Last Updated: January 1, 2026
While our primary operations are based in Australia, we recognize and respect the data protection rights of individuals in the European Union under the General Data Protection Regulation. This page outlines how we comply with GDPR principles when processing personal data of EU residents.
We process personal data only when we have a lawful basis to do so. This includes processing necessary to fulfill contractual obligations, comply with legal requirements, protect legitimate interests, or based on your explicit consent.
If you are an EU resident, you have the following rights regarding your personal data:
Personal data collected from EU residents may be transferred to and processed in Australia. We ensure appropriate safeguards are in place for such transfers in accordance with GDPR requirements.
For GDPR-related inquiries or to exercise your rights, please contact us at [email protected] with the subject line "GDPR Request."
We retain personal data only for as long as necessary to fulfill the purposes for which it was collected, or as required by applicable law. Upon request, we will delete or anonymize your data unless we have a legitimate reason to retain it.
We do not engage in automated decision-making or profiling that produces legal effects or similarly significant impacts on individuals.
We implement technical and organizational measures to ensure a level of security appropriate to the risk, including encryption, access controls, and regular security assessments.
In the event of a data breach that poses a risk to your rights and freedoms, we will notify you and relevant supervisory authorities within 72 hours as required by GDPR.