Information We Collect
ralvexonir collects information to provide better financial services and startup ecosystem support to our Australian clients. We gather data through various channels and always aim for transparency about what we collect and why.
Personal Information
- Contact details including name, email address, phone number, and business address
- Professional information such as company name, role, industry sector, and business size
- Financial data relevant to our services, including business revenue ranges and funding requirements
- Communication records from emails, phone calls, and meeting notes
- Identity verification documents when required for compliance purposes
Technical Information
- IP address, browser type, device information, and operating system details
- Website usage patterns, page views, time spent on sections, and navigation paths
- Cookie data and similar tracking technologies for website functionality
- Login timestamps and security-related access information
We only collect information that's necessary for providing our services or required by Australian financial regulations. You can always ask us what specific data we hold about you.
How We Use Your Information
Your data helps us deliver personalized financial guidance and maintain our platform effectively. We process information for specific business purposes and never use it beyond what's necessary for our relationship.
Primary Uses
- Providing financial consulting services and startup ecosystem guidance
- Communicating about your projects, sending updates, and responding to inquiries
- Customizing our services based on your business needs and preferences
- Processing payments and managing billing for our services
- Maintaining accurate client records and project documentation
Secondary Uses
- Improving our website functionality and user experience
- Analyzing service performance and client satisfaction levels
- Complying with Australian Privacy Principles and financial regulations
- Protecting against fraud, security threats, and unauthorized access
- Developing new services that might benefit our client base
We base our data processing on legitimate business interests, contract fulfillment, and legal compliance. When we need consent for specific activities, we'll ask for it clearly and give you options to control your preferences.
Data Storage and Location
We store your information using secure cloud infrastructure primarily located in Australia. Our storage practices follow industry best practices and comply with local data protection requirements.
Data Type | Storage Location | Access Controls |
---|---|---|
Client Records | AWS Sydney Data Center | Encrypted, Role-based Access |
Financial Documents | Local Australian Servers | Multi-factor Authentication Required |
Communication Logs | AWS Sydney Data Center | Time-limited Access, Audit Trail |
Website Analytics | Google Analytics (Australia) | Anonymized, Aggregated Data |
All stored data uses AES-256 encryption and we maintain regular backups for business continuity. Access logs are monitored and reviewed monthly to ensure only authorized personnel handle your information.
Your Privacy Rights
Under Australian privacy law, you have significant control over your personal information. We've designed straightforward processes to help you exercise these rights effectively.
Access and Correction
- Request copies of all personal information we hold about you
- Update or correct inaccurate information in our records
- Receive information about how we've used or shared your data
- Get details about our data collection sources and purposes
Data Control Options
- Opt out of marketing communications while maintaining service communications
- Request deletion of your personal information (subject to legal retention requirements)
- Object to specific uses of your data that aren't essential for service delivery
- Request data portability to transfer information to another service provider
How to Exercise Your Rights
Contact our privacy team at help@ralvexonir.com with your request. We'll respond within 30 days and may need to verify your identity for security purposes. Most requests are processed free of charge, though we may charge reasonable fees for extensive or repetitive requests.
If you're unsatisfied with our response, you can lodge a complaint with the Office of the Australian Information Commissioner (OAIC) at oaic.gov.au.
Security Measures
Protecting your information is fundamental to our operations. We implement comprehensive security measures that address both technical and administrative aspects of data protection.
Technical Safeguards
- SSL/TLS encryption for all data transmission between your browser and our servers
- Multi-factor authentication for all staff accounts and sensitive system access
- Regular security audits and penetration testing by independent cybersecurity firms
- Automated backup systems with encrypted storage and offsite replication
- Intrusion detection systems that monitor for unauthorized access attempts
Administrative Controls
- Staff privacy training and regular updates on data handling best practices
- Access controls that limit information access based on job responsibilities
- Incident response procedures for potential data breaches or security events
- Regular review and updating of security policies and procedures
- Vendor security assessments for all third-party service providers
While we maintain robust security measures, no system is completely immune to threats. We continuously monitor for emerging risks and update our security practices accordingly. In the unlikely event of a data breach affecting your information, we'll notify you promptly as required by Australian law.
International Data Transfers
Although we primarily store data within Australia, some of our service providers may process information internationally. We ensure adequate protection for any cross-border data transfers.
Transfer Safeguards
- Service providers must demonstrate equivalent privacy protections to Australian standards
- Contractual clauses that require international partners to protect your data appropriately
- Regular audits of international service providers' data handling practices
- Data minimization practices that limit what information is shared internationally
We maintain detailed records of any international data transfers and can provide information about specific transfers upon request. Where possible, we choose service providers with Australian operations to minimize international processing.
Data Retention and Deletion
We keep your information only as long as necessary for providing services, meeting legal obligations, or resolving disputes. Our retention practices balance operational needs with privacy protection.
Information Type | Retention Period | Deletion Criteria |
---|---|---|
Active Client Records | Duration of relationship + 7 years | Tax and regulatory compliance requirements |
Marketing Communications | Until opt-out + 30 days | Suppression list maintenance |
Website Analytics | 26 months | Google Analytics default setting |
Support Communications | 3 years after resolution | Service improvement and dispute resolution |
Automated Deletion
We use automated systems to delete information when retention periods expire. However, some information may be retained longer if required by law or for legitimate business purposes such as fraud prevention or legal proceedings.
You can request early deletion of your personal information, though we may need to retain certain records to comply with Australian business and tax regulations. We'll explain any retention requirements that prevent immediate deletion.
Policy Updates and Changes
This privacy policy may be updated to reflect changes in our practices, legal requirements, or service offerings. We're committed to transparency about how we handle policy modifications.
Notification Process
- Email notification to active clients about significant policy changes
- Website banner notifications for 30 days following policy updates
- Archive of previous policy versions available upon request
- Summary of changes provided with each policy update
We encourage you to review this policy periodically to stay informed about how we protect your information. Continued use of our services after policy updates constitutes acceptance of the revised terms.
Significant changes that materially affect your privacy rights will include a 30-day notice period before taking effect, giving you time to review and respond to the changes.