Privacy Policy
MLtech Privacy Policy
Updated: 31/10/2025
ABN: 12 720 048 812
Address: 2/4 Cape Place, Cherrybrook NSW, 2126, Australia
Email: support@mltech.au
1. INTRODUCTION
MLtech is committed to protecting your privacy and personal information. This Privacy Policy explains how we collect, use, store, and protect your personal information in accordance with the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs).
Who We Are
MLtech provides IT consulting services, technical support, and online subscription services including computing resources and game server hosting to customers in Australia.
Our Privacy Commitment
We believe in:
- Transparency - Being clear about what data we collect and why
- Minimal collection - Only collecting data we actually need
- Your control - Giving you control over your information
- Security - Protecting your data with industry best practices
- No selling - We will never sell or rent your personal information
2. WHAT INFORMATION WE COLLECT
2.1 Information You Provide to Us
Account Information
- Full name
- Email address
- Phone number
- Business details (for business customers): business name, ABN, business address
- Billing address
- Payment information (processed securely by our payment provider)
Communications
- Support tickets and help requests
- Email correspondence with our team
- Chat messages with our support staff
- Feedback and survey responses
Parental Consent Information
- For customers under 18: parent or guardian contact details and consent records
2.2 Information We Collect Automatically
Usage Data
- Services you use and how you use them
- Resource consumption (CPU, RAM, storage, bandwidth usage)
- Login times and frequency
- Feature usage and preferences
- Server configurations and settings
Technical Data
- IP addresses
- Browser type and version
- Device information
- Operating system
- Referral URLs
- Pages visited on our website
- Date and time of visits
Cookies and Similar Technologies (See Section 8)
We use cookies and similar tracking technologies for:
- Keeping you logged in
- Remembering your preferences
- Analysing how our website and services are used
- Improving service performance and user experience
You can control cookies through your browser settings, but this may affect functionality.
Server Logs
- System logs related to service provision and troubleshooting
- Security logs for protecting our systems and yours
- Performance metrics
2.3 Information We Do NOT Collect
We do not collect:
- Sensitive information (health, religion, political views) unless you voluntarily provide it in communications
- Content of your files or data stored in your services (unless required for technical support with your permission)
- Information from third parties about you (except payment confirmation from our payment processor)
3. HOW WE USE YOUR INFORMATION
We use your personal information only for the following purposes:
3.1 Providing Services
- Creating and managing your account
- Processing payments and sending invoices
- Delivering the services you purchased
- Providing technical support
- Troubleshooting service issues
- Monitoring service performance and uptime
3.2 Communication
- Responding to your inquiries and support requests
- Sending service-related notifications (outages, maintenance, security alerts)
- Sending account-related messages (payment confirmations, subscription renewals)
- Updating you about changes to our services or terms
Important: We do NOT send marketing emails. All communications are service-related only.
3.3 Security and Fraud Prevention
- Protecting our systems from security threats
- Detecting and preventing fraud or abuse
- Investigating security incidents
- Complying with our legal obligations
3.4 Service Improvement
- Analysing usage patterns to improve services
- Understanding how customers use our services
- Developing new features and services
- Ensuring optimal performance
3.5 Legal Compliance
- Complying with Australian laws and regulations
- Responding to lawful requests from authorities
- Enforcing our terms and conditions
- Protecting our rights and property
- Maintaining required records for tax and accounting purposes
4. HOW WE SHARE YOUR INFORMATION
4.1 Our Commitment: No Selling or Renting
We will never sell, rent, or trade your personal information to third parties.
4.2 Third-Party Service Providers
We share limited information only with trusted service providers who help us operate our business:
Payment Processing
- Stripe - Processes credit card and payment transactions
- Stripe's privacy policy: https://stripe.com/au/privacy
- We do not store full credit card numbers on our systems
Business Management
- Odoo - Our business management and CRM system
- Odoo's privacy policy: https://www.odoo.com/privacy
- Used for account management, invoicing, and support ticket management
Important: These providers:
- Are contractually required to protect your information
- Can only use your data for the specific services they provide to us
- Cannot use your data for their own purposes
- Must comply with Australian privacy standards
4.3 Third-Party Sharing Authorised by You
If you explicitly authorise us to share your information with a specific third party (for example, for integration with another service you use), we will only share what you've authorised.
4.4 Legal Requirements
We may disclose your information if:
- Required by law or court order
- Necessary to respond to lawful requests from government authorities
- Required to protect our rights, property, or safety, or that of our customers or the public
- Necessary to detect, prevent, or investigate fraud, security issues, or illegal activity
We will notify you of such disclosures unless prohibited by law.
4.5 Business Transfers
If MLtech is acquired, merged, or sells assets, your information may be transferred to the new owner. We will notify you before your information is transferred and becomes subject to a different privacy policy.
5. DATA STORAGE AND SECURITY
5.1 Where We Store Data
Your data is primarily stored in Australian data centres. Some third-party services (Stripe, Odoo) may process or store data overseas. These providers maintain security standards equivalent to Australian requirements.
