GDPR Compliance
How we handle personal data of individuals in the EU and UK — our role as controller or processor, your rights, international transfers, and breach notification.
Our role
We act in two capacities. As a controller, we determine the purpose and means of processing data from website visitors, prospects, clients and employees. As a processor, we handle client data strictly according to documented instructions and a Data Processing Agreement (DPA).
Lawful basis for processing
As controller, we rely on one of four bases: performing a contract, pursuing a legitimate business interest (service improvement, security, communication), your consent for non-essential activities, or a legal obligation. We don't use automated decision-making that produces legal or similarly significant effects on individuals.
Your rights
If you're in the EEA or UK, you can ask what data we hold about you, access it, correct inaccuracies, request deletion, restrict processing, receive a portable copy, object to certain uses, withdraw consent, and object to solely automated decisions. Requests go to privacy@remotiq.com.au and are answered within 30 days, extendable for complex cases.
International transfers
Australia doesn't have an EU adequacy decision, so transfers of EU/UK personal data outside those regions use the EU Standard Contractual Clauses and the UK International Data Transfer Addendum, backed by encryption in transit and at rest, access restrictions, and pseudonymisation where appropriate.
Data Processing Agreements
Clients can request our standard DPA, which incorporates the EU/UK transfer mechanisms above, governs our sub-processors, sets out security commitments, and describes how we assist with data-subject request handling.
Breach notification
Where we act as controller, we notify the relevant supervisory authority within 72 hours of becoming aware of a qualifying breach. Where we act as processor, we notify the affected client immediately so they can meet their own obligations.
Questions about this policy? Contact kris@edgeservers.com.au.
Back to all policies