John Giles

About John Giles

John delivers practical legal solutions to clients by bringing together knowledge, experience, insight, clear thinking, planning, project management, skilled resources, and efficient technology. He helps organisations grow and avoid legal problems. He is a surfer and a family man. Read more ...

Do I need an App EULA or App Terms of Use?

Many people are wondering whether they need an App EULA (or Application End User Licence Agreement) for the App (or application) they have developed (such as an iPhone App, Mac App, or iPad App). It might be an App for [...]

By |2026-03-19T09:48:25+02:00November 22nd, 2025|Categories: Contracts|Tags: , , |

King V Code published for application

The final King V Code on corporate governance was published on 31 October 2025 by the Institute of Directors in Southern Africa (IoDSA). It is approximately 20 pages long and includes only the code (unlike previous versions, which also included [...]

By |2025-11-03T10:56:58+02:00October 31st, 2025|Categories: Data governance, Governance, Information Law|Tags: , , |

Lexing Network is expanding into Africa | Join Lexing Africa

The Lexing Network is expanding into Africa and is looking for new members for Lexing Africa. If you're a good fit, we'd love to hear from you. The Lexing Network is an international network of lawyers dedicated to data, digital [...]

By |2025-10-13T15:19:05+02:00October 12th, 2025|Categories: Life@Law|Tags: , |

AI literacy is required by the EU AI Act

AI literacy is essential to ensure people are competent and knowledgeable about AI. With some sections of the EU AI Act having taken effect on 2 February 2025, businesses and organisations should comply with a new requirement: ensuring the AI [...]

By |2026-02-11T08:15:21+02:00September 30th, 2025|Categories: AI Governance|Tags: , , |

Important Notice: Non-Compliance with PAIA Forms

Did you receive an email from the Information Regulator with the title "Important Notice: Non-Compliance with PAIA Forms"? Don't panic; it doesn't necessarily mean that you are specifically non-compliant, and there are simple actions you can take to check whether [...]

By |2025-09-22T16:30:42+02:00August 31st, 2025|Categories: Access to Information|Tags: , , , |

Digital Law Company v Meta | Extraterritorial application of South African law

In Digital Law Company v Meta, the High Court in South Africa (Gauteng Local Division Johannesburg) sanctioned a joint consent order in which Meta agreed to take a number of steps, including removing accounts, disclosing the subscriber information behind [...]

Ask the Regulators: Support for PAIA compliance, e-Services and BizPortal

Today, the South African information regulator held a webinar called "Ask the Regulator". The purpose of the webinar was to allow participants to ask the regulator questions and for the regulator to encourage and support them in complying with POPIA […]

POPIA Manual is a Privacy Policy

A POPIA manual is actually a privacy policy. Many organisations have compiled or published a POPIA Manual, and we often receive enquiries requesting that we draft one for clients or provide a POPIA Manual template. Some people incorrectly think [...]

By |2025-06-05T16:08:11+02:00June 4th, 2025|Categories: POPI and Data Protection|Tags: , |

GDPR vs POPIA | Compare the GDPR with the POPI Act?

GDPR vs POPIA. How do they compare? The key is to identify the differences and similarities between the GDPR and the POPI Act. For example, who needs to comply with them, do they both apply to the same data [...]

Password manager: a quick win to improve security

Get a password manager to improve your security. You have signed up for a new service, and they ask you to create a password. The thought of having to create a new password is a nightmare for you. You ask [...]

By |2025-06-09T12:22:44+02:00April 26th, 2025|Categories: Cybersecurity Law, POPI and Data Protection|Tags: |

Notification of security compromise to the Information Regulator | Guideline and support

The information regulator published a Guideline on notification of security compromises to the information regulator in July 2020. The guideline explains the procedure responsible parties or information officers should follow to notify the regulator of a security compromise or data [...]