GDPR Rights and Data Protection
Last Updated: January 1, 2025
At stellarreefs.com, we are committed to protecting your personal data and respecting your privacy rights under the General Data Protection Regulation (GDPR) and other applicable data protection laws. This page explains your rights and how to exercise them.
1. Data Controller Information
The data controller responsible for your personal information is:
- Company Name: stellarreefs.com
- Address: 153 Riverside Drive, Brisbane, QLD 4000, Australia
- Email: support@stellarreefs.com
- Data Protection Contact: contact@stellarreefs.com
2. Your GDPR Rights
Under GDPR, you have the following rights regarding your personal data:
2.1 Right to Access
You have the right to request confirmation of whether we process your personal data and to receive a copy of that data. This includes:
- What personal data we hold about you
- Why we are processing it
- Who we share it with
- How long we will keep it
- Where we obtained the data
- Whether automated decision-making is used
How to exercise: Email support@stellarreefs.com with the subject "Data Access Request" and provide proof of identity. We will respond within 30 days.
2.2 Right to Rectification
You have the right to request correction of inaccurate or incomplete personal data. We will update your information and notify any third parties with whom we shared the data.
How to exercise: Email support@stellarreefs.com with the subject "Data Correction Request" and specify what information needs to be corrected.
2.3 Right to Erasure (Right to be Forgotten)
You have the right to request deletion of your personal data in certain circumstances:
- The data is no longer needed for its original purpose
- You withdraw consent and there is no other legal basis for processing
- You object to processing and there are no overriding legitimate grounds
- The data was unlawfully processed
- Legal obligations require deletion
How to exercise: Email support@stellarreefs.com with the subject "Data Deletion Request" and explain your reason for the request.
Note: We may need to retain certain data to comply with legal obligations or to establish, exercise, or defend legal claims.
2.4 Right to Restriction of Processing
You have the right to request that we limit how we use your personal data in certain situations:
- You contest the accuracy of the data
- Processing is unlawful but you don't want erasure
- We no longer need the data but you need it for legal claims
- You have objected to processing pending verification of our legitimate grounds
How to exercise: Email support@stellarreefs.com with the subject "Restriction Request" and explain your circumstances.
2.5 Right to Data Portability
You have the right to receive your personal data in a structured, commonly used, and machine-readable format. You can also request that we transfer this data directly to another controller where technically feasible.
This right applies when:
- Processing is based on your consent or contract
- Processing is carried out by automated means
How to exercise: Email support@stellarreefs.com with the subject "Data Portability Request" and specify the format you prefer (JSON, CSV, XML).
2.6 Right to Object
You have the right to object to processing of your personal data in certain circumstances:
- Direct Marketing: You can object at any time to use of your data for marketing purposes
- Legitimate Interests: You can object when processing is based on legitimate interests
- Research/Statistics: You can object to processing for research or statistical purposes
How to exercise: Email support@stellarreefs.com with the subject "Objection to Processing" and explain your reasons.
2.7 Rights Related to Automated Decision-Making
You have the right not to be subject to decisions based solely on automated processing, including profiling, that produces legal effects or similarly significant effects on you.
If we use automated decision-making, we will inform you and provide an opportunity to request human intervention.
2.8 Right to Withdraw Consent
When processing is based on your consent, you have the right to withdraw that consent at any time. Withdrawal does not affect the lawfulness of processing before withdrawal.
How to exercise: Email support@stellarreefs.com with the subject "Withdraw Consent" or use the unsubscribe link in our emails.
3. How to Exercise Your Rights
3.1 Making a Request
To exercise any of your rights, contact us at:
- Primary Email: support@stellarreefs.com
- Alternative Email: info@stellarreefs.com
- Business Email: contact@stellarreefs.com
Include the following in your request:
- Your full name
- Email address associated with your account
- Clear description of your request
- Proof of identity (if required)
3.2 Verification Process
To protect your privacy, we may need to verify your identity before processing requests. We may ask for:
- Government-issued ID
- Proof of address
- Account verification details
3.3 Response Time
We will respond to your request within 30 days. If your request is complex or we receive multiple requests, we may extend this period by an additional 60 days. We will inform you of any extension and explain the reasons.
