Information on this site is advertising in nature.

Last Updated: October 2024

Introduction

The General Data Protection Regulation (GDPR) is a European Union regulation that provides individuals with greater control over their personal data. While Pine-Ware is based in Australia, we respect the privacy rights of all our visitors and clients, including those from the European Economic Area (EEA).

This page explains how we comply with GDPR requirements when processing personal data of individuals located in the EEA.

Data Controller

Pine-Ware acts as the data controller for personal data collected through our website and services. This means we determine the purposes and means of processing your personal data.

Contact details:
Pine-Ware
Level 12, 45 Market Street
Sydney NSW 2000, Australia
Email: [email protected]

Legal Basis for Processing

Under the GDPR, we must have a valid legal basis for processing your personal data. We rely on the following bases:

  • Consent: Where you have given clear consent for us to process your personal data for a specific purpose, such as receiving marketing communications.
  • Contract: Where processing is necessary for the performance of a contract with you or to take steps at your request before entering into a contract.
  • Legal Obligation: Where processing is necessary for us to comply with legal requirements.
  • Legitimate Interests: Where processing is necessary for our legitimate interests or those of a third party, provided your interests and fundamental rights do not override those interests.

Your Rights Under GDPR

If you are located in the EEA, you have the following rights regarding your personal data:

Right to Access

You have the right to request a copy of the personal data we hold about you, along with information about how we use it.

Right to Rectification

You have the right to request that we correct any inaccurate personal data or complete any incomplete data we hold about you.

Right to Erasure

Also known as the "right to be forgotten", you have the right to request deletion of your personal data in certain circumstances, such as when the data is no longer necessary for the purpose it was collected.

Right to Restrict Processing

You have the right to request that we restrict the processing of your personal data in certain circumstances, such as when you contest the accuracy of the data.

Right to Data Portability

You have the right to receive your personal data in a structured, commonly used, machine-readable format and to transmit that data to another controller.

Right to Object

You have the right to object to the processing of your personal data in certain circumstances, including processing for direct marketing purposes.

Rights Related to Automated Decision-Making

You have the right not to be subject to decisions based solely on automated processing, including profiling, that produce legal effects concerning you or similarly significantly affect you.

Exercising Your Rights

To exercise any of these rights, please contact us using the details provided below. We will respond to your request within one month. In some cases, we may need to extend this period by up to two months, in which case we will inform you of the extension and the reasons for it.

We may need to verify your identity before processing your request. If your request is manifestly unfounded or excessive, we may charge a reasonable fee or refuse to act on the request.

International Data Transfers

As we are based in Australia, any personal data you provide to us may be transferred to and processed in Australia. Australia is not considered by the European Commission to provide an adequate level of data protection. However, we implement appropriate safeguards to protect your personal data, including standard contractual clauses approved by the European Commission.

Data Retention

We retain personal data only for as long as necessary to fulfil the purposes for which it was collected, including to satisfy legal, accounting, or reporting requirements. Criteria used to determine retention periods include applicable statute of limitations, regulatory requirements, and the nature of our relationship with you.

Data Security

We implement appropriate technical and organisational measures to protect personal data against unauthorised or unlawful processing, accidental loss, destruction, or damage. These measures include encryption, access controls, and regular security assessments.

Cookies and Tracking

Our use of cookies complies with GDPR requirements. We obtain consent before placing non-essential cookies on your device. For more information, please see our Cookies Policy.

Complaints

If you believe that we have not complied with your data protection rights, you have the right to lodge a complaint with a supervisory authority, in particular in the EEA member state of your habitual residence, place of work, or place of the alleged infringement.

However, we would appreciate the opportunity to address your concerns before you approach a supervisory authority, so please contact us in the first instance.

Updates to This Information

We may update this GDPR information from time to time. Any changes will be posted on this page with an updated revision date.

Contact Us

For any questions about our GDPR compliance or to exercise your rights, please contact us:

Email: [email protected]
Address: Level 12, 45 Market Street, Sydney NSW 2000, Australia