AfrexMarketPortuguês

Privacy

What we hold, and why.

AfrexMarket handles commercially sensitive buyer, supplier and transaction information. This states what we collect, what we do with it and who can see it.

A records room with locked cabinets and a clerk filing documents at a restricted counter
1

Who we are

AfrexMarket is owned and operated by Afrexpay (Pty) Ltd, a South African registered company with its head office in Midrand, Gauteng. Afrexpay is the responsible party for the information described here.

[CLIENT FILLS: registered company number and registered office address]

2

What we collect

From buyers: company name, contact person, country, city, telephone or messaging number, email address, and the content of the requirement itself - category, description, specification, quantity, unit, destination, required date and any supporting documents you attach.

From suppliers: legal and trading name, company registration and tax information, addresses, principal contacts, country, working languages, settlement details, compliance documents, and the supply records describing what you can provide.

From transactions: quotations, orders, order values, currencies, applied exchange rates, payment references and statuses, shipment records, documents, delivery outcomes, disputes and the resulting performance history.

3

Why we hold it

To source against your requirement, verify counterparties, construct and issue quotations, create and administer orders, raise and reconcile the associated payment instructions, coordinate transport and clearing, meet documentary and regulatory obligations, and to answer questions about a transaction afterwards.

Transaction records also inform supplier performance assessment and our understanding of corridor trade. They are not sold.

4

Your requirement is not published

A submitted requirement does not become a public notice. It is visible to authorised AfrexMarket personnel and is disclosed only to suppliers selected for that specific opportunity, and then only to the extent needed for them to quote.

5

Who we share it with

Selected suppliers, for the opportunity they are quoting on. Appointed transporters and licensed clearing agents, for the consignment they are handling. Afrexpay and the authorised financial institutions and partners through which the payment leg is carried out. Regulatory and customs authorities where the law requires it.

We do not share buyer or supplier information for marketing by third parties.

6

Access and control

Access is granted by role. Procurement, verification, trade operations, finance, management and technical administration each see what their function requires. Administrative convenience is not a reason to give every member of staff unrestricted access to every category of information.

Material administrative actions are logged with the user, the time, the object affected, the action and the values before and after.

7

How long we keep it

Transaction records are retained for as long as they are needed for commercial, accounting, tax, regulatory and audit purposes.

[CLIENT FILLS: retention period and the statutory basis relied on]

8

Legal framework

Because AfrexMarket operates across a corridor, more than one framework applies. As the responsible party is South African, the Protection of Personal Information Act, 2013 (POPIA) is the primary framework. Where information relates to individuals in Mozambique, applicable Mozambican data protection requirements are also observed.

Financial and identity information handled in connection with the payment leg is additionally subject to the anti-money-laundering and customer due diligence obligations that apply to the authorised institutions carrying out that leg.

9

Your rights

You may ask what we hold about you or your company, ask for it to be corrected, object to particular processing, or ask us to delete information we are not required to keep. Write to the address on the contact page and we will respond.

If you are not satisfied, you may complain to the Information Regulator of South Africa.

10

Security

Role-based access control, strong authentication, multi-factor authentication for privileged accounts, encrypted connections, authenticated interfaces between systems, controlled document access, backups and activity logging.