Last updated: January 2024

About GDPR

The General Data Protection Regulation (GDPR) is a European Union regulation that governs data protection and privacy for individuals within the EU and the European Economic Area. Although valley-quartz operates in Australia, we are committed to upholding data protection standards that align with GDPR principles for all our customers.

Data Controller

Valley-quartz acts as the data controller for personal information collected through our website and services. This means we determine the purposes and means of processing your personal data.

Contact details:
Valley-quartz
147 Workshop Lane
Collingwood VIC 3066
Australia
Email: [email protected]

Legal Basis for Processing

We process your personal data under the following legal bases:

Your Rights Under GDPR

If you are located in the European Economic Area, you have the following rights regarding your personal data:

Exercising Your Rights

To exercise any of these rights, please contact us at [email protected]. We will respond to your request within one month of receipt. In certain circumstances, we may extend this period by two months, in which case we will inform you of the extension and the reasons for it.

We may request specific information from you to help us confirm your identity and ensure your right to access your personal data or exercise any of your other rights.

International Data Transfers

As we are based in Australia, your personal data may be transferred to and processed in Australia. We ensure that appropriate safeguards are in place to protect your data when transferred internationally, including standard contractual clauses approved by relevant authorities.

Data Retention

We retain personal data only for as long as necessary to fulfil the purposes for which it was collected, including satisfying legal, accounting, or reporting requirements. Service records are typically retained for a period of seven years for warranty and legal compliance purposes.

Data Security

We have implemented appropriate technical and organisational measures to protect your personal data against unauthorised or unlawful processing and against accidental loss, destruction, or damage. These measures include encrypted data storage, secure access controls, and regular security assessments.

Complaints

If you believe that your data protection rights have been violated, you have the right to lodge a complaint with a supervisory authority. For EU residents, this would be the data protection authority in your country of residence. For Australian residents, complaints can be directed to the Office of the Australian Information Commissioner (OAIC).

Updates to This Notice

We may update this GDPR notice from time to time. Any changes will be posted on this page with an updated revision date.