GDPR Compliance
General Data Protection Regulation Compliance Statement
faded-breeze is committed to protecting the privacy and security of your personal data in accordance with the General Data Protection Regulation (GDPR). This page outlines our practices and your rights under GDPR.
Data Controller
faded-breeze acts as the data controller for personal information collected through our website and services. You can contact us at:
Email: [email protected]
Address: 127 Garden View Lane, Brisbane, QLD 4000, Australia
Legal Basis for Processing
We process your personal data based on the following legal grounds:
- Consent: When you provide explicit consent for us to process your data for specific purposes
- Contract: When processing is necessary for performing our services or entering into a contract with you
- Legal Obligation: When we must process data to comply with legal requirements
- Legitimate Interests: When processing is necessary for our legitimate business interests, provided your rights do not override these interests
Your Rights Under GDPR
As a data subject, you have the following rights:
Right to Access
You have the right to request copies of your personal data. We may charge a reasonable fee if your request is clearly unfounded or excessive.
Right to Rectification
You have the right to request correction of any personal data you believe is inaccurate or incomplete.
Right to Erasure
You have the right to request deletion of your personal data under certain conditions, such as when the data is no longer necessary for the purposes for which it was collected.
Right to Restrict Processing
You have the right to request that we restrict processing of your personal data under specific circumstances.
Right to Data Portability
You have the right to request transfer of your personal data to another organization or directly to you, where technically feasible.
Right to Object
You have the right to object to our processing of your personal data for direct marketing purposes or based on legitimate interests.
Rights Related to Automated Decision Making
You have the right not to be subject to decisions based solely on automated processing, including profiling, which produces legal or similarly significant effects.
Data Retention
We retain personal data only for as long as necessary to fulfill the purposes for which it was collected, comply with legal obligations, resolve disputes, and enforce our agreements. When data is no longer required, we securely delete or anonymize it.
Data Security
We implement appropriate technical and organizational measures to ensure a level of security appropriate to the risk, including:
- Encryption of personal data in transit and at rest
- Regular security assessments and audits
- Access controls and authentication mechanisms
- Employee training on data protection practices
International Data Transfers
If we transfer your personal data outside the European Economic Area, we ensure appropriate safeguards are in place, such as standard contractual clauses approved by the European Commission.
Data Breach Notification
In the event of a data breach that is likely to result in a risk to your rights and freedoms, we will notify you and the relevant supervisory authority within 72 hours of becoming aware of the breach.
Exercising Your Rights
To exercise any of your GDPR rights, please contact us at [email protected]. We will respond to your request within one month, though this may be extended by two months for complex requests.
Right to Lodge a Complaint
If you believe we have not handled your personal data in accordance with GDPR, you have the right to lodge a complaint with your local supervisory authority.
Updates to This Statement
We may update this GDPR compliance statement from time to time. Any changes will be posted on this page with an updated revision date.