Privacy Policy
How orivastelium protects and manages your personal information
Effective Date: March 15, 2025 | Last Updated: January 8, 2025
Information We Collect
At orivastelium, we collect information that helps us provide better financial progress measurement services to our Australian users. The data we gather falls into several categories, each serving specific purposes in improving your experience with our platform.
Account Information
Name, email address, phone number, and login credentials you provide during registration
Financial Data
Progress metrics, goal tracking data, and measurement preferences you configure
Usage Analytics
How you interact with our platform, feature usage patterns, and session duration
Device Information
Browser type, operating system, IP address, and device identifiers
How We Use Your Information
We process your personal data for legitimate business purposes that directly benefit your experience. Here's what happens with the information you share:
- Service Delivery: Processing your financial progress measurements and generating personalized insights
- Account Management: Creating and maintaining your user profile, handling authentication, and managing subscriptions
- Communication: Sending important updates about your account, new features, and relevant educational content
- Platform Improvement: Analyzing usage patterns to enhance our measurement tools and user interface
- Security Measures: Detecting fraud, preventing unauthorized access, and maintaining system integrity
- Legal Compliance: Meeting regulatory requirements under Australian privacy laws and financial services regulations
Information Sharing and Disclosure
orivastelium operates under strict data sharing principles. We don't sell your personal information to third parties, and we limit sharing to specific circumstances that serve your interests or meet legal requirements.
Service Providers
We work with carefully vetted companies that help us deliver our services. This includes cloud hosting providers, payment processors, and analytics platforms. All service providers sign data processing agreements that require them to protect your information according to our standards.
Legal Requirements
We may disclose your information when required by Australian law, court orders, or regulatory requests. This includes compliance with the Privacy Act 1988, anti-money laundering regulations, and other financial services legislation that applies to our operations.
Business Transfers
In the event orivastelium is acquired or merges with another company, your information may be transferred as part of that transaction. We would notify you beforehand and ensure the acquiring company commits to protecting your data under similar privacy standards.
Your Privacy Rights
Under Australian privacy law, you have significant control over your personal information. We've designed our systems to make exercising these rights straightforward and responsive.
- Access Rights: Request copies of all personal data we hold about you, including how it's been used and who it's been shared with
- Correction Rights: Update or correct any inaccurate information in your account profile or measurement data
- Deletion Rights: Request deletion of your account and associated data, subject to legal retention requirements
- Portability Rights: Export your progress measurement data in a standard format for use with other services
- Restriction Rights: Limit how we process certain types of your information while maintaining essential service functions
- Objection Rights: Opt out of certain data processing activities, particularly those related to marketing communications
To exercise any of these rights, contact us using the information provided at the end of this policy. We'll respond to your request within 30 days and provide clear explanations of any actions we take.
Data Security and Protection
Protecting your financial information requires multiple layers of security. We've implemented comprehensive measures that address both technical vulnerabilities and human factors that could compromise your data.
Technical Safeguards
All data transmissions use TLS 1.3 encryption, and we store information in encrypted databases with regular security audits. Our systems include intrusion detection, automated threat monitoring, and regular penetration testing by independent security firms.
Access Controls
Employee access to your data is restricted based on job requirements and monitored through audit logs. We conduct background checks on staff who handle personal information and provide regular privacy training to our entire team.
Incident Response
In the unlikely event of a security breach affecting your information, we'll notify you within 72 hours and provide clear details about what happened, what information was involved, and what steps we're taking to address the situation.
Data Retention and Deletion
We keep your information only as long as necessary to provide our services and meet legal obligations. Our retention periods are designed to balance your privacy interests with practical service delivery needs.
- Account Data: Retained while your account remains active, plus 12 months after closure for customer service purposes
- Progress Measurements: Kept for 7 years to support long-term tracking features and comply with financial record requirements
- Communication Records: Email correspondence stored for 3 years, support chat logs for 2 years
- Usage Analytics: Anonymized after 18 months and retained in aggregate form for product development
- Marketing Data: Deleted immediately when you unsubscribe, with suppression records kept to honor your preferences
International Data Transfers
While orivastelium operates primarily within Australia, some of our service providers use international cloud infrastructure. When your information is transferred overseas, we ensure appropriate safeguards are in place.
We only work with providers in countries that the Australian Government has recognized as having adequate privacy protections, or we implement additional contractual protections that meet Australian privacy standards. Your data may be processed in Singapore, Ireland, or the United States through our cloud service providers, all of whom maintain strict data protection commitments.
Cookies and Tracking Technologies
orivastelium uses cookies and similar technologies to improve your experience and analyze platform usage. We've categorized these tools based on their purpose and provided options for managing your preferences.
Essential Cookies
These are necessary for basic platform functionality, including maintaining your login session and remembering your measurement preferences. You cannot disable these cookies without affecting core service features.
Analytics Cookies
We use these to understand how users interact with our measurement tools and identify areas for improvement. This data is aggregated and doesn't identify individual users. You can opt out through your browser settings or our privacy preference center.
Performance Cookies
These help us optimize loading times and system performance based on usage patterns. They collect technical information about your device and connection but don't store personal identifying information.
Changes to This Privacy Policy
We review and update this privacy policy annually or when significant changes occur in our data processing activities. When we make material changes that affect how we handle your information, we'll provide at least 30 days' notice through your registered email address.
Minor updates, such as clarifications or contact information changes, will be posted on our website with the revision date clearly marked. We encourage you to review this policy periodically to stay informed about how we protect your privacy.
Previous versions of this policy are available upon request, and we maintain records of all significant changes for transparency and accountability purposes.
Contact Us About Privacy
Questions about this privacy policy or how we handle your information? We're here to help with clear, straightforward answers.
Privacy Officer orivastelium Financial Services Address 300 Liverpool St, Hobart TAS 7000, Australia Phone +61 415 769 348 Email privacy@orivastelium.comWe respond to privacy inquiries within 5 business days and provide updates every 10 days for complex requests requiring investigation.