POPIA & Compliance5 min read

Understanding Your Compliance Dashboard

Your Compliance Dashboard is found at Dashboard → Compliance. It shows a score out of 100 and a checklist of items. Here is what each item means and how to complete it.

1

Information Officer (POPIA requires this)

POPIA requires every business that processes personal information to designate an Information Officer. For most agencies, this is the principal or managing agent. You set this in Dashboard → Settings → Agency. Enter the full name and contact details of the person responsible for POPIA at your agency.

2

Data Processing Agreement (DPA)

This is the legal agreement between your agency and PropSign that governs how PropSign processes your clients' personal information on your behalf. Click 'Review & Accept' on the Compliance Dashboard, read the agreement, and accept it. It only needs to be accepted once.

3

Privacy Policy Acknowledged

This confirms that the person who set up your PropSign account read and accepted PropSign's Privacy Policy during onboarding. If this shows as incomplete, it means onboarding was not fully completed. Contact support.

4

POPIA Acknowledgement

This confirms your agency acknowledged its POPIA obligations during onboarding — specifically, that you understand you are responsible for having a lawful reason to collect client information.

5

Lawful Basis Configured

This confirms you have set the default lawful basis for processing client information. Go to Dashboard → Settings → Agency and set the 'Default Lawful Basis' field. For most estate agents, this is 'Contract Performance' (you need the information to fulfil a mandate or lease agreement).

6

AI Processing Disclosure

PropSign uses AI to generate document summaries for clients. POPIA and general best practice require that you disclose AI usage to data subjects. This item confirms you acknowledged the AI disclosure during onboarding.

7

Consent Flow Enabled

This is always shown as Complete because PropSign automatically includes a POPIA consent notice on every signing page. You cannot accidentally disable this — it is built into every document.

8

Sub-processors Acknowledged

PropSign uses third-party services (Convex for database, Clerk for login, PayFast for payments, Hostinger for email). POPIA requires you to know who processes data on your behalf. This item confirms you acknowledged these sub-processors during onboarding.

9

Cross-Border Transfers

Some of PropSign's sub-processors are based outside South Africa (USA and EU). POPIA section 72 requires consent for cross-border data transfers. This item confirms you gave that consent during onboarding.

Tip

A score of 100% does not mean you are fully POPIA compliant as a business — it means you have completed all the compliance steps within PropSign. You should also have an internal POPIA policy for your agency.