3.4 Free of Charge
Exercising your rights is generally free of charge. However, we may charge a reasonable fee or refuse to act on a request if it is clearly unfounded, excessive, or repetitive.
4. Cookie Management
4.1 Cookie Preferences
You can manage your cookie preferences at any time through our cookie consent banner or by adjusting your browser settings.
4.2 Types of Cookies We Use
- Essential Cookies: Required for website functionality (cannot be disabled)
- Analytics Cookies: Help us understand website usage
- Marketing Cookies: Used for targeted advertising
4.3 How to Disable Cookies
You can disable cookies through your browser settings:
- Chrome: Settings > Privacy and Security > Cookies
- Firefox: Options > Privacy & Security > Cookies
- Safari: Preferences > Privacy > Cookies
- Edge: Settings > Privacy > Cookies
5. Data We Collect
5.1 Personal Data Categories
We may collect the following categories of personal data:
- Identity Data: Name, username, date of birth
- Contact Data: Email address, phone number
- Technical Data: IP address, browser type, device information
- Usage Data: How you interact with our services
- Marketing Data: Your preferences for receiving communications
- Transaction Data: Purchase history, payment information
5.2 Legal Basis for Processing
We process your data based on:
- Consent: You have given clear consent
- Contract: Processing is necessary to fulfill our contract with you
- Legal Obligation: We must comply with the law
- Legitimate Interests: Processing is in our legitimate business interests
6. Data Sharing and Transfers
6.1 Third-Party Recipients
We may share your data with:
- Service providers who help operate our website
- Payment processors for transactions
- Analytics providers to understand usage
- Marketing partners (with your consent)
- Legal authorities when required by law
6.2 International Transfers
Your data may be transferred outside the European Economic Area (EEA). When we transfer data internationally, we ensure appropriate safeguards are in place:
- Standard Contractual Clauses approved by the European Commission
- Adequacy decisions by the European Commission
- Binding Corporate Rules
- Privacy Shield certification (where applicable)
7. Data Retention
We retain your personal data only as long as necessary for the purposes outlined in our Privacy Policy:
- Account Data: While your account is active and 2 years after closure
- Transaction Records: 7 years for tax and accounting purposes
- Marketing Data: Until you opt out or 3 years of inactivity
- Website Logs: 6-12 months
- Cookie Data: 1-26 months depending on type
8. Data Security
We implement appropriate technical and organizational measures to protect your data:
- Encryption of data in transit (TLS/SSL)
- Encryption of data at rest
- Access controls and authentication
- Regular security audits
- Employee training on data protection
- Incident response procedures
9. Data Breach Notification
In the event of a data breach that poses a risk to your rights and freedoms:
- We will notify the relevant supervisory authority within 72 hours
- We will notify affected individuals without undue delay
- We will provide information about the breach and steps taken
- We will offer guidance on protecting yourself
10. Children's Privacy
We take extra care with children's data:
- Our services are not intended for children under 12
- Users aged 12-16 require parental consent in some jurisdictions
- We do not knowingly collect data from children without proper consent
- Parents can request deletion of their child's data
11. Supervisory Authority
You have the right to lodge a complaint with a supervisory authority if you believe we have violated your data protection rights.
11.1 EU Data Protection Authorities
For users in the EU, you can contact your local data protection authority. A list is available at: https://edpb.europa.eu
11.2 Australian Information Commissioner
For users in Australia:
- Office: Office of the Australian Information Commissioner (OAIC)
- Website: www.oaic.gov.au
- Phone: 1300 363 992
12. Updates to This Page
We may update this GDPR Rights page from time to time. We will notify you of significant changes via email or prominent notice on our website. Please review this page periodically for updates.
13. Contact Us
If you have questions about your GDPR rights or how we handle your data, please contact us:
- Data Protection Officer: support@stellarreefs.com
- General Inquiries: info@stellarreefs.com
- Business Contact: contact@stellarreefs.com
- Address: 153 Riverside Drive, Brisbane, QLD 4000, Australia
14. Additional Resources
For more information about data protection:
15. Your Commitment
We are committed to transparency, fairness, and accountability in all our data processing activities. We respect your privacy rights and will work diligently to address any concerns you may have.
If you believe we are not meeting our obligations, please contact us first so we can resolve the issue. We take all privacy concerns seriously and will investigate thoroughly.