Effective Date: December 02, 2025
At Chariots Cars ("we," "us," or "our"), we are committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website www.chariotscars.com (the "Website"), interact with our services, or otherwise engage with us. We operate in the automotive industry, providing information about vehicles, sales, services, and related offerings. This Policy is designed to comply with applicable data protection laws, including the European Union's General Data Protection Regulation (GDPR) for individuals in the European Economic Area (EEA) and the United Kingdom, and South Africa's Protection of Personal Information Act (POPIA). If you are a resident of the EEA, UK, or South Africa, specific rights and obligations under these laws apply to you as outlined below. We process personal information as a controller (or "responsible party" under POPIA) and, where applicable, as an operator (or "processor") on behalf of third parties. By using our Website or services, you acknowledge that you have read and understood this Privacy Policy. If you do not agree with our practices, please do not use our Website or provide us with your personal information.
Information We Collect
We collect personal information that you voluntarily provide to us, as well as information automatically collected through your use of the Website. The types of information may include:
- Personal Identifiers: Name, email address, postal address, phone number, and other contact details.
- Automotive-Related Information: Details about your vehicle preferences, inquiries about car models, test drive requests, service bookings, or purchase history.
- Financial Information: Payment details (e.g., credit card information) for purchases or financing inquiries, processed securely via third-party payment gateways.
- Technical Information: IP address, browser type, device identifiers, operating system, and usage data (e.g., pages visited, time spent on the site).
- Sensitive Information: In limited cases, such as health-related accommodations for vehicle customizations or employment applications, we may collect sensitive personal information (e.g., health data or racial/ethnic origin) only with your explicit consent.
- Other Information: Any additional data you provide, such as feedback, survey responses, or communications with our support team. Under POPIA, "personal information" includes any data relating to an identifiable living person or juristic person. Under GDPR, "personal data" is similarly defined and includes special categories of data requiring additional protections. We do not intentionally collect information from children under 16 years of age without verifiable parental consent. If we become aware of such collection, we will delete it promptly.
How We Collect Your Information
- Directly from You: When you fill out forms on our Website (e.g., contact forms, newsletter sign-ups, quote requests), communicate with us via email or phone, or interact with our services.
- Automatically: Through cookies, web beacons, and similar tracking technologies. For example:
- Google Analytics (GA4): We use Google Analytics 4 to analyze Website traffic, user behavior, and engagement. GA4 collects data such as your IP address (anonymized by default), device information, and browsing patterns to help us improve our Website and services. This data is processed by Google LLC, which may transfer it to servers in the United States. We have enabled IP anonymization to enhance privacy. For more details, see Google's privacy policy at https://policies.google.com/privacy.
- Facebook Meta Pixel: We use the Meta Pixel (provided by Meta Platforms, Inc.) to track user interactions, measure ad effectiveness, and deliver personalized advertising. It collects data like your IP address, browser type, and actions on our Website (e.g., pages viewed or items added to cart). This helps us retarget ads on Facebook and Instagram. Data may be shared with Meta and transferred to the United States. For opt-out options, visit Meta's settings or our cookie management tool.
- AI Monitoring and Tools: We may use AI-powered tools for user experience enhancement, such as chatbots or voice agents powered by ElevenLabs (Eleven Labs, Inc.) for interactive support. These tools collect voice data, chat transcripts, and behavioral patterns to provide responses and analyze interactions. Data is processed to improve AI models, with safeguards like data minimization. ElevenLabs may process data in the United States or other locations; see their privacy policy at https://elevenlabs.io/privacy for details. Other AI monitoring may include session replay tools to understand user navigation for Website optimization.
- From Third Parties: We may receive information from partners, such as credit reference agencies for financing applications or marketing partners for lead generation, always with appropriate legal bases.
How We Use Your Information
We process your personal information for legitimate business purposes in the automotive industry, based on legal grounds such as your consent, contract performance, legal obligations, or our legitimate interests (e.g., improving services). Uses include:
- Providing and maintaining our Website and services (e.g., processing inquiries, bookings, or sales).
- Personalizing your experience (e.g., recommending vehicles based on browsing history).
- Communicating with you (e.g., sending newsletters, updates, or promotional offers with your consent).
- Analytics and improvement (e.g., using GA4 to evaluate Website usage and make it more intuitive).
- Advertising and marketing (e.g., using Meta Pixel for targeted ads).
- AI-enhanced support (e.g., using ElevenLabs for voice interactions). - Compliance with legal requirements, fraud prevention, and security.
- Research and development in automotive products and services. We only process sensitive information with your explicit consent or where legally required.
We only process sensitive information with your explicit consent or where legally required.
Sharing Your Information
We may share your information with:
- Service Providers: Third parties that help us operate, such as hosting providers, payment processors, analytics tools (e.g., Google, Meta), and AI vendors (e.g., ElevenLabs). These act as processors (or operators under POPIA) and are bound by contracts ensuring compliance with GDPR and POPIA.
- Business Partners: In the automotive sector, such as dealers, financiers, or insurers, for fulfilling your requests.
- Legal Authorities: To comply with laws, respond to subpoenas, or protect our rights.
- In Business Transfers: If we merge, acquire, or sell assets, your data may be transferred with safeguards. We do not sell your personal information.
All sharing is limited to what is necessary and protected by appropriate agreements. For a list of third parties, contact us.
International Data Transfers
If you are in the EEA or South Africa, your data may be transferred outside these regions (e.g., to the US for tools like GA4 or ElevenLabs). We ensure transfers comply with GDPR (e.g., via Standard Contractual Clauses) and POPIA (e.g., binding corporate rules or adequacy decisions). We only transfer data with adequate safeguards.
Data Retention
We retain your information only as long as necessary for the purposes described (e.g., 6 years for financial records per legal requirements) or until you request deletion. Criteria include the nature of the data, processing purpose, and legal obligations. Upon expiration, data is securely deleted or anonymized.
Security Measures
We implement reasonable technical, administrative, and physical safeguards to protect your information, such as encryption, access controls, and regular audits. However, no system is completely secure, so we cannot guarantee absolute security. In case of a breach, we will notify affected individuals and authorities within 72 hours as required by GDPR and POPIA.
Your Rights
Depending on your location, you have rights under GDPR and POPIA:
- Access Request a copy of your data.
- Rectification Correct inaccurate data.
- Erasure ("Right to be Forgotten") Delete your data in certain circumstances. Restriction Limit processing.
- Objection Object to processing based on legitimate interests or for direct marketing.
- Portability Receive your data in a transferable format. Withdraw Consent At any time, without affecting prior processing.
- Complaint Lodge a complaint with supervisory authorities (e.g., Information Regulator in South Africa or your local DPA in the EEA).
- To exercise rights, contact us via our email or our physical address below. We respond within one month (extendable under GDPR/POPIA).
- For opt-outs from tracking (e.g., GA4, Meta Pixel), use our cookie consent tool or browser settings.
Changes to this Privacy Policy:
We may update this Policy to reflect changes in our practices or laws. Updates will be posted on the Website with the new effective date. Continued use constitutes acceptance.
Contact Us
For questions or to exercise your rights, contact our Data Protection Officer at:
Chariots Cars
258 Main Road
Bryanston
Email:
Phone:
For complaints, contact the South African Information
Regulator at https://inforegulator.org.za/ or your local DPA.