1. Introduction
Southcore Labs ("we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website at southcorelabs.com and use our client console services, including authentication through third-party services like Google OAuth.
By accessing or using our services, you agree to this Privacy Policy. If you do not agree with the terms of this Privacy Policy, please do not access our services.
This Privacy Policy is designed to comply with the Protection of Personal Information Act, 2013 ("POPIA") of the Republic of South Africa.
2. Google API Disclosure
Southcore Labs' use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
2.1 Limited Use of Google User Data
We access Google user data solely for the following purposes:
- Account Identification: To authenticate and identify users via Google OAuth when accessing the Southcore Client Console or Southcore Pulse
- Personalizing the Dashboard Experience: To display your name and profile picture within the console for a personalized user experience
We do NOT use Google user data for advertising purposes, behavioral profiling, unauthorized data mining, or any purpose other than providing and improving our Services.
2.2 Human Access to Google User Data
Human access to Google user data is strictly prohibited unless you provide affirmative consent for a specific support request. For example, if you request technical support that requires us to review your account information, we will ask for your explicit permission before accessing your data. Any such access will be limited to what is necessary to resolve your support request.
3. Information We Collect
3.1 Information You Provide Directly
When you use our services, you may provide us with:
- Name and email address (through contact forms or account registration)
- Company name and project details
- Communication preferences
- Any other information you choose to provide in correspondence with us
3.2 Information Collected Through Google OAuth
When you sign in to our client console using Google OAuth, we receive and store the following information from your Google account:
- Email address: Used to identify your account and for communication purposes
- Name: Used to personalize your experience in the client console
- Profile picture: Used to display your avatar in the client console (optional)
- Google account ID: Used to uniquely identify your account for authentication purposes
We only request the minimum necessary permissions (scopes) required to authenticate you and provide our services. We do not request access to your Google Drive, Gmail, Calendar, or any other Google services beyond basic profile information.
3.3 Information Collected Automatically
When you access our services, we may automatically collect:
- IP address and general location information
- Browser type and version
- Device type and operating system
- Pages visited and time spent on our website
- Referring website addresses
- Access times and dates
4. How We Use Your Information
We use the information we collect for the following purposes:
- Authentication and Account Management: To verify your identity and provide secure access to our client console
- Service Delivery: To provide, maintain, and improve our services, including project management and communication features
- Communication: To respond to your inquiries, send project updates, and provide customer support
- Personalization: To customize your experience and display relevant content in the client console
- Analytics: To understand how our services are used and to improve our offerings
- Security: To detect, prevent, and address technical issues and protect against unauthorized access
- Legal Compliance: To comply with applicable laws, regulations, and legal processes
5. How We Share Your Information
We do not sell, trade, or rent your personal information to third parties. We may share your information only in the following circumstances:
- Service Providers: With trusted third-party service providers who assist us in operating our services (e.g., hosting providers, analytics services), subject to confidentiality obligations
- Legal Requirements: When required by law, subpoena, or other legal process, or to protect our rights, privacy, safety, or property
- Business Transfers: In connection with a merger, acquisition, or sale of assets, where your information may be transferred as a business asset
- With Your Consent: When you have given us explicit permission to share your information
6. Data Security
We implement appropriate technical and organizational security measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction. These measures include:
- Encryption of data in transit using TLS/SSL
- Encryption of sensitive data at rest
- Regular security assessments and updates
- Access controls limiting who can view your information
- Secure authentication through OAuth 2.0 protocols
While we strive to protect your personal information, no method of transmission over the internet or electronic storage is 100% secure. We cannot guarantee absolute security but are committed to maintaining the highest practical standards.
7. Data Retention
We retain your personal information for as long as necessary to fulfill the purposes outlined in this Privacy Policy, unless a longer retention period is required or permitted by law. When you delete your account or request deletion of your data, we will remove your personal information within 30 days, except where retention is necessary for legal compliance or legitimate business purposes.
8. Your Rights and Choices
Depending on your location, you may have the following rights regarding your personal information:
- Access: Request a copy of the personal information we hold about you
- Correction: Request correction of inaccurate or incomplete information
- Deletion: Request deletion of your personal information
- Portability: Request transfer of your data to another service
- Objection: Object to certain processing of your information
- Withdraw Consent: Withdraw consent where processing is based on consent
To exercise these rights, please contact us at hi@southcorelabs.com. We will respond to your request within 30 days.
You can also revoke our access to your Google account at any time by visiting your Google Account permissions settings.
9. Cookies and Tracking Technologies
We use cookies and similar tracking technologies to enhance your experience on our website. These include:
- Essential Cookies: Required for the operation of our services, including authentication
- Analytics Cookies: Help us understand how visitors interact with our website
- Preference Cookies: Remember your settings and preferences
You can control cookie settings through your browser preferences. Note that disabling certain cookies may affect the functionality of our services.
10. Third-Party Services
Our services integrate with third-party services, including:
- Google OAuth:For secure authentication. Google's privacy practices are governed by Google's Privacy Policy
- Vercel: For hosting and analytics
We encourage you to review the privacy policies of these third-party services to understand their data practices.
11. International Data Transfers
Southcore Labs is based in Johannesburg, South Africa. If you are accessing our services from outside South Africa, please be aware that your information may be transferred to, stored, and processed in South Africa or other countries where our service providers operate. By using our services, you consent to such transfers. We take appropriate measures to ensure your data is protected in accordance with this Privacy Policy regardless of where it is processed.
12. Children's Privacy
Our services are not directed to children under the age of 16. We do not knowingly collect personal information from children under 16. If you are a parent or guardian and believe your child has provided us with personal information, please contact us at hi@southcorelabs.com, and we will take steps to delete such information.
13. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or for other operational, legal, or regulatory reasons. We will notify you of any material changes by posting the updated policy on this page with a new "Last updated" date. We encourage you to review this Privacy Policy periodically.
14. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
Southcore Labs
Email: hi@southcorelabs.com
Location: Johannesburg, South Africa
We will respond to your inquiry within one business day.