Legal

Privacy Policy

Last updated: 17 July 2026

This Privacy Policy explains how Magoven (Pty) Ltd ("Magoven", "we", "us") collects, uses, shares, and protects personal information when you use Magoven One and suite products including magMeet, magWork, magMail, MagDocs, MagDrive, magCalendar, and NetSpeed (the "Services").

Magoven is a South African company and processes personal information in a manner designed to align with the Protection of Personal Information Act 4 of 2013 (POPIA) and, where applicable, other privacy laws that apply to our customers. For organisation customers, Magoven often acts as an operator (processor) of workplace data you control as the responsible party (controller).

1. Who we are

Responsible party / contact for privacy enquiries: Magoven (Pty) Ltd, [email protected], +27 87 250 1000. Security and procurement materials: Trust Centre.

2. Personal information we collect

Account and organisation data

  • Name, email address, phone number, job title, organisation name, and billing contacts
  • Authentication data (password hashes or SSO assertions), MFA status, session metadata
  • Membership, roles, groups, verified domains, guest invitations, and entitlement packages

Product and usage data

  • App usage needed to operate meetings, mail, docs, drive, calendar, workspace, and NetSpeed features
  • Device and browser information, IP address, approximate location derived from IP, and diagnostic logs
  • Support tickets, sales enquiries, and communications with Magoven

Customer Content

Content you create or upload (messages, files, meeting recordings if enabled, calendar events, mailboxes you configure) is processed to deliver the Services you request. Magoven does not use Customer Content to sell advertising.

Cookies and similar technologies

See our Cookie Settings page and the Cookie Preference Centre (Your Privacy Choices in the site footer) for categories and controls.

3. How we use personal information

  • Provide, maintain, secure, and improve Magoven One and suite apps
  • Authenticate users, enforce organisation policies, and prevent fraud or abuse
  • Process billing, invoices, and package entitlements in ZAR where applicable
  • Respond to support, sales, and legal requests
  • Send service notices; marketing only where permitted and with an easy opt-out
  • Comply with South African law and lawful requests from regulators or courts

4. Legal bases / POPIA conditions

Depending on the context, we rely on contract performance, legitimate interests that do not override your rights (for example securing our platform), consent where required (for certain cookies or marketing), and legal obligations. Organisation administrators remain responsible for ensuring they have a lawful basis to invite users and process workplace personal information in Magoven products.

5. Sharing and operators (subprocessors)

We do not sell personal information. We share information with:

  • Hosting, connectivity, email delivery, observability, and payment processors under contract
  • Professional advisers and auditors under confidentiality
  • Identity providers and other integrations you enable
  • Authorities when required by law

A procurement-oriented summary of operators and DPA language is available in the Trust Centre. Email [email protected] for the current subprocessors list.

6. Cross-border transfers

Magoven aims to host primary Magoven One workloads for South African customers in jurisdictions compatible with our contracts and POPIA transfer requirements. Where data is transferred outside South Africa, we use appropriate contractual and organisational safeguards. Contact us for location details relevant to your package.

7. Retention

We retain personal information for as long as needed to provide the Services, resolve disputes, enforce agreements, and meet legal retention duties. After account closure, data is deleted or de-identified within commercially reasonable periods unless a legal hold applies.

8. Security

We implement technical and organisational measures appropriate to the risk, including encryption in transit, access controls, SSO/SCIM options for enterprise, audit logging, and staff access policies. No method of transmission or storage is perfectly secure; please report concerns to [email protected]. See also Security and the Trust Centre.

9. Your rights

Depending on where you live, you may have rights under POPIA (South Africa), GDPR/UK GDPR (EU/UK), CCPA/CPRA (California), LGPD (Brazil), PIPEDA (Canada), PDPA (Singapore), the Australian Privacy Act, APPI (Japan), and other local laws. These may include access, correction, deletion, restriction, portability, objection, and withdrawal of consent where processing is consent-based.

Use the Privacy & data rights portal (signed-in users) or email [email protected]. Organisation users should contact their Magoven One administrator first for workplace records held on behalf of your employer.

POPIA (South Africa)

Lodge a complaint with the Information Regulator if you believe your rights under POPIA have been infringed.

GDPR / UK GDPR

Where Magoven processes personal data on its own behalf for EU/UK individuals, you may contact your supervisory authority. Enterprise customers typically act as controllers for workplace data — Magoven assists per our DPA.

CCPA / CPRA (California)

Magoven does not sell personal information. California residents may use the data rights portal or email [email protected] to exercise know, delete, and correct rights subject to statutory exceptions.

10. Children

The Services are directed to business and institutional users, not children. If you believe we have collected a child's personal information without appropriate authority, contact [email protected].

11. International visitors and privacy signals

Magoven primarily serves South African organisations but supports customers and visitors globally. Cookie and preference controls (including “Your Privacy Choices” in the footer) apply to optional cookies on Magoven websites. Where browsers send Global Privacy Control (GPC) or similar signals, Magoven treats them as an opt-out of optional targeting cookies where legally required. Magoven does not sell personal information.

12. Changes

We may update this Policy periodically. The "Last updated" date will change, and material updates may be highlighted in Magoven One or by email.

13. Contact

Privacy and POPIA enquiries: [email protected]. Information Regulator (South Africa): inforegulator.org.za.

Questions? Contact us or email [email protected].