Privacy Policy – Multido Services

Privacy Policy

At Multido Services, we believe you should know exactly what happens to your personal information — no jargon, no fine print games. This policy tells you everything.

POPIA Compliant
Effective Date
14 May 2026
Governing Legislation
POPIA Act 4 of 2013
Entity
Multido Services
Version
1.0
This Privacy Policy sets out how Multido (Pty) Ltd (“Multido Services”, “we”, “us”, “our”) collects, uses, stores, and protects your personal information. We operate in line with the Protection of Personal Information Act, 4 of 2013 (“POPIA”). Using our services or visiting our website means you have read and understood what is set out here.
01

Introduction

Multido Services is a registered South African company providing insurance-related and financial services to individuals and businesses. Your personal information belongs to you, and we take that seriously. We only collect what we need, we use it for the right reasons, and we protect it carefully.

This policy covers every way you might interact with us — through our website, client portal, phone calls, emails, or any other channel. If you have questions about anything in here, our Information Officer is always available to assist.

02

Information We Collect

The information we collect depends on the services you use. Here is what we may ask for or receive from you:

Personal Identification — Full name, identity number, date of birth
Contact Details — Email address, phone number, physical and postal address
Financial Information — Banking details, account numbers, payment records
Claims Documentation — Death certificates, police reports, affidavits, and other supporting documents
Technical Data — IP address, browser type, operating system, cookies, and session activity
Communication Records — Emails, call logs, and written correspondence linked to your account or claim
We only collect information that is necessary for the services we provide. We do not gather personal data just to have it.
03

Purpose of Processing

We use your information for specific, defined reasons. We do not process it for anything outside of what is listed here without first getting your consent:

  • To handle and process your insurance claims — from verification through to settlement
  • To confirm who you are and to guard against fraud or unauthorised access
  • To keep you informed about your account, claim progress, policy changes, or anything that affects you directly
  • To meet our legal and regulatory obligations, including POPIA and the Financial Advisory and Intermediary Services Act
  • To improve how our services and website work for you
  • To keep proper records for auditing, compliance, and resolving disputes if they arise
04

Lawful Basis for Processing

Every time Multido Services processes your personal information, we do so on one of the following lawful grounds under POPIA:

Consent — You have given us clear, informed permission to use your information for a specific purpose
Contractual Necessity — We need your information to deliver the services you have signed up for, or to prepare for doing so
Legal Obligation — The law requires us to process certain information and we have no choice but to comply
Legitimate Business Interests — We have a genuine business reason to process the information, and that reason does not override your rights
05

Data Sharing

Multido Services does not sell, rent, or share your personal information with anyone for commercial gain. There are, however, situations where sharing your information is necessary to deliver our services or meet a legal obligation:

Insurers and underwriting partners connected to your policy or claim
Regulatory and supervisory bodies, as required by applicable law
Law enforcement agencies, where we are legally required to cooperate
IT, hosting, and cloud service providers that support our day-to-day operations
Legal advisors, auditors, and compliance professionals bound by confidentiality
Any third party that receives your information is required to handle it responsibly and in a manner consistent with POPIA and this policy.
06

Cross-Border Transfers

Sometimes delivering our services means your information needs to be stored or processed outside South Africa. When that happens, we make sure the right protections are in place before any transfer takes place. This includes:

  • Sending information only to countries that offer an adequate level of data protection under POPIA
  • Putting binding agreements in place with receiving parties to ensure they treat your data properly
  • Obtaining your explicit consent where the law requires it before transferring your information

Your rights travel with your information — wherever it goes, Multido Services remains responsible for it.

07

Data Retention

We hold onto your personal information for as long as we genuinely need it — no longer. Retention periods are guided by:

  • Legal and regulatory requirements, including any statutory record-keeping rules that apply to us
  • The active management of your policy, claim, or account with Multido Services
  • Legitimate operational needs, such as audit trails and resolving any outstanding disputes

When the time comes, your information is securely deleted or anonymised. We do not keep data sitting around once it has served its purpose.

08

Security Measures

We take data security seriously at Multido Services. We have put technical and organisational measures in place to protect your information from unauthorised access, loss, or misuse:

SSL Encryption — All information sent through our website is protected by SSL/TLS encryption
Access Controls — Only authorised staff who need your information to do their job can access it
Secure Storage — Data is kept on secured servers with physical and digital access protections in place
Ongoing Monitoring — We actively monitor our systems for threats, vulnerabilities, and unusual activity
If a data breach occurs that poses a real risk to your rights, we will notify both the Information Regulator and affected individuals within the timeframes set by POPIA.
09

Your Rights Under POPIA

POPIA gives you real, enforceable rights over your personal information. You can exercise any of these by reaching out to our Information Officer directly:

Right to Access

Ask us whether we hold your information and request a copy of it at any time.

Right to Correction

Ask us to fix or update anything in your records that is wrong, incomplete, or out of date.

Right to Deletion

Ask us to delete your information when we no longer have a lawful reason to keep it.

Right to Object

Object to how we are processing your information if you have grounds relating to your specific situation.

Withdraw Consent

Pull back any consent you have given us, at any time, without affecting anything we did before you withdrew it.

Right to Complain

Take a complaint directly to the Information Regulator if you feel your POPIA rights have not been respected.

Information Regulator (South Africa)
Email: POPIAComplaints@inforegulator.org.za
Website: www.inforegulator.org.za
10

Information Officer

POPIA requires us to appoint an Information Officer who is responsible for how we handle personal data and for making sure we stay compliant. All data-related queries, access requests, and complaints should be directed to this person:

IO
Multido Services — Information Officer
Responsible Party · Data Protection & POPIA Compliance
info@multido.co.za

Please send any requests in writing. We will respond within the timeframes POPIA prescribes — and we take that obligation seriously.

11

Cookies

Our website uses cookies — small files that sit on your device — to make your experience better and to help us understand how people use the site. We use three types:

  • Essential Cookies
    These keep the site running. Without them, basic features would not work, so they cannot be switched off
  • Analytics Cookies
    These show us things like which pages are most visited, helping us improve the site over time
  • Preference Cookies
    These remember choices you have made so you do not have to set them every time you visit

You can manage or turn off cookies through our cookie banner when you first arrive on the site, or at any point through your browser settings. Just be aware that turning some of them off may affect how certain parts of the site work.

12

Updates to This Policy

We review this policy from time to time and will update it when our services change, when the law changes, or when we think something can be explained more clearly. When we make changes that matter, we will let you know through our website or by reaching out directly.

The current version will always be live at multido.co.za. Continuing to use Multido Services after an update means you accept the revised policy.

13

Contact Us

Got a question about this policy or how we handle your information? Reach out — we are happy to help.

Call Us
012 023 4408

We will do our best to sort things out. If you are still not satisfied after contacting us, you have every right to take your complaint to the Information Regulator as outlined in Section 9.

This document was last reviewed and updated on 14 May 2026.