Legal
Security Policy
Security practices and commitments for the Jakkallas Digital website and services.
1. Commitment
Jakkallas Co (Pty) Ltd trading as Jakkallas Digital takes reasonable steps to protect website visitors, clients, and systems from security threats.
2. Website Security Measures
Our website implements:
- HTTPS/TLS encryption
- Security headers (CSP, HSTS, X-Frame-Options, and related controls)
- Form validation and spam protection
- Rate limiting on API endpoints
- Input sanitisation and output encoding
- Honeypot fields on public forms
- Consent-based third-party script loading
3. Data Protection
Personal information is processed with access controls and safeguards appropriate to the nature of the data. We avoid logging sensitive form data unnecessarily.
4. Hosting
Client websites are hosted on reputable infrastructure with monitoring and backup practices as defined in service agreements.
5. Incident Response
We maintain an incident response process for suspected security or data breaches. See our internal Incident Response Plan documentation.
6. User Responsibilities
Users should keep credentials secure, use strong passwords, and report suspected security issues promptly.
7. Reporting Security Issues
Report security concerns to hello@novadigital.co.za with sufficient detail for investigation.
8. Limitations
No system is completely secure. This policy describes our approach but does not guarantee absolute security.
