1. Data Controller Information
The data controller responsible for your personal information is Rinsingplanet, operating at 160 Queen Street, Brisbane QLD 4000, Australia. For privacy-related enquiries, contact us at assist@rinsingplanet.world or by phone at +61 8 9325 1188. Our website is accessible at https://rinsingplanet.ddd.
We are committed to handling personal data in accordance with the General Data Protection Regulation (GDPR) where applicable, the Australian Privacy Act 1988, and other relevant international privacy legislation. This policy applies to all visitors of our website and clients who engage our workplace energy program services.
2. Scope of This Policy
This Privacy Policy covers personal information collected through our website, contact forms, email communications, telephone interactions, and service delivery processes. It does not apply to third-party websites linked from our pages, which maintain their own privacy practices. We encourage you to review the privacy policies of any external sites you visit.
Our services consist of educational workplace energy programs, consulting, and related informational products. We do not collect health records or clinical data as part of our standard service delivery.
3. Categories of Personal Data We Collect
3.1 Information You Provide Directly
When you complete our contact form, we collect your full name, email address, and message content. If you provide additional details such as your organisation name, job title, or phone number within your message, we process that information solely to respond to your enquiry.
When you engage our services, we may collect business contact details, billing information, organisation structure data relevant to program delivery, and correspondence related to your engagement. Payment processing may involve additional data handled by our payment service providers under their own privacy terms.
3.2 Information Collected Automatically
When you visit our website, we may automatically collect technical information including your IP address, browser type and version, operating system, referring URL, pages viewed, time spent on pages, and general geographic location derived from IP address. This data is collected through cookies and similar technologies as described in our Cookie Policy.
We use this information to maintain website security, analyse usage patterns, improve content relevance, and ensure proper technical functioning across devices and browsers.
3.3 Information from Third Parties
We may receive limited information from business partners or referral sources when they introduce potential clients to our services. In such cases, we process only the contact details necessary to initiate communication and confirm consent where required.
4. Legal Basis for Processing
Under the GDPR, we process personal data based on the following legal grounds:
- Consent: When you submit our contact form, you provide explicit consent for us to process your data to respond to your enquiry. Cookie preferences are managed through our consent banner with granular category controls.
- Contractual necessity: Processing required to perform our service agreements, including program delivery, invoicing, and client communication.
- Legitimate interests: Website security monitoring, fraud prevention, service improvement analytics, and direct communication about related services to existing clients, balanced against your privacy rights.
- Legal obligation: Retaining records as required by Australian tax, corporate, and regulatory requirements.
5. Purposes of Data Usage
We use personal information for the following specific purposes:
- Responding to enquiries submitted through our contact form or email
- Delivering workplace energy programs, consulting services, and educational products
- Managing client relationships, including scheduling, facilitation, and post-program follow-up
- Processing payments and maintaining financial records
- Improving our website content, navigation, and user experience
- Conducting aggregated, anonymised analysis of website traffic and engagement patterns
- Complying with legal obligations and responding to lawful requests from authorities
- Protecting our rights, property, and safety, and that of our clients and website visitors
We do not use personal data for automated decision-making or profiling that produces legal or similarly significant effects.
6. Data Sharing and Third Parties
We do not sell personal information to third parties. We may share data with the following categories of recipients when necessary:
- Service providers: Hosting providers, email delivery services, payment processors, and analytics platforms that assist in website operation and service delivery, bound by data processing agreements
- Professional advisers: Accountants, legal counsel, and auditors who require access for advisory purposes under confidentiality obligations
- Regulatory bodies: When required by law, court order, or governmental request
International data transfers, where they occur, are protected through appropriate safeguards including standard contractual clauses or adequacy decisions as required by applicable law.
7. Data Retention Periods
We retain personal data only for as long as necessary to fulfil the purposes for which it was collected:
- Contact form submissions: Retained for twenty-four months from the date of submission, unless an ongoing business relationship develops
- Client engagement records: Retained for seven years following the conclusion of services, in accordance with Australian record-keeping requirements
- Financial and billing data: Retained for seven years as required by Australian taxation legislation
- Website analytics data: Aggregated data retained for twenty-six months; individual session data anonymised or deleted within fourteen months
- Cookie consent records: Retained for twelve months to demonstrate compliance with consent requirements
Upon expiry of retention periods, data is securely deleted or irreversibly anonymised.
8. Security Measures
We implement appropriate technical and organisational measures to protect personal data against unauthorised access, alteration, disclosure, or destruction. These measures include:
- HTTPS encryption for all website communications
- Access controls limiting data access to authorised personnel on a need-to-know basis
- Regular review of security practices and infrastructure configurations
- Secure storage of physical and digital records with backup procedures
- Staff training on data protection responsibilities and incident response protocols
- Contractual security requirements for third-party processors
While we take reasonable precautions, no method of electronic transmission or storage is completely secure. We cannot guarantee absolute security but commit to notifying affected individuals and relevant authorities of data breaches as required by applicable law.
9. Your Rights Under GDPR and Australian Law
Depending on your location and applicable legislation, you may exercise the following rights regarding your personal data:
- Right of access: Request confirmation of whether we process your data and obtain a copy of that data
- Right to rectification: Request correction of inaccurate or incomplete personal information
- Right to erasure: Request deletion of your data where no compelling reason exists for continued processing
- Right to restrict processing: Request limitation of processing under certain circumstances
- Right to data portability: Receive your data in a structured, commonly used, machine-readable format
- Right to object: Object to processing based on legitimate interests or for direct marketing purposes
- Right to withdraw consent: Withdraw consent at any time where processing is consent-based, without affecting prior lawful processing
- Right to lodge a complaint: File a complaint with the Office of the Australian Information Commissioner (OAIC) or your local supervisory authority
To exercise any of these rights, contact us at assist@rinsingplanet.world. We will respond within thirty days, or inform you if an extension is required. We may request verification of your identity before processing requests.
10. Children's Privacy
Our website and services are directed at business professionals and organisations. We do not knowingly collect personal information from individuals under eighteen years of age. If we become aware that we have collected data from a minor, we will take steps to delete that information promptly.
11. Changes to This Policy
We may update this Privacy Policy periodically to reflect changes in our practices, technology, or legal requirements. Material changes will be indicated by updating the effective date at the top of this page. We encourage you to review this policy regularly. Continued use of our website after changes constitutes acknowledgment of the updated policy.
12. Contact Information
For questions, concerns, or requests related to this Privacy Policy or our data handling practices, please contact:
Rinsingplanet
160 Queen Street, Brisbane QLD 4000, Australia
Email: assist@rinsingplanet.world
Phone: +61 8 9325 1188
Website: https://rinsingplanet.world