Privacy Policy

Your privacy matters to us. Here's how we protect and handle your information.

Last updated: March 15, 2025

1

Information We Collect

kravello collects information to provide better financial business process services to our Australian clients. We're transparent about what we gather and why we need it.

Personal Information

  • Full name and business title
  • Email and phone numbers
  • Business address details
  • Australian Business Number (ABN)
  • Industry and company size

Financial Data

  • Business revenue information
  • Process efficiency metrics
  • Cost analysis requirements
  • Budget planning details
  • Financial goal parameters

Technical Information

  • IP address and location
  • Browser type and version
  • Device characteristics
  • Website interaction patterns
  • Session duration and pages visited
2

How We Use Your Information

Your information helps us deliver personalized financial business process solutions. We don't use your data for anything unrelated to improving your business outcomes.

We use collected information to analyze your business processes, identify areas where efficiency can be improved, and develop customized recommendations. This includes creating detailed reports, scheduling consultations, and providing ongoing support for implementation.

Communication purposes include sending you relevant updates about Australian financial regulations, industry best practices, and new service offerings that might benefit your specific business situation. We also use your information to respond to inquiries and provide technical support.

For service improvement, we analyze usage patterns and feedback to enhance our processes and develop new solutions that address common challenges faced by Australian businesses.

3

Your Rights Under Australian Privacy Law

Under the Privacy Act 1988 (Commonwealth) and Australian Privacy Principles, you have specific rights regarding your personal information. We respect these rights and provide clear procedures for exercising them.

Access Your Information

You can request copies of all personal information we hold about you, including how it's being used and who it's shared with.

How to Request:

Email help@kravello.com with "Privacy Access Request" in the subject line. Include your full name, contact details, and specify what information you want to access. We'll respond within 30 days.

Correct Your Information

If any personal information we hold is inaccurate, incomplete, or out of date, you can request corrections at any time.

How to Request:

Contact us at help@kravello.com or call +61411111435. Provide the incorrect information and the correct details. We'll update your records and confirm the changes within 14 days.

Request Deletion

You can ask us to delete your personal information when it's no longer necessary for our business relationship or legal obligations.

How to Request:

Send a written request to help@kravello.com explaining why you want the information deleted. We'll review your request and respond within 30 days, explaining any information we must retain for legal reasons.

Lodge a Complaint

If you believe we've mishandled your personal information, you can lodge a complaint with us or directly with the Office of the Australian Information Commissioner.

How to Complain:

First, contact us at help@kravello.com with details of your concern. If unsatisfied with our response, contact OAIC at 1300 363 992 or visit oaic.gov.au to lodge a formal complaint.

4

Information Security Measures

We take information security seriously and implement multiple layers of protection to safeguard your business and personal data from unauthorized access, use, or disclosure.

Encryption and Secure Transmission

All data transmission uses TLS 1.3 encryption. Personal and financial information is encrypted both in transit and at rest using AES-256 encryption standards.

Access Control and Authentication

Only authorized personnel can access your information. We use multi-factor authentication, role-based access controls, and regular access reviews to prevent unauthorized access.

Regular Security Audits

Our systems undergo quarterly security assessments and annual penetration testing by independent security firms to identify and address potential vulnerabilities.

Secure Data Storage

Information is stored on Australian-based servers with physical security measures, environmental controls, and redundant backup systems to protect against data loss.

5

Information Sharing and Third Parties

We don't sell your information to anyone. However, we work with trusted partners to deliver our services effectively. Here's exactly who might see your information and why.

Technology service providers help us maintain our systems and deliver services. This includes cloud hosting providers (Australian-based), email service providers, and analytics platforms. These partners can only use your information to provide services to us and must meet our security standards.

Professional advisors including lawyers, accountants, and business consultants may access your information when providing services related to your business processes. All professional advisors are bound by confidentiality obligations.

