Your data protection rights under European regulation
Last updated: January 2024
The General Data Protection Regulation (GDPR) is a European Union regulation that governs data protection and privacy for individuals within the EU and the European Economic Area. Although valley-quartz operates in Australia, we are committed to upholding data protection standards that align with GDPR principles for all our customers.
Valley-quartz acts as the data controller for personal information collected through our website and services. This means we determine the purposes and means of processing your personal data.
Contact details:
Valley-quartz
147 Workshop Lane
Collingwood VIC 3066
Australia
Email: [email protected]
We process your personal data under the following legal bases:
If you are located in the European Economic Area, you have the following rights regarding your personal data:
To exercise any of these rights, please contact us at [email protected]. We will respond to your request within one month of receipt. In certain circumstances, we may extend this period by two months, in which case we will inform you of the extension and the reasons for it.
We may request specific information from you to help us confirm your identity and ensure your right to access your personal data or exercise any of your other rights.
As we are based in Australia, your personal data may be transferred to and processed in Australia. We ensure that appropriate safeguards are in place to protect your data when transferred internationally, including standard contractual clauses approved by relevant authorities.
We retain personal data only for as long as necessary to fulfil the purposes for which it was collected, including satisfying legal, accounting, or reporting requirements. Service records are typically retained for a period of seven years for warranty and legal compliance purposes.
We have implemented appropriate technical and organisational measures to protect your personal data against unauthorised or unlawful processing and against accidental loss, destruction, or damage. These measures include encrypted data storage, secure access controls, and regular security assessments.
If you believe that your data protection rights have been violated, you have the right to lodge a complaint with a supervisory authority. For EU residents, this would be the data protection authority in your country of residence. For Australian residents, complaints can be directed to the Office of the Australian Information Commissioner (OAIC).
We may update this GDPR notice from time to time. Any changes will be posted on this page with an updated revision date.