General Privacy Notice

1. WHO WE ARE 

Currimjee Informatics Ltd (“CINF”, “we”, “us” or “our”) is part of the Currimjee Group and provides IT and digital services, including managed IT services, software solutions, and business technology support.

CINF is a company duly registered under the laws of Mauritius. In line with the provision of its services, CINF may process personal data as defined in the Mauritius Data Protection Act 2017 (DPA 2017), the European Union General Data Protection Regulation (GDPR), and any other applicable data protection or sectoral laws (collectively referred to as “Laws”).

Registered Office: Phoenix Central, Phoenix – Beau Songes Link Rd, Vacoas-Phoenix, Mauritius 
Phone Number: +230 5441 1000

CINF is duly registered with the Data Protection Office of Mauritius as a data controller and may also act as a data processor in certain service arrangements.

2. PRIVACY STATEMENT 

This general privacy notice (“General Privacy Notice”) is intended to help you understand how CINF collects and uses personal data and describes the rights you have with respect to your personal data amongst others. Personal data (“Data” or “information”) refers to information about you, and from which you could be directly or indirectly identified as defined under the applicable Laws.

CINF collects, uses, or otherwise processes different types of personal data relating to different categories of individuals (“data subjects”) and for different purposes including visiting our website (https://currimjeeinformaticsltd.com), submitting enquiries, accessing our premises, participating in events, or engaging with our IT and digital services. Data subjects may include customers, prospective customers, suppliers, service providers, and/or prospective employees.

We are committed to respecting and protecting your privacy and the personal data you may provide to us. If you have any questions regarding the processing of your personal data, please contact our Data Protection Officer.

3. WHAT PERSONAL DATA WE COLLECT ABOUT YOU?

 We may collect different types of personal data depending on your interaction with CINF. These may include:

  • Information about you: Name, address, date of birth, nationality
  • Information to contact you: Telephone number, email address, postal address
  • Information to identify you: Photographs, passport number, national ID, CCTV footage, car plate number
  • Information about your device: IP address, browser type, operating system, device identifiers, usage logs
  • Information about your suitability to work for us: CV details, references, qualifications, work experience, skills, training, certifications
  • Information related to use of our services: Client portal login details, system access logs, enquiry submissions

CINF does not actively collect sensitive personal data (special categories). However, any such information submitted unsolicitedly will only be processed if necessary and compliant with applicable Laws.

4. HOW IS PERSONAL DATA COLLECTED?

 We may collect personal data through:

  •  Online forms (e.g., “Contact Us”)
  •  Electronic correspondence (email, messaging, social media)
  •  Physical correspondence (letters, documents)
  •  Direct interactions (in person, telephone, events)
  •  IT service usage (portals, system logs)
  •  Security systems (CCTV at premises)

For details on cookies and similar technologies, please see our Cookie Policy.

5. HOW WE USE YOUR PERSONAL DATA 

We process personal data where:

  •  It is necessary for our business operations and services
  •  It is necessary for legal or regulatory compliance
  •  It aligns with our legitimate interests without infringing on your rights
  •  You have provided consent (e.g., for marketing communications)

Uses include:

  •  Responding to enquiries
  •  Corporate communications (services, events, vacancies)
  •  Recruitment and job application processing
  •  Premises and IT system security (e.g., CCTV, access control)
  •  Compliance with internal policies and regulations

We do not use automated decision-making or profiling.

6. HOW WE TREAT UNSOLICITED PERSONAL DATA 

Any unsolicited personal data provided by you will be processed only if it is relevant to legitimate business purposes or if required by law.

7. WHO ARE THE INTENDED RECIPIENTS OF YOUR PERSONAL DATA? 

We may share your personal data with:

  • Other entities within the Currimjee Group
  • Service providers and third parties acting on our behalf, under contractual obligations to:
         o process data only for specified purposes;
         o implement technical and organisational safeguards;
         o maintain confidentiality;
         o comply with applicable data protection laws
  •  Professional advisers (auditors, bankers, lawyers, insurers)
  •  Regulators or enforcement agencies when required by law

CINF ensures that control over personal data is maintained via contractual, legal, and organisational safeguards.

8. WHERE DO WE TRANSFER PERSONAL DATA OUTSIDE MAURITIUS? 

We may transfer personal data outside Mauritius (e.g., to service providers or group entities). In such cases, we adhere to DPA 2017 requirements, consulting the Data Protection Commissioner, imposing strict contractual clauses, performing risk assessments, and implementing appropriate safeguards.

9. HOW LONG DO WE STORE YOUR PERSONAL DATA? 

Personal data is retained only as long as necessary to fulfil the purpose for which it was collected, including for legal, regulatory, tax, and reporting obligations. Data may be retained longer if a complaint is open or litigation is anticipated. Upon expiration of the retention period, data will be securely destroyed unless impracticable.

10. WHAT ARE YOUR RIGHTS AS A DATA SUBJECT? 

You may have the following rights (subject to applicable conditions):

  •  Right of access
  •  Right to rectification
  •  Right to erasure
  •  Right to restriction of processing
  •  Right to object
  •  Right to withdraw consent
  •  Right to data portability (where GDPR applies)
  •  Right to lodge a complaint with the Mauritius Data Protection Commissioner or, under GDPR, with your local supervisory authority

11. HOW DO WE PROTECT YOUR PERSONAL DATA? 

CINF employs administrative, technical, and organisational measures to safeguard your personal data. These include:

  •  Access control (least privilege access)
  •  Firewalls and network protection
  •  Physical security of sensitive areas
  •  Disaster recovery and business continuity plans
  •  Employee training and awareness programs
  •  Breach response and incident management procedures

We also execute Data Processing Agreements with service providers and third parties, containing strict clauses mandating compliance with our instructions, confidentiality, appropriate safeguards, and adherence to applicable laws.

12. UPDATES TO THIS NOTICE 

We may update this General Privacy Notice periodically without prior notice. Any updates will be dated at the top. Please review this Notice periodically to stay informed.

13. HOW TO COMPLAIN 

If you have concerns about how we use your personal data, please contact:

Data Protection Officer
Email: dpo@currimjeeinformaticsltd.com
Phone: +230 5441 1000

If unresolved, you may lodge a complaint with the Mauritius Data Protection Commissioner:

  •  Address: 5th Floor, SICOM Tower, Wall Street, Ebene Cyber City, Ebene, Mauritius
  •  Email: dpo@govmu.org or dpo22@govmu.org
  •  Phone: +230 460 0251 · Website: https://dataprotection.govmu.org

14. MISCELLANEOUS 

This Notice is governed by the laws of the Republic of Mauritius. It is written in English and may be translated. In case of inconsistency, the English version prevails.