russet-isle
Home About Services Contact Advertising Content

GDPR Compliance Statement

Last Updated: August 3, 2026

General Data Protection Regulation Compliance

Although russet-isle operates primarily within Australia, we recognize that visitors from the European Union may access our website. This statement outlines our commitment to GDPR principles and the rights of EU data subjects.

Legal Basis for Processing

We process personal data under the following legal bases:

  • Consent: When you submit forms or accept cookies, you provide explicit consent for data processing
  • Legitimate Interest: Processing necessary for business operations, fraud prevention, and service improvement
  • Contractual Necessity: Processing required to fulfill service agreements and provide requested information

Data Subject Rights Under GDPR

If you are located in the European Union, you have the following rights:

Right to Access

You may request confirmation of whether we process your personal data and obtain a copy of that data in a commonly used electronic format.

Right to Rectification

You may request correction of inaccurate personal data or completion of incomplete information we hold about you.

Right to Erasure

You may request deletion of your personal data when it is no longer necessary for the purposes for which it was collected, when you withdraw consent, or when you object to processing.

Right to Restriction of Processing

You may request limitation of how we use your data under certain circumstances, such as when you contest accuracy or object to processing.

Right to Data Portability

You may request transfer of your data to another service provider in a structured, machine-readable format.

Right to Object

You may object to processing of your personal data based on legitimate interests or for direct marketing purposes.

Rights Related to Automated Decision-Making

We do not currently employ automated decision-making or profiling. Should this change, you will be informed and given appropriate rights to challenge such decisions.

How to Exercise Your Rights

To exercise any of the rights described above, please contact us using the information provided at the end of this document. We will respond to your request within 30 days as required by GDPR.

When submitting a request, please include:

  • Your full name and contact information
  • Clear description of which right you wish to exercise
  • Any relevant details that help us locate your information
  • Proof of identity to prevent unauthorized access to your data

Data Processing Details

What Data We Collect

We collect only data necessary for providing requested services:

  • Contact information: name, email address
  • Property details: type, location (for service provision)
  • Service preferences and inquiry details
  • Technical data: IP address, browser information, site usage patterns

How We Use Your Data

Data is used exclusively for:

  • Responding to your service inquiries
  • Providing requested assessments and proposals
  • Improving website functionality and user experience
  • Complying with legal obligations

Who We Share Data With

We do not sell or rent personal data. Information may be shared only with:

  • Service providers essential for website operation (hosting, analytics)
  • Legal authorities when required by law
  • Professional advisors under confidentiality obligations

International Data Transfers

Your data is primarily stored and processed in Australia. If data is transferred outside the EU, we ensure appropriate safeguards are in place, such as:

  • Standard contractual clauses approved by the European Commission
  • Transfer to countries with adequacy decisions from the EU
  • Your explicit consent for the transfer

Data Retention Periods

We retain personal data only as long as necessary for the purposes stated:

  • Inquiry data: 24 months from last contact
  • Customer records: warranty period plus 7 years
  • Analytics data: anonymized after 18 months

After retention periods expire, data is securely deleted or anonymized.

Security Measures

We implement appropriate technical and organizational measures to protect personal data:

  • Encryption of data in transit using SSL/TLS
  • Access controls limiting data availability to authorized personnel
  • Regular security assessments and updates
  • Staff training on data protection requirements
  • Incident response procedures for potential breaches

Data Breach Notification

In the event of a data breach that poses risk to your rights and freedoms, we will:

  • Notify the relevant supervisory authority within 72 hours when feasible
  • Inform affected individuals without undue delay
  • Provide details about the breach, its likely consequences, and measures taken
  • Offer guidance on steps you can take to protect yourself

Cookies and Tracking Technologies

We use cookies and similar technologies with your consent. You can manage preferences through our cookie banner or browser settings. Detailed information about cookies is available in our Cookies Policy.

Children's Data

We do not knowingly collect or process data from individuals under 16 years of age. If we discover such data has been collected, we will delete it immediately.

Supervisory Authority

If you are located in the EU and have concerns about our data processing practices, you have the right to lodge a complaint with your local data protection supervisory authority.

Updates to This Statement

We may update this GDPR compliance statement to reflect changes in our practices or legal requirements. Significant changes will be communicated through prominent website notices.

Contact Information

For questions about GDPR compliance or to exercise your rights:

russet-isle
127 Kingsley Street
Brisbane QLD 4000
Australia

Email: [email protected]

russet-isle

Advancing Australian energy independence through proven solar technology.

Legal

  • Privacy Policy
  • Terms of Use
  • GDPR Compliance
  • Cookies Policy

Navigation

  • Home
  • About
  • Services
  • Contact

© 2026 russet-isle.com. All rights reserved.