Your privacy matters. This policy explains how CL Technology (Pty) Ltd t/a Dr2Dr collects, uses, and protects your personal information in accordance with POPIA.
1. Who We Are
CL Technology (Pty) Ltd, trading as Dr2Dr (Reg No: 2025/175447/07). We operate the Dr2Dr digital healthcare platform at www.dr2dr.co.za.
Address: 27 Roux Street, Rouxville, Johannesburg, 2192, South Africa
Information Officer: Craig Lefkowitz, Managing Director — privacy@dr2dr.co.za
2. Information We Collect
2.1 Medical Practitioner Information
- Full name, email address, phone number
- HPCSA registration number and practice details
- Organisation and practise affiliation
- Login credentials (managed via Auth0)
2.2 Patient Information
- Name, contact details (phone number for WhatsApp communication)
- Medical referral information
- Appointment details
- Procedure quotation details
- Document authentication data (for QR-based verification)
2.3 Technical Information
- IP address, browser type, and device information
- Session data and cookies
- Platform usage logs
3. How We Use Your Information
- Facilitating secure medical referrals between practitioners
- Sending appointment reminders via WhatsApp Business API
- Generating and delivering procedure quotations to patients
- Authenticating patient documents via QR code for pharmacy verification
- Verifying HPCSA practitioner registration
- Managing platform accounts and billing
- Complying with legal and regulatory obligations
4. Legal Basis for Processing
- Consent — where you have provided explicit consent
- Contractual necessity — to fulfil our service agreement
- Legitimate interest — to improve and secure our platform
- Legal obligation — to comply with South African law
5. Sharing Your Information
We do not sell your personal information. We may share with: other practitioners (for referral processing), Auth0, WhatsApp Business API (Meta), HPCSA, payment processors, and law enforcement where required by law.
6. Data Security
- End-to-end TLS 1.3 encryption
- Encrypted data storage
- Multi-tenant data isolation
- Auth0-powered authentication
- QR-based document authentication with cryptographic signatures
7. Data Retention
Medical referral records are retained for a minimum of 5 years in accordance with South African healthcare regulations.
8. Your Rights Under POPIA
- Access, correction, and deletion of your personal information
- Object to processing
- Lodge a complaint with the Information Regulator
Contact: privacy@dr2dr.co.za