POPIA · PAIA · Sector-specific compliance

Compliance built for how your organisation actually works.

POPIA has been fully in force since 1 July 2021, and the Information Regulator is issuing fines. PopiGuard turns the whole obligation (POPIA, PAIA and the rules specific to your sector) into a structured, deadlined programme you can run without a consultant.

POPIA, Act 4 of 2013 PAIA, Act 2 of 2000 Fines up to R10 million (s.109) 14-day trial, no card
What is PopiGuard

One platform, from first quiz to a defensible programme

PopiGuard takes the abstract obligation of “being compliant” and makes it concrete: a scored assessment, a task list with deadlines, ready-to-sign policies, and the registers your regulator actually asks for, all in one place.

Free compliance quiz

A 10-question snapshot gives you a risk band in under three minutes. No signup, and your answers are never shared.

Full assessment

A deep, sector-specific assessment across every obligation that applies to you, with a board-ready PDF report and every gap explained in plain language.

Task manager

Every gap becomes a prioritised task with a deadline and a worked example, not just a line on a report you're left to act on alone.

Policy vault

A library of POPIA-compliant policy templates (Privacy Notice, PAIA Manual, Breach Response, Operator Agreement and more) pre-filled with your organisation's details.

Breach & request registers

A POPIA-compliant breach register with notification drafts, plus a data-subject request portal with 30-day deadline tracking.

Calendar & certificate

Annual compliance events pre-loaded with reminders, a live compliance score, and a verifiable certificate a bank or counterparty can actually check.

How it works

From unknown to demonstrable, in three steps

A clear, structured path. No legal degree required.

1

Take the free quiz

Ten plain-language questions, an instant score, and your three biggest gaps named. No card, no signup.

2

Run your assessment

Start a 14-day trial, then subscribe to unlock the full assessment. Your gaps auto-generate a prioritised task list.

3

Work the platform

Complete tasks, adopt policies, run your breach register and calendar from one dashboard, with board reports and a live score.

Why it matters

Enforcement has started

Under POPIA, falling short on its own is not an offence. Failing to comply with the Regulator's enforcement notice is (s.103(1)), and that is what opens the door to an administrative fine. What decides the outcome is whether you can show a programme when the letter arrives.

R10m
Maximum administrative fine under POPIA (s.109), with imprisonment possible on conviction (s.107).
R5m ×2
Real fines already issued by the Information Regulator against two government departments (2023 and 2024).
1 Jul 2021
POPIA fully in force. The grace period is over for every responsible party.

Built by a governance consultancy, not a template shop

PopiGuard is a product of Celagenix®, the group behind BoardEvaluator™ and the plain-English POPIA and PAIA guides at thepopiact.co.za and paia.thepopiact.co.za. Compliance is our discipline, not a side feature.

Your data is walled off, by design

PopiGuard is multi-tenant, and what belongs to one organisation is genuinely unreachable from another. That isolation is enforced at the database level, not just hidden behind a login, and it's built to be structurally true rather than merely promised.

See where your estate stands, for free.

No signup. No commitment. Under three minutes. PopiGuard for Law Firms is coming soon.