Privacy Policy
Last Updated: 15/01/2025
Effective Date: 15/01/2025
1. Introduction
Nook Web Studio ABN 98 219 417 644 ("we", "us", "our") is committed to protecting your privacy and handling your personal information responsibly. This Privacy Policy explains how we collect, use, disclose, and protect your personal information when you use our web design and hosting services.
This policy complies with the Australian Privacy Principles under the Privacy Act 1988 (Cth) and other applicable privacy laws in Australia.
2. Information We Collect
2.1 Personal Information
We may collect the following types of personal information:
- Contact Information: Name, email address, phone number, business address
- Business Information: Company name, ABN, business description, website content
- Payment Information: Billing address
- Technical Information: IP address, browser type, device information, website usage data
- Communication Records: Emails, support tickets, meeting notes, project communications
2.2 Website Analytics
We may use analytics services to understand how visitors interact with our website and client websites. This may include collecting anonymized data about page views, time spent on pages, and user journeys.
3. How We Collect Information
We collect personal information through:
- Direct communication when you contact us or engage our services
- Online forms, quote requests, and service agreements
- Website analytics and tracking technologies
- Third-party payment processors
- Social media interactions and referrals
- Business networking events and professional contacts
4. How We Use Your Information
We use your personal information for the following purposes:
- Service Delivery: Design, develop, host, and maintain your website
- Communication: Respond to inquiries, provide support, and send service updates
- Payment Processing: Process payments and manage billing
- Business Operations: Manage client relationships, maintain records, and improve services
- Marketing: Send relevant service information and promotional materials (with consent)
- Legal Compliance: Comply with legal obligations and resolve disputes
- Website Analytics: Analyze website performance and user experience
5. Information Sharing and Disclosure
5.1 Third-Party Service Providers
We may share your information with trusted third-party service providers who assist us in:
- Payment Processing: Stripe for secure payment handling
- Hosting Services: Cloudflare, DigitalOcean, and other hosting providers
- Email Services: Professional email and communication platforms
- Analytics: Website analytics and performance monitoring services
- Professional Services: Legal, accounting, and business advisory services
5.2 Legal Requirements
We may disclose your personal information if required by law, court order, or government authority, or to protect our rights, property, or safety, or that of others.
5.3 Business Transfers
In the event of a business sale, merger, or acquisition, your personal information may be transferred to the new entity, subject to the same privacy protections.
6. Data Security
We implement appropriate technical and organizational measures to protect your personal information against:
Our security measures include encryption, secure servers, access controls, regular security updates, and staff training on data protection practices.
- Unauthorized access, use, or disclosure
- Accidental loss, destruction, or damage
- Data breaches and cyber security threats
7. Data Retention
We retain your personal information only for as long as necessary to fulfill the purposes for which it was collected, including:
- Active client records: For the duration of our service relationship
- Financial records: 7 years as required by Australian tax law
- Project files and communications: 3 years after service completion
- Marketing communications: Until you unsubscribe or object
8. Your Privacy Rights
Under Australian privacy law, you have the right to:
- Access: Request access to your personal information we hold
- Correction: Request correction of inaccurate or incomplete information
- Deletion: Request deletion of your personal information (subject to legal requirements)
- Restriction: Request limitation of how we process your information
- Portability: Request your data in a portable format
- Objection: Object to certain types of processing, including direct marketing
- Complaint: Lodge a complaint with the Australian Privacy Commissioner
9. International Data Transfers
Some of our service providers may be located outside Australia. When we transfer your personal information overseas, we ensure appropriate safeguards are in place to protect your privacy, including:
- Using service providers with adequate privacy protections
- Implementing contractual safeguards
- Ensuring compliance with Australian privacy standards
10. Marketing Communications
We may send you marketing communications about our services, industry insights, and special offers. You can opt-out of marketing communications at any time by:
- Clicking the unsubscribe link in our emails
- Contacting us directly
- Updating your communication preferences
11. Children's Privacy
Our services are not directed to individuals under 18 years of age. We do not knowingly collect personal information from children under 18. If we become aware that we have collected personal information from a child under 18, we will take steps to delete such information.
12. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, services, or legal requirements. We will notify you of significant changes by:
- Posting the updated policy on our website
- Sending email notification to active clients
- Providing 30 days' notice for material changes
13. Contact Us
If you have questions about this Privacy Policy, want to exercise your privacy rights, or need to report a privacy concern, please contact us:
14. Complaints Process
If you believe we have breached your privacy, you can lodge a complaint with us. We will:
- Acknowledge your complaint within 7 days
- Investigate the matter thoroughly
- Respond with our findings within 30 days
- Take corrective action if necessary
If you are not satisfied with our response, you can lodge a complaint with the Australian Privacy Commissioner at www.oaic.gov.au.