1. Introduction
Auboros Pty Ltd ("Auboros", "we", "us", or "our") respects your privacy and handles personal information in accordance with the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs). This Policy explains what personal information we collect, how we use, disclose, and secure it, and the choices you have regarding your information.
2. Definitions
"Personal information" means information or an opinion about an identified individual, or an individual who is reasonably identifiable, whether the information or opinion is true or not, and whether recorded in a material form or not.
"Sensitive information" is a subset of personal information and includes information or an opinion about an individual's racial or ethnic origin, political opinions, religious beliefs, sexual orientation, health information, or biometric information. We only collect sensitive information with your consent and when it is reasonably necessary for or directly related to our functions or activities.
3. Scope and consent
This Policy applies to:
- the website www.auboros.com;
- our consulting, integration, support, training and related services; and
- any other dealings you have with us (collectively, the "Services").
It does not cover third-party sites or services linked from our website.
By accessing or using our Services, you consent to the collection, use, and disclosure of your personal information in accordance with this Policy.
4. What we collect
| Category | Examples |
|---|---|
| Contact details | Name, email address, phone number, postal address, communication preferences. |
| Business information | Company name, ABN, job title, industry, professional affiliations, details of your organisation's IT infrastructure and systems. |
| Service data | Project requirements, service specifications, engagement history, billing details, payment history, support tickets, communication logs, feedback. |
| Technical data | IP address, browser type, device information, pages visited, referring URL, time spent on pages, clickstream data, website activity logs. |
| Sensitive information | Résumés, identity documents, health or biometric data, only where reasonably necessary and with your explicit consent. |
| Correspondence | Records of your communications with us, including emails, chat transcripts, and notes from phone calls or meetings. |
Consequences of non-provision: if you choose not to provide requested personal information, we may be unable to supply the Services, respond to enquiries, or tailor our advice.
5. How we collect information
- Directly from you: when you contact us, register for an account, subscribe to newsletters, complete web forms, send emails, participate in calls or meetings, accept proposals, or sign contracts.
- Automatically: through cookies and similar technologies when you visit our website.
- From third-party sources: publicly available data, professional referees (with your consent), or trusted partners assisting in service delivery, where permitted by law.
6. Cookies & analytics
We use first-party cookies and third-party tools such as Google Analytics and HubSpot to remember preferences, analyse site traffic and user behaviour, and improve website content and user experience. You can control cookies in your browser settings. Disabling cookies may affect website functionality.
7. Why we use your information
We collect, hold, use, and disclose your personal information for the following purposes, in accordance with APP 6:
- To provide and manage the Services, including account management, billing, technical support, and fulfilling contractual obligations.
- To respond to enquiries and technical issues.
- To improve, test and secure our systems and Services.
- To send service updates and administrative notices.
- Marketing (newsletters, offers, event invites) with your consent or where permitted under APP 7. You can opt out at any time.
- Compliance with legal and regulatory obligations, such as tax and anti-money laundering laws.
- Managing and resolving complaints and disputes.
- Recruitment and employment purposes for job applicants.
8. Disclosure of personal information
We may share your personal information with the following third parties for the purposes outlined above:
- Service providers: cloud hosting, email delivery, CRM, analytics, payment processing, and other IT and administrative support services, bound by contractual obligations to protect your information.
- Professional advisers: auditors, accountants, lawyers, and insurers.
- Regulators & law enforcement: where required or authorised by law.
- Business transfers: in the event of a merger, acquisition, or asset sale, with notice via our website.
- Others with your consent.
We do not sell or rent your personal information to third parties for their marketing purposes.
9. Security (APP 11)
We take reasonable steps to protect your personal information, including:
- TLS 1.2+ encryption for all traffic to our website and SaaS platforms;
- multi-factor authentication (MFA) for staff access to internal systems;
- role-based access controls and least-privilege principles;
- regular security audits, vulnerability testing, and penetration testing;
- staff training on data privacy and security best practices; and
- physical security measures at our premises.
10. Retention
We retain your personal information only for as long as necessary to fulfil the purposes for which it was collected. Project and financial records are typically kept for seven (7) years to meet Australian tax and corporate law requirements. When personal information is no longer required, we securely destroy or de-identify it.
11. Your rights (APPs 12 & 13)
- Access: you may request a copy of the personal information we hold about you.
- Correction: you may request that we update or rectify inaccurate, incomplete, or out-of-date information.
- Deletion: you may request erasure of your personal information where it is no longer necessary or where you withdraw consent and no other legal basis for processing exists.
- Anonymity / pseudonymity (APP 2): where practical and lawful, you may interact with us anonymously or using a pseudonym.
To exercise any of these rights, email our Privacy Officer at contact@auboros.com. We aim to respond to all legitimate requests within 30 days.
12. Employee records exemption
Information relating to our current and former employees, where directly related to their employment relationship, is handled in accordance with the employee records exemption under section 7B of the Privacy Act 1988 (Cth).
13. Data breach notification
In the event of a data breach involving your personal information that is likely to result in serious harm, we will promptly contain the breach, assess its scope and impact, and notify affected individuals and the Office of the Australian Information Commissioner (OAIC) as required by the Notifiable Data Breaches (NDB) scheme.
14. Complaints
If you believe we have breached your privacy or the Australian Privacy Principles, you may submit a complaint in writing to our Privacy Officer. We will acknowledge receipt within 5 business days and aim to resolve all complaints within 30 days. If you are not satisfied with our response, you may escalate to the OAIC: oaic.gov.au · 1300 363 992 · GPO Box 5218 Sydney NSW 2001.
15. Changes to this policy
We may update this Policy periodically. The current version, identified by the "Last updated" date at the top, is always available on our website. Significant changes will be announced via a prominent notice on our website.
16. Contact us
Auboros Pty Ltd
Email: contact@auboros.com
Post: 15 Honeysuckle Street, Mansfield QLD 4122, Australia