Privacy
Privacy Policy
How Anduin Technologies collects, uses and protects personal information, under the Privacy Act 1988 (Cth) and the Australian Privacy Principles.
Last updated 17 September 2026.
We advise Australian businesses on whether their operational records can lawfully be licensed. Selling that advice while handling personal information carelessly would be an obvious contradiction, so this policy is written to be read rather than to be pointed at.
The short version
We collect personal information in three places, all of them things you choose to send us: the enquiry form, the request for the seller’s guide, and the booking page. We use it to reply to you or to send you what you asked for. We do not sell it, we do not share it for marketing, and we delete it on request.
We never receive your operational data. That is not a privacy promise so much as the shape of the business: we are an agent, not a principal. We describe and scope your records; we do not take custody of them, process them, or hold them at any point. Anything in this policy concerns the information you send us — your name, your email, what you wrote in a message.
1. What we collect
Only what you knowingly provide, at one of three points:
- The enquiry form. Name, organisation, email, and whatever you write about the systems you run.
- The seller’s guide request. Name, organisation and email, so we can send you the guide.
- Booking a call. Name and email, plus anything you add in the booking form’s notes. Bookings run through Cal.com — see section 3.
We do not collect sensitive information as the Privacy Act defines it, and we do not track you across other sites. We do measure how this site is used, in a way that cannot identify you — section 4. We ask you not to send data, exports or samples, and the forms say so: a description of your systems is all we need.
2. How we use it
- To reply to you, or to send you the thing you asked for.
- To hold the conversation you booked.
- To keep a record of that conversation in our own systems, so that whoever picks it up next knows what was already discussed.
Marketing email is opt-in and never assumed. Sending an enquiry does not add you to a list.
3. Who else is involved
A small site still runs on other people’s software. These are the third parties involved in running it, what each one receives, and where it sits. We name them individually rather than saying “trusted service providers”, because a name is checkable and that phrase is not.
We disclose personal information to no one else, except where Australian law requires or authorises it. We do not sell or rent it, and we do not share it for anyone’s marketing.
4. Cookies and tracking
We set no advertising cookies and no cross-site trackers. The site remembers one thing locally — whether you chose light or dark mode — and that never leaves your browser.
We do count visits. Vercel, who host the site, record how many people open each page and how quickly it loads for them. This is deliberately the least identifying form of it available: no cookie is set, and visits are counted by a hash of the request that is thrown away after 24 hours rather than by anything attached to you. What is kept is the page, the site that linked to it, an approximate location, and the browser and device. Vercel state it is not tied to any individual or IP address, and none of it follows you to other sites.
We turned it on because we would rather know which pages are worth keeping than guess. If measuring visits at all is not something you want, most browsers’ tracking protection and any content blocker will stop it, and the site works exactly the same without it.
The booking page is the exception to the no-cookie rule. Cal.com’s calendar is embedded there and sets its own cookies, governed by their policy rather than ours.
5. Information sent overseas
Every provider in section 3 is based in the United States, so using this site involves a cross-border disclosure of personal information under Australian Privacy Principle 8.
We say so plainly because it is the same question we are paid to help clients answer, and a policy that quietly omitted it would not be worth much. If you would rather nothing of yours left Australia, email or telephone us directly — the contact details are below, and neither route passes through the services above.
6. Security and how long we keep it
- Everything submitted through this site travels over HTTPS.
- Enquiries and guide requests are kept while the conversation is live and for as long as we have a legitimate business or legal reason to hold them, then deleted or de-identified.
- Booking records are held in Cal.com and in our own systems for the same period.
We take reasonable steps to protect personal information from misuse, loss, and unauthorised access, modification or disclosure. No system is perfect, and we would rather say that than imply otherwise.
7. Seeing, correcting or deleting your information
Under the Australian Privacy Principles you may ask what personal information we hold about you, ask us to correct it, or ask us to destroy it. Write to privacy@anduintechnologies.com and we will respond within a reasonable period, normally 30 days.
A deletion request covers our own records. Where the information also sits with a provider in section 3 — a booking held by Cal.com, for instance — we will ask them to delete it too and tell you what happened.
8. Complaints
If you think we have mishandled your personal information, write to privacy@anduintechnologies.com and we will investigate and reply.
If our answer does not satisfy you, you can complain to the Office of the Australian Information Commissioner at oaic.gov.au.
9. Changes
If we change how we handle personal information, we will update this page and the date at the top of it. Material changes to what we collect or who receives it will be described here rather than made quietly.