Data Retention Policy

Fibre To The Ground (FTTG)

Last updated: 8 January 2026

 

  1. Purpose This Data Retention Policy sets out how Fibre To The Ground (“FTTG”, “we”, “us”, “our”) manages the retention, storage, and disposal of customer and operational data in accordance with applicable South African laws and regulatory requirements. The purpose of this policy is to ensure that:

 

  • Personal and operational data is retained only for legitimate business, legal, and regulatory purposes.
  • Data is protected against unauthorised access, loss, or misuse.
  • FTTG complies with the Protection of Personal Information Act (POPIA), ICASA regulations, and other applicable legislation.

 

  1. Scope of Data Covered This policy applies to all data processed by FTTG, including but not limited to:

 

  • Customer personal information.
  • Billing and payment records.
  • Service usage and network-related data.
  • Customer support and communication records.
  • Operational, technical, and audit-related records.

 

  1. Retention Periods

FTTG retains information only for as long as is reasonably necessary to fulfil the purposes for which it was collected, including:

 

  • Service delivery and account management, for the duration of the customer relationship and a reasonable period thereafter.
  • Billing, accounting, and financial records, as required by applicable tax and financial legislation.
  • Regulatory compliance, including obligations imposed by ICASA or other competent authorities.
  • Dispute resolution, investigations, and auditing, where records may be required to support claims, defend legal proceedings, or comply with lawful requests Retention periods may vary depending on the nature of the data and applicable legal or operational requirements.

 

  1. Secure Storage and Access Control FTTG implements appropriate technical and organisational measures to ensure that retained data is:

 

  • Stored securely.
  • Accessible only to authorised personnel.
  • Protected against unauthorised access, alteration, or loss Access to retained data is limited to individuals who require such access for legitimate business or legal purposes.

 

  1. Disposal of Data Once data is no longer required for the purposes outlined in this policy, FTTG will ensure that such data is:

 

  • Securely deleted, destroyed, or anonymised.
  • Disposed of in a manner that prevents reconstruction or unauthorised recovery Disposal processes are designed to comply with POPIA and recognised information security standards.

 

  1. Legal Holds and Exceptions

Where data is subject to:

 

  • Legal proceedings.
  • Regulatory investigations.
  • Lawful requests from authorities FTTG may retain such data beyond standard retention periods until the matter has been fully resolved or the retention obligation has ceased.

 

  1. Policy Review and Amendments

FTTG reserves the right to review and update this Data Retention Policy from time to time to ensure ongoing compliance with legal, regulatory, and operational requirements. Updated versions of this policy will be published on the FTTG website and will take effect upon publication.