This Privacy Policy explains how EudaTech (operated by Damian Grobler, "we", "us", "our") collects, uses, stores, and shares personal information when you visit eudatech.com and related pages, contact us, enrol for a project, or subscribe to our newsletter.
We are based in South Africa and process personal information in line with the Protection of Personal Information Act 4 of 2013 (POPIA). Where visitors from other regions use the site, we also aim to meet common expectations under laws such as the EU/UK GDPR where they reasonably apply.
This page is provided for transparency and is not formal legal advice. If you need a legal opinion for a specific situation, please consult a qualified attorney.
1. Who is responsible
Responsible party / operator: EudaTech / Damian Grobler
- Email: [email protected]
- Phone: +27 61 541 3449
- Website: https://eudatech.com
- Service area: South Africa (remote / service-area business model)
For privacy requests (access, correction, deletion, objection, or complaint), email [email protected] with the subject line "Privacy request".
2. Personal information we collect
We only collect information that is necessary for the purpose at hand. Depending on how you use the site, that may include:
2.1 Contact / enquiry form
When you send an enquiry via the website contact form, we collect:
- Name
- Email address
- Optional service interest (e.g. website, game, other)
- Message content
This is sent to us by email through our email provider (Mailgun) and is used to respond to your enquiry. We do not run a separate customer database solely for these messages beyond email and ordinary business correspondence.
2.2 Project / client enrolment form
When you complete the client enrolment portal, you may provide a broader set of business and project details so we can prepare a proposal. That can include:
- Full name, company name, email, phone number, preferred contact method
- Physical or postal address
- South African ID number (or other identity reference you choose to provide)
- Industry / business type and business size
- Project name, description, scope, target audience, timeline, and budget range
- Technical preferences (tech stack, hosting, maintenance, existing systems)
- Contract and NDA preferences, billing information you enter
- Optional context (competitors, success metrics, stakeholders, notes)
Identity numbers and billing details are treated as sensitive business/personal information. We use them only to identify parties for contracting, compliance, and billing discussions—not for marketing to third parties.
Submissions are emailed to us (and a confirmation may be emailed to you) via Mailgun. They are then handled in ordinary business systems (email, documents, project tools) as needed to deliver services.
2.3 Newsletter (Zoho)
If you subscribe to EudaTech's newsletter, we store your name and email address in our Zoho marketing / campaigns tools so we can send EudaTech posts, deals, events, and related updates. You can unsubscribe at any time using the link in each email or by contacting us.
2.4 WhatsApp and direct channels
If you contact us via WhatsApp, phone, email, or LinkedIn, we process the information you choose to share on those platforms under their terms, plus our records of the conversation needed to help you.
2.5 Security verification (Cloudflare Turnstile)
We use Cloudflare Turnstile to reduce bots and abuse. Cloudflare may process technical data such as IP address, browser characteristics, and a challenge token. We may store a short-lived flag in sessionStorage so you are not re-challenged during the same browser session.
2.6 Analytics and advertising (with consent)
If you accept analytics and/or marketing cookies, we may process device and usage data through:
- PostHog — product analytics (pages viewed, events, approximate location derived from IP, device/browser data, error diagnostics)
- Google Analytics (GA4) — aggregated website usage statistics
- Google Ads conversion tags — to measure whether ads lead to meaningful actions (e.g. form submit or WhatsApp click)
These tools typically use cookies or similar storage. See our Cookie Policy and the on-site consent banner. You can refuse non-essential tools and still use the website.
2.7 Local browser storage (functional)
- Cookie consent choice (stored in
localStorage) - Turnstile verification flag for the session (
sessionStorage) - Optional currency exchange-rate cache for display features (
localStorage) — not used to identify you
2.8 Availability / calendar display
Our availability feature reads busy/free times from a Google Calendar via a server-side integration so we can show general free slots. It is not used to collect your personal calendar data. If you later book a meeting, any details you share for that booking will be processed as correspondence/scheduling information.
2.9 Server and hosting logs
Like most websites, our hosting and edge providers (for example Vercel, Cloudflare, or similar) may automatically process IP addresses, request URLs, timestamps, and basic device headers for security, reliability, and abuse prevention. These logs are retained according to those providers' practices and our operational needs.
3. Why we process personal information (purposes & lawful bases)
- Respond to enquiries and provide services — contract / steps prior to a contract, and legitimate interests in running the business (POPIA: performance of a contract / legitimate interest where applicable)
- Project enrolment and proposals — necessary to evaluate and prepare client work
- Newsletter — with your consent when you subscribe; you may withdraw at any time
- Security and fraud prevention — legitimate interest / legal obligation to protect systems and users
- Analytics and advertising measurement — only where you consent via the cookie banner (or equivalent control)
- Legal and accounting compliance — where required by law (e.g. tax, dispute records)
5. How long we keep information
- Enquiry emails — retained as long as needed to handle the conversation and ordinary business records (typically up to several years if a commercial relationship or dispute could arise)
- Enrolment / project submissions — for the sales cycle and, if you become a client, for the duration of the engagement plus any legal retention period for contracts and invoices
- Newsletter data — until you unsubscribe or we close the list; suppression lists may be kept to honour opt-outs
- Analytics data — according to PostHog / Google retention settings we configure
- Server logs — short operational periods unless needed for security investigation
6. Security
We use reasonable technical and organisational measures appropriate to a small software business (HTTPS, access controls on accounts, bot protection, least-privilege habits). No online transmission is 100% secure; please avoid sending passwords or unnecessary sensitive documents through the public contact form.
7. Your rights (POPIA and similar laws)
Subject to legal limits, you may request to:
- Access the personal information we hold about you
- Correct or update inaccurate information
- Delete or destroy information that we are not required to keep
- Object to processing in certain circumstances
- Withdraw consent (e.g. newsletter or non-essential cookies) without affecting prior lawful processing
- Lodge a complaint with the Information Regulator (South Africa)
Information Regulator (South Africa): inforegulator.org.za
To exercise rights, email [email protected]. We may need to verify your identity before acting on a request.
8. Children
Our services are aimed at businesses and adult clients. We do not knowingly collect personal information from children under 18 for marketing. If you believe a child has submitted data, contact us and we will delete it where appropriate.
9. Direct marketing
We send marketing emails (posts, deals, events) only if you subscribe or otherwise give a lawful basis for us to contact you. Every marketing email includes an unsubscribe option. We do not use form enquiry data solely as a bulk marketing list without a clear lawful basis.
11. Third-party links and demos
The site may link to third-party sites (GitHub, LinkedIn, WhatsApp, demos, client work). Their privacy practices are their own. Interactive demos (for example shop or 3D demos) are illustrative and should not be used to submit real payment card data or real personal secrets.
12. Changes to this policy
We may update this Privacy Policy from time to time. The "Last updated" date at the top will change when we do. Continued use of the site after updates means you should review the new version. Material changes may also be highlighted on the website or by email where appropriate.