Your privacy is important to us and We know that You are concerned about how We use Your Personal Information. Standard Bank (Mauritius) Limited (We, us, our) collects and processes your Personal Information in accordance with the applicable Data Protection Law and in accordance with the privacy principles set out below.
This Privacy Statement is applicable to You where you are a Data Subject including a Customer (and potential Customer), a Service Provider (and potential Service Provider), an Enquirer, any Other Data Subject and/or a Related Party (as the context shall indicate). Defined terms used in this Privacy Statement are explained in Section 14 below.
This Privacy Statement provides an overview of:
When do we collect Personal information about You?
What Personal Information do We collect, have or compile about You?
Personal Information collected and stored by Us may include, but is not limited to the following types of data:
Where You provide us with Personal Information on a Related Party, You represent that this information is accurate, that You are authorised to provide the information to Us on their behalf for the purposes of Processing of their Personal Information in terms herein and specifically any cross-border transfer of Personal Information and that You are authorised to receive any privacy notices on their behalf.
How We collect Your Personal Information?
We collect Your Personal Information from a variety of sources as follows:
Why we use, collect or process Your Personal Information?
Personal Information is mainly Processed for the following purposes:
in order to :
If You are a Customer:
If You are a Service Provider:
If You are an Enquirer or any Other Data Subject or a Related Party:
In all cases:
Marketing by electronic means or otherwise
We may contact You for advertising or marketing purposes including to provide You with material on our products/services or products/ services offered by Standard Bank Group and We may also invite You to tell us what Your requirements are. We will usually contact You through telephone calls, emails, messaging services, social media platforms or notify You on Your mobile applications. If You have not already done so, You may select Your preferred method of communication by contacting Us.
You may update your preferences or elect to unsubscribe from those communications, at any time by following the links which appear at the end of our promotional communications or by contacting Us and We will ensure that Your preferences or Your request to unsubscribe are dealt with promptly.
To Whom We disclose Your Personal Information?
We primarily share Your Personal Information for legitimate business purposes to the following:
Standard Bank Group – Standard Bank (Mauritius) Limited forms part of Standard Bank Group of Companies. A full list of all the members of the Standard Bank Group and respective countries of operation can be found on the Group’s website.
Service Providers - We may need to share certain Personal Information with Our Service Providers for the performance of any agreement We enter with You. They may assist us in providing the products/ services We offer , for processing transactions, fulfilling requests for information, receiving and sending communication, updating marketing lists, analyzing data, providing IT and other support services or in other tasks, from time to time.
Third Party Processors - We may need to share certain Personal Information with any person or entity that Processes Personal Information on our behalf.
Third Party Agents and Correspondent Banks-We may share your Personal Information to Your advisers and others acting for the processing of Your transactions (including payment recipients, beneficiaries, account nominees, intermediaries, correspondent and agent banks, clearing houses and clearing or settlement systems), anyone You authorise to give instructions or to use services on Your behalf;
Law enforcement agencies, governmental authorities, regulatory and tax authorities and others -Where obliged by law to do so, We may disclose Your Personal Information to law enforcement and revenue agencies and their officers and agents, when required to do so. To the extent required by law, We will inform You of such disclosures.
We may also share Your Personal Information:
How We keep Your Personal information secure?
We have implemented appropriate technical and organizational security measures designed to protect Your Personal Information against accidental or unlawful destruction, loss, alteration, unauthorized disclosure, unauthorized access and other unlawful or unauthorized forms of Processing in accordance with applicable law.
Some of these measures are as follows:
Where We transfer your Personal Information to other countries, We do so on the basis of:
How long We keep Your Personal Information for?
We retain Your Personal Information in accordance with Our document retention policy and in terms of law.
We will not use Your Personal Information for purposes other than those for which it has been collected. Your Personal Information shall not be stored for a period longer than necessary for the realization of such purposes, for legal, regulatory, fraud prevention or for legitimate business purposes.
Automated decision making
We, at times, utilise automated processes to generate a profile and/or make decisions about You based on Your Personal Information and to facilitate the business relationship with You, for example, for credit scoring systems and profiling systems for marketing purposes. Please note these decisions are not derived solely via automated means, and elements of human intervention and supervision are applied to all automated processes to ensure that Your best interests are always taken into consideration.
Social media & Websites
We operate and communicate updates through Our designated channels, pages and accounts on some social media sites to inform, help and engage with Our stakeholders. We monitor and record comments and posts made about Us on these channels so that We can improve our services.
The general public can access and read any information posted on these sites. We are not responsible for any information posted on those sites other than the information posted by Our designated officials. We do not endorse the social media sites themselves, or any information posted on them by third parties or other users.
When You engage with Us through social media Your Personal Information may be processed by the site owner; this process is outside Our control and may be in a country outside of Mauritius that may have different privacy principles.
Social media sites are not appropriate forums to discuss Our products, financial arrangements or any other business relationship. We will not ask You to share personal, account or security information on social media sites.
Links to other websites
Our website, related websites and mobile applications may have links to or from other websites. Although We try to link only to websites that also have high privacy standards, We are not responsible for their security, privacy practices or content. We recommend that You always read the privacy and security statements on these websites.