Government agencies may receive your information if required by Australian law, including tax authorities, financial intelligence agencies, or other regulatory bodies. We'll notify you of such disclosures unless prohibited by law.

Business transfer situations where kravello is acquired, merges with another company, or sells assets may involve transferring your information. You'll be notified of any such changes and your rights regarding your information.

6

Data Retention and Deletion

We keep your information only as long as necessary for business purposes and legal requirements. Different types of information have different retention periods based on their purpose and legal obligations.

3Y

Business Process Records

Consultation records, analysis reports, and recommendations are kept for 3 years after the last service delivery to support ongoing business relationships and potential follow-up services.

7Y

Financial Information

Financial data and business records are retained for 7 years to comply with Australian Taxation Office requirements and other financial regulations.

1Y

Marketing Communications

Email lists and communication preferences are kept for 1 year after last contact, unless you subscribe to ongoing communications or request longer retention.

6M

Website Analytics

Technical information like IP addresses, browser data, and website usage patterns are automatically deleted after 6 months unless required for security investigations.

When retention periods expire, we securely delete or anonymize your information using industry-standard data destruction methods. For digital records, this includes cryptographic erasure and multiple overwrite cycles. Physical documents are shredded and disposed of through certified destruction services.

7

International Data Transfers

We primarily store and process your information within Australia. However, some trusted international service providers may access your data to support our operations.

Cloud backup services may replicate encrypted data to secure facilities in New Zealand and Singapore for disaster recovery purposes. These locations are chosen for their strong privacy laws and data protection standards comparable to Australia.

Software vendors based in the United States and European Union provide specialized tools for financial analysis and business process improvement. These vendors must comply with strict contractual obligations regarding data protection and can only process data as instructed.

Before transferring any information internationally, we ensure adequate protection through approved mechanisms such as standard contractual clauses, adequacy decisions, or binding corporate rules. We also conduct due diligence on international partners' security and privacy practices.

You have the right to request details about international transfers affecting your information and can object to transfers that don't meet Australian privacy standards.

8

Cookies and Website Technology

Our website uses cookies and similar technologies to improve your experience and understand how our services are used. We're transparent about these technologies and give you control over them.

Essential cookies enable basic website functions like secure login, form submissions, and remembering your preferences during your visit. These cookies are necessary for the website to work properly and can't be disabled.

Analytics cookies help us understand which pages are most useful, how long visitors spend reading content, and where people encounter problems. This information helps us improve our website and services. We use Google Analytics with IP anonymization enabled.

Performance cookies remember your choices like preferred contact methods or business categories, making return visits more efficient. These cookies don't track your activity on other websites.

You can control cookies through your browser settings. Disabling non-essential cookies won't prevent you from using our website, but some features may work differently. Most browsers allow you to view, delete, and block cookies from specific websites.

We don't use cookies for advertising or tracking across multiple websites. Third-party content like embedded videos or maps may set their own cookies according to their privacy policies.

9

Changes to This Privacy Policy

We update this privacy policy when our practices change or when required by law. Significant changes will be communicated directly to you, while minor clarifications may be updated without individual notice.

When substantial changes affect how we collect, use, or share your information, we'll email you at least 30 days before the changes take effect. The email will explain what's changing and how it might affect you.

For minor updates like clarifying existing practices or updating contact information, we'll post the revised policy on our website with a new "last updated" date. We recommend checking this page periodically to stay informed about our current practices.

If you don't agree with policy changes, you can request deletion of your information or cease using our services. Continuing to use our services after changes take effect indicates acceptance of the updated policy.

Previous versions of this privacy policy are available upon request if you need to review what practices were in place when your information was collected.

Privacy Questions or Concerns?

We're committed to protecting your privacy and addressing any questions about how your information is handled. Our privacy officer is available to help with requests, concerns, or complaints.

Email
help@kravello.com
Phone
+61411111435
Post
6 Dairy Maple Tce
Mandurah WA 6210
Australia