Information on this site is advertising in nature.

Last updated: January 2024

About GDPR

The General Data Protection Regulation (GDPR) is a European Union regulation that governs how personal data must be handled. Although bright-crane operates in Australia, we are committed to upholding data protection standards that align with GDPR principles for all users.

Data Controller

bright-crane acts as the data controller for personal information collected through this website. We determine why and how your data is processed.

Contact details:

Email: [email protected]
Address: 42 Machinery Lane, Smithfield NSW 2164, Australia

Your Rights Under GDPR

If you are in the European Economic Area, you have the following rights:

Right to Access

You have the right to request a copy of the personal data we hold about you. We will provide this information free of charge within one month of your request.

Right to Rectification

If you believe any personal data we hold about you is inaccurate or incomplete, you have the right to request correction.

Right to Erasure

You may request deletion of your personal data where there is no compelling reason for its continued processing. This right is not absolute and may be subject to legal obligations.

Right to Restrict Processing

You can request that we limit how we use your data while we address your concerns about its accuracy or our processing activities.

Right to Data Portability

You have the right to receive your personal data in a structured, commonly used, machine-readable format and transmit it to another controller.

Right to Object

You can object to processing of your personal data based on legitimate interests or for direct marketing purposes.

Rights Related to Automated Decision Making

You have the right not to be subject to decisions based solely on automated processing that produce legal effects concerning you.

Legal Basis for Processing

We process personal data under the following legal bases:

Data Transfers

As an Australian business, your data is stored and processed in Australia. If data is transferred outside Australia or the EEA, we ensure appropriate safeguards are in place to protect your information.

Data Retention

We retain personal data only for as long as necessary to fulfil the purposes for which it was collected, including to satisfy legal, accounting, or reporting requirements.

Data Security

We implement appropriate technical and organisational measures to ensure a level of security appropriate to the risk, including protection against unauthorised or unlawful processing and accidental loss, destruction, or damage.

Exercising Your Rights

To exercise any of your rights, please contact us using the details below. We will respond to your request within one month. In complex cases, we may extend this period by two months, but we will inform you of any extension and the reasons for it.

Complaints

If you are not satisfied with how we handle your data or your request, you have the right to lodge a complaint with your local data protection authority. For EU residents, this would be your national supervisory authority.

Changes to This Notice

We may update this GDPR notice from time to time. Any changes will be posted on this page with an updated revision date.

Contact

For GDPR-related enquiries or to exercise your rights, contact us at: [email protected]