Subject to applicable laws, You may have a number of rights regarding the Processing of Your Personal Information including:
To exercise one or more of these rights, or to ask a question about these rights or any other provision of Our Privacy Statement or about our Processing of Your Personal Information, please use the contact details provided in Section 13 below.
Please note that We shall only be able to respond favorably to any of the above requests relating to the right to oppose, right to erasure and right to restriction provided that it does not interfere with or contradict a legal obligation that We may have or where We have a legitimate interest to Process this data (for example for the establishment, exercise or defence of a legal claim) or where We can demonstrate compelling legitimate grounds for the Processing which override Your interests, rights and freedoms. Should You withdraw consent (where we have sought same) or should You object to the processing of Your Personal Information and as a result we stop Processing it, it may also mean that We may not be able to continue to provide services to You in a particular manner or at all, and We may as a result need to terminate our agreement or relationship with You.
Our Right to change this privacy statement
We review our policies and procedures regularly and We reserve the right to amend the terms of the Privacy Statement from time to time. We will publish all changes on our website and You are encouraged to visit our website from time to time to ensure that You are aware of our latest polices in relation to Processing of Personal Information. Our Privacy Statement has been last updated on the 31 August 2018.
If You wish to exercise any of Your rights in relation to Your Personal Information or You have a complaint about the way in which We Process Your Personal Information or You require any further information about this Privacy Statement or its contents, please contact our Data Protection Officer at:
Standard Bank (Mauritius) Limited
Level 9, 1 CyberCity Ebene, Republic of Mauritius
Telephone: +230 402 5000
Fax: +230 402 50 50
Email: [email protected]
Please click here to download a pdf version of the Privacy Statement
The terms and expressions in capital letters used in this Privacy Statement have the meanings set forth below. Words in singular include the plural and vice versa.
“Business” means the business You are associated with, whether it is a company, partnership, sole trader, or other entity such as a special purpose vehicle, club, charity or trust;
“Confidential Information” means any data, reports, records, correspondence, information relating to You or relating to Your affairs that is implicitly or explicitly of a private or confidential nature;
“Customer” is to be given its widest possible interpretation and includes, but is not limited to, any natural or juristic person being a past, present or prospective/potential client or customer of Standard Bank (Mauritius) Limited to whom We provide products and/or services whether located locally or abroad;
“Data Subject” means an identified or identifiable individual/natural person and/or juristic person whose Personal Information is being Processed by Us;
“Enquirer” means a Data Subject providing Us with Personal Information by corresponding with Us either via email and/or fills a contact form and and/or visits our web pages/ website;
“Event” means any conference, Customer event, seminar, workshop or any other event organized, hosted or sponsored by Us;
“Personal Information” means information about a Data Subject including, but not limited to information about: race, gender, sex, pregnancy, marital status, nationality, ethnic or social origin, colour, sexual orientation, age, physical or mental health, well-being, disability, religion, conscience, belief, culture, language, birth, education, medical, financial, criminal or employment history, any identifying number, symbol, e-mail, postal or physical address, telephone number, location, any online identifier, any other particular assignment of the person, biometric information, personal opinions, views or preferences of the person or the views or opinions of another individual about the person and the name of the person if it appears with other personal information relating to the person or if the disclosure of the name itself would reveal information about the person. Personal Information includes any Confidential Information;
“Other Data Subject ” means any Data Subject (i) with whom We deal with or who benefits from Our corporate social responsibility funding/sponsoring and/or (ii) who attends any Event and in all cases provides Us with or whose Personal Information is being processed by Us;
“Process” means any operation or set of operations performed on Personal Information or sets of Personal Information , whether or not by automated means, such as collection, recording, organisation, structuring, storage, adaptation or alteration, retrieval, consultation, use, disclosure by transmission, dissemination or otherwise making available, alignment or combination, restriction, erasure or destruction. Processing and Processed will have a similar meaning;
“Service Provider” includes any natural or juristic person being a past, present or prospective/potential third party suppliers, vendors, agents and contractors, sub contractors, consultants whether located locally or abroad;
“Sensitive Personal Information” includes information relating to political opinions/exposure/adherence You or those closely related/associated to You may have, trade union memberships held, commission or alleged commission of an offence, any proceedings for an offence committed or alleged to have been committed by a natural person, the disposal of such proceedings or the sentence of any Court in the proceedings, racial and ethnicity originin, physical or mental health or condition, sexual orientation, practices or preferences, genetic data or biometric data uniquely identifying a natural person, disability related information or such other personal data as the Data Protection Commissioner may determine to be sensitive personal information;
“Standard Bank Group” means Standard Bank Group Limited, its subsidiaries, affiliates and associate companies of Standard Bank Group Limited;
“You/Your” means You as a Data Subject whose Personal Information We may collect, use or Process including but not limited to You as Customers , as Service Providers , as an Enquirer, or as any Other Data Subject and Your Related Parties;
“Related Party” includes, Your family members and dependents , partners, directors, employees, authorized signatories, agents, representatives, company secretaries, shareholders, beneficial owners, trustees or other controlling officials within its organization/business; and
“We/Us/Our” means Standard Bank (Mauritius) Limited.