Privacy Policy

Last Updated: February 25, 2026

1. Introduction & Controller

Bright Stone ("we", "us", or "our") respects your individual right to privacy. In alignment with South Africa's Protection of Personal Information Act (POPIA) and GDPR standards, we act as the responsible party (controller) for processing any information gathered through brightstone.digital. For any policy queries, reach us at [email protected].

2. Information We Collect

We process: (a) Directly submitted contact information (Name, executive corporate email, desk phone, message contents); (b) Automatically gathered analytical data (IP addresses, cookie indicators, network latency metrics, and browser configurations); (c) Information from certified professional platforms.

3. Purposes & Legal Foundations

The table below summarizes our legal processing grounds under South African and international frameworks:

PurposeInformation CategoryLegal Ground
Advisory SetupName, Email, PhonePOPIA Section 11(1)(b) (Contract Preparation)
Security AuditsIP address, logsPOPIA Section 11(1)(f) (Legitimate business security)
Targeted MediaAnonymized CookiesPOPIA Section 11(1)(a) (Explicit Opt-In)

4. Consent & Advanced v2 Implementation

We integrate Google Consent Mode v2 (advanced parameters). Until you accept analytical and advertising categories via our custom banner, those trackers are restricted ("denied" state by default). Choosing to opt-out does not restrict access to our core publications.

5. Data Preservation & Your Choices

We do not hold records indefinitely. Personal details are securely purged when the diagnostic transaction or statutory requirement is complete. Under local South African law, you hold rights to: access, rectify, delete, restrict processing, or lodge complaints with the Information Regulator of South Africa (POPIA oversight body) at [email protected].