NEXLOR NEXLOR
The decision Results How we work AI readiness Contact us
Legal

Data Policy

Effective date: 1 June 2026. How Nexlor (Pty) Ltd collects, uses, stores, shares and protects business and personal data across its websites, products, software, workshops and consulting services.

On this page

  1. 1. Purpose
  2. 2. Data we collect
  3. 3. How data is used
  4. 4. Data sharing
  5. 5. Artificial intelligence
  6. 6. Data storage and international processing
  7. 7. Data security
  8. 8. Data retention
  9. 9. Client data
  10. 10. Individual rights
  11. 11. Security incidents
  12. 12. Contact details

1.Purpose

This Data Policy explains how Nexlor (Pty) Ltd collects, uses, stores, shares and protects business and personal data across its websites, products, software, workshops and consulting services.

It applies to NEXLOR, ScaleUp Flow, nexlor.co, scaleupflow.com, NEXLOR AI Academy and NEXLOR Command Centre.

2.Data we collect

NEXLOR may collect:

  1. Names, email addresses and company details.
  2. Team size and other information submitted through website forms.
  3. Client employee names and business email addresses.
  4. Workshop, event, transaction and service records.
  5. Communications and support requests.
  6. Limited technical and security logs required to operate and protect our systems.

NEXLOR does not intentionally collect sensitive personal information or information from children.

3.How data is used

We use data only where reasonably necessary to:

  1. Respond to enquiries.
  2. Deliver products, software, workshops and consulting services.
  3. Manage client and business relationships.
  4. Process payments and maintain accounting records.
  5. Send requested information and permitted marketing communications.
  6. Operate, secure and improve our systems.
  7. Comply with legal, contractual and regulatory obligations.

NEXLOR does not sell personal data or use client data to train artificial intelligence models.

4.Data sharing

Data may be shared with authorised employees, business partners and service providers where necessary to operate our business or deliver services.

These providers may include Supabase, Vercel, Google Workspace, Brevo, Zoho, n8n, Slack, Fathom, Notion, Canva, Payfast, OpenAI and Anthropic.

Information may also be disclosed where required by law.

5.Artificial intelligence

NEXLOR may use artificial intelligence tools for approved internal and service-related purposes.

Personal or client data will not be submitted to artificial intelligence providers unless it is necessary, authorised and appropriately protected.

NEXLOR does not use artificial intelligence to make legally significant decisions about individuals without human review.

6.Data storage and international processing

Data may be stored or processed using service providers located in South Africa, Europe or other jurisdictions.

NEXLOR takes reasonable steps to ensure that international processing is subject to appropriate privacy, confidentiality and security safeguards.

7.Data security

NEXLOR uses reasonable safeguards, including:

  1. Multi-factor authentication.
  2. Role-based access controls.
  3. Backups.
  4. Access logging.
  5. Restricted system access.
  6. Security incident response procedures.

Access to data is limited to people who require it for legitimate business purposes.

8.Data retention

Data is retained only for as long as reasonably necessary to provide services, maintain business records, comply with the law or protect NEXLOR’s legal rights.

When data is no longer required, it will be deleted, destroyed, returned or securely overwritten through the normal backup cycle.

9.Client data

Client data remains the property of the client.

NEXLOR will use client data only for the agreed engagement or service and will not sell it, use it for unrelated purposes or use it to train artificial intelligence models.

At the end of an engagement, client data will be returned or deleted where appropriate, subject to legal and operational retention requirements.

10.Individual rights

Individuals may request access to, correction of or deletion of their personal data, or object to certain processing, by emailing:

Email: support@nexlor.co

NEXLOR may request proof of identity before processing a request.

11.Security incidents

Suspected data or security incidents should be reported to:

Email: schalk@nexlor.co

NEXLOR will investigate incidents and notify affected persons and the Information Regulator where required by law.

12.Contact details

Nexlor (Pty) Ltd
Registration number: 2023/699061/07
15 Heron Circle
Kommetjie, Cape Town, 7976
South Africa

Privacy enquiries: privacy@nexlor.co

Data requests: support@nexlor.co

↑ Back to top
NEXLOR NEXLOR
Privacy Policy Data Policy Refund Policy
We build the capability, not just the strategy. · South Africa