We collect only what we need, store it securely, never sell it, and give you full control over your data. We comply with the Australian Privacy Act 1988 and the Australian Privacy Principles (APPs).
This policy applies to personal information collected via our website at rabbiico.com and through our service delivery process.
1 Introduction
rabbiico ("we", "our", "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your personal information when you visit our website at https://rabbiico.com or engage our services.
We are bound by the Australian Privacy Principles (APPs) contained in the Privacy Act 1988 (Cth). This policy is reviewed and updated periodically to reflect changes in our practices or applicable law.
By using our website or services, you consent to the collection and use of your personal information as described in this policy. If you do not agree, please discontinue use of our website and services.
2 Information We Collect
2.1 Information You Provide Directly
- Contact information: Full name, email address, mobile number, company name
- Service enquiry details: The service you are enquiring about, your message, and your website URL (if provided)
- Business information: Details about your business shared during consultations or service delivery
2.2 Information Collected Automatically
- Usage data: Pages visited, time spent on pages, referring URLs, and navigation paths
- Device information: Browser type, operating system, and screen resolution
- Network information: IP address and general geographic location (country/city level only)
2.3 Sensitive Information
We do not intentionally collect sensitive information (as defined under the Privacy Act) such as health data, financial account numbers, or government identifiers. If you voluntarily share such information, we will handle it with the highest level of care.
3 How We Use Your Information
We use your personal information only for the purposes for which it was collected or directly related purposes, including:
- Responding to your enquiries and delivering requested services
- Delivering the complimentary AI Readiness Audit
- Communicating with you about your project or service engagement
- Sending service-related updates and notifications (not marketing without consent)
- Improving our website, services, and customer experience
- Complying with our legal obligations under Australian law
- Protecting the security and integrity of our website and systems
No unsolicited marketing. We will not send you promotional emails without your explicit consent. You can unsubscribe from any communications at any time by contacting us or using the unsubscribe link in any email.
4 How We Protect Your Information
As a cybersecurity consultancy, we take data protection extremely seriously. We apply security controls that exceed standard industry practice:
- HTTPS encryption with HSTS for all website communications
- Content Security Policy (CSP) and XSS protection headers
- Microsoft 365 Exchange Online for secure email (DKIM, SPF, DMARC enforced)
- Secure form handling with honeypot spam protection via Netlify
- No third-party tracking pixels or advertising cookies
- Regular internal security reviews of our own infrastructure
- Access controls ensuring personal data is accessible only to authorised personnel
Despite our best efforts, no data transmission over the internet is 100% secure. If you believe your data has been compromised, please contact us immediately and we will respond as a priority.
5 Sharing Your Information
We do not sell, trade, rent, or share your personal information with third parties for their own marketing purposes. Ever.
We may share your information only in the following strictly limited circumstances:
- Service delivery: With trusted sub-processors who assist us in delivering services (e.g., Netlify for form processing, Microsoft 365 for email). These providers are bound by strict data processing agreements.
- Legal obligations: When required by applicable Australian law, court order, or government authority request.
- Protection of rights: To protect the rights, property, or safety of rabbiico, our clients, or the public where permitted by law.
- Business transfers: In the event of a merger, acquisition, or sale of assets, your information would transfer to the successor entity subject to the same privacy protections.
6 Cookies & Tracking
Our website uses a minimal cookie approach:
- Essential cookies only: Required for basic website functionality. These cannot be disabled.
- No advertising cookies: We do not use Google Ads, Facebook Pixel, or any interest-based advertising tracking.
- No analytics trackers: We do not currently use Google Analytics or similar tracking services.
- No fingerprinting: We do not use browser fingerprinting techniques.
Google Fonts is loaded from Google's CDN. This involves a DNS lookup and connection to Google's servers. If you prefer maximum privacy, you can block font CDN requests via your browser or network settings — our site will fall back to system fonts.
7 Third-Party Services
Our website and operations use the following third-party services. Each is subject to their own privacy policies:
- Google Fonts (Google LLC): Typography delivery. Your browser connects to Google servers to download fonts. Google Privacy Policy ↗
- Netlify (Netlify, Inc.): Website hosting and contact form processing. Form submissions are stored by Netlify and forwarded to us. Netlify Privacy Policy ↗
- Microsoft 365 (Microsoft Corp.): Email communication. Your email address and messages are processed via Microsoft Exchange Online. Microsoft Privacy Statement ↗
8 Data Retention
We retain personal information only for as long as necessary to fulfil the purpose for which it was collected, or as required by applicable law:
- Contact form enquiries: Retained for the duration of any resulting business relationship, plus up to 3 years thereafter for record-keeping purposes.
- Client project data: Retained for the duration of the engagement, plus up to 7 years as required by Australian tax and business laws.
- Website usage data: Not retained beyond the current session (no persistent analytics platform is used).
When we no longer need your personal information, we will securely delete or de-identify it.
9 Your Rights
Under Australian privacy law, you have the following rights regarding your personal information:
Request a copy of the personal information we hold about you.
Request correction of any inaccurate or outdated information.
Request deletion of your data, subject to our legal retention obligations.
Withdraw consent for marketing communications at any time.
Request your data in a portable format where technically feasible.
Lodge a complaint with the OAIC if you believe we've breached your privacy.
To exercise any of these rights, contact us via our website. We will respond within 30 days. For unresolved complaints, you may contact the Office of the Australian Information Commissioner (OAIC) ↗.
10 Children's Privacy
Our website and services are intended for individuals aged 18 and over. We do not knowingly collect personal information from children under 18 years of age.
If you believe we have inadvertently collected information from a minor, please contact us immediately and we will delete it promptly.
11 International Data Transfers
Our website is hosted on Netlify's global infrastructure and email is processed via Microsoft's global Exchange Online network. This means your information may be processed on servers located outside Australia, including in the United States.
- All international transfers are made to service providers that meet appropriate data protection standards.
- We ensure contractual protections are in place with all third-party processors handling Australian personal data.
- Transfers are made in compliance with APP 8 (cross-border disclosure of personal information).
12 Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, or applicable law. When we make material changes we will update the "Last updated" date at the top of this page.
We encourage you to review this policy periodically. Continued use of our website or services after changes are posted constitutes your acknowledgement of the updated policy.
13 Contact Us
For privacy enquiries, access requests, or complaints, please contact us:
rabbiico — Privacy Officer
Contact us via: rabbiico.com/#contact
We aim to respond to all privacy enquiries within 30 days.
If you are not satisfied with our response, you may lodge a complaint with the Office of the Australian Information Commissioner (OAIC) at oaic.gov.au or by calling 1300 363 992.