duties change. The current version and update date will remain available on this page.