5.2 How We Protect Your Data
Encryption
- Data in transit (between your device and our servers) is encrypted using TLS/SSL
- Data at rest encryption for cloud services is configurable by you based on your requirements
- Business customer data is protected according to industry best practices
Access Controls
- We implement the Australian Government's Essential Eight security strategies
- Multi-factor authentication for our staff
- Role-based access control (staff only access data necessary for their role)
- Regular access reviews
- Secure password policies
Security Practices
- Regular security monitoring
- Incident response procedures
- Secure development practices
- Regular security updates and patches
- Employee security training
Physical Security
- Datacenters have physical access controls
- 24/7 security monitoring
- Redundant systems and backups
5.3 Your Responsibility
While we implement strong security measures, you are responsible for:
- Keeping your account password secure
- Not sharing your login credentials
- Using strong passwords
- Configuring encryption settings for your services (where applicable)
- Maintaining backups of your data
- Reporting any security concerns to us immediately
5.4 Data Breaches
If we become aware of a data breach that is likely to result in serious harm to you, we will:
- Notify you as soon as practicable
- Notify the Office of the Australian Information Commissioner (OAIC) if required
- Take immediate steps to contain and remediate the breach
- Provide you with information about what happened and what you should do
6. HOW LONG WE KEEP YOUR DATA
6.1 Retention Periods
Active Accounts
- We keep your data while your account is active and for a reasonable period afterward
After Account Closure
- Most data is deleted within 30 days of account closure
- Some data is retained for 2 years for business and operational purposes
Legal Requirements
- Certain financial and tax records are retained for 7 years as required by Australian law
- Data related to legal matters is retained as legally required
6.2 Backups
Data in backups may persist for up to 90 days after deletion from active systems, after which backup data is permanently deleted.
6.3 Data Deletion
When we delete data, it is permanently removed from our systems and cannot be recovered (except from backups during the backup retention period).
7. YOUR RIGHTS AND CHOICES
Under the Privacy Act 1988 and Australian Privacy Principles, you have the following rights:
7.1 Access Your Information
You can:
- Log in to your account to view most of your information
- Request a copy of all personal information we hold about you
- We will provide this within 30 days, free of charge (unless the request is excessive)
7.2 Correct Your Information
You can:
- Update your account information directly in your account settings
- Contact us to correct inaccurate or incomplete information
- We will correct information within a reasonable time frame
7.3 Delete Your Information
You can:
- Request deletion of your account and associated data
- We will delete your data within 30 days (except data we must retain by law)
- You can download your data before requesting deletion
7.4 Object to Processing
You can object to how we use your information, but this may affect our ability to provide services to you.
7.5 Withdraw Consent
For processing based on consent (such as parental consent for minors), you can withdraw consent at any time. This doesn't affect processing that occurred before withdrawal.
7.6 Complain
If you believe we have breached the Privacy Act or your privacy rights, you can:
- Contact us first using the details in Section 12
Lodge a complaint with the Office of the Australian Information Commissioner (OAIC):
- Website: www.oaic.gov.au
- Phone: 1300 363 992
- Email: enquiries@oaic.gov.au
7.7 How to Exercise Your Rights
To exercise any of these rights, contact us at:
- Email: support@mltech.au
- Include your full name, account email, and specific request
- We may need to verify your identity before processing your request
8. COOKIES AND TRACKING
8.1 What Are Cookies
Cookies are small text files stored on your device when you visit our website. They help us provide better service and understand how our website is used.
8.2 Types of Cookies We Use
Essential Cookies (Required)
- Keep you logged in
- Remember your session
- Enable core functionality
- These cannot be disabled without affecting service
Functional Cookies (Optional)
- Remember your preferences
- Improve user experience
- Store your settings
Analytics Cookies (Optional)
- Understand how visitors use our website
- Identify popular features
- Improve our services
- These are anonymised where possible
8.3 Managing Cookies
You can control cookies through:
- Your browser settings (most browsers allow you to refuse cookies)
- Our cookie consent banner (where provided)
Note: Disabling essential cookies will prevent you from using certain features.
8.4 Do Not Track
Some browsers have "Do Not Track" features. We respect these signals where technically feasible.
9. CHILDREN'S PRIVACY
9.1 Age Requirements
Our services are generally intended for users 18 years and older. However, we recognise that some younger users, particularly for game server services, may wish to use our services.
9.2 Parental Consent
For Users Under 18:
- Parental or guardian consent is required
- We collect parent/guardian contact information to verify consent
- Parents/guardians have the right to review and delete their child's information
- Parents/guardians can withdraw consent at any time
9.3 Parents' Rights
If your child is using our services, you can:
- Request access to your child's information
- Request correction or deletion of information
- Withdraw consent (this will result in account closure)
- Contact us with any concerns about your child's privacy
9.4 How We Protect Children
- We do not knowingly collect more information from children than necessary
- We do not knowingly share children's information with third parties (except as described in Section 4)
- We apply the same security standards to all users regardless of age
10. INTERNATIