About GDPR
The General Data Protection Regulation (GDPR) is a regulation in EU law on data protection and privacy for all individuals within the European Union and the European Economic Area. Although azure-root is based in Australia, we are committed to upholding the principles of GDPR for all users who may be covered by this regulation.
Your Rights Under GDPR
If you are a resident of the European Union or European Economic Area, you have certain data protection rights under GDPR:
Right to Access
You have the right to request copies of your personal data. We may charge a small fee for this service in certain circumstances.
Right to Rectification
You have the right to request that we correct any information you believe is inaccurate. You also have the right to request that we complete information you believe is incomplete.
Right to Erasure
You have the right to request that we erase your personal data, under certain conditions. This is also known as the "right to be forgotten."
Right to Restrict Processing
You have the right to request that we restrict the processing of your personal data, under certain conditions.
Right to Object to Processing
You have the right to object to our processing of your personal data, under certain conditions.
Right to Data Portability
You have the right to request that we transfer the data we have collected to another organisation, or directly to you, under certain conditions.
Lawful Bases for Processing
We process personal data under the following lawful bases:
- Consent: You have given clear consent for us to process your personal data for a specific purpose
- Contract: Processing is necessary for a contract we have with you, or because you have asked us to take specific steps before entering into a contract
- Legal Obligation: Processing is necessary for us to comply with the law
- Legitimate Interests: Processing is necessary for our legitimate interests or the legitimate interests of a third party, unless there is a good reason to protect your personal data which overrides those legitimate interests
Data Controller
For the purposes of GDPR, the data controller is:
Azure-root Pty Ltd
Level 12, 225 George Street
Sydney NSW 2000
Australia
Data Protection Officer
While not required under Australian law, we have designated a privacy contact who can be reached at:
International Data Transfers
Your information may be transferred to and processed in countries outside the European Economic Area. When we transfer your data, we ensure appropriate safeguards are in place to protect your information and comply with applicable data protection laws.
Retention Period
We will retain your personal data only for as long as necessary to fulfil the purposes for which it was collected, including to satisfy any legal, accounting, or reporting requirements.
Exercising Your Rights
To exercise any of your rights under GDPR, please contact us using the details below. We will respond to your request within one month. In certain circumstances, we may extend this period by two further months where necessary.
Right to Lodge a Complaint
You have the right to lodge a complaint with a supervisory authority if you believe that our processing of your personal data infringes GDPR. You can lodge a complaint with the supervisory authority in your country of residence, place of work, or place of the alleged infringement.
Contact Us
For any GDPR-related queries or to exercise your rights, please contact:
Azure-root Privacy Team
Level 12, 225 George Street
Sydney NSW 2000
Australia
[email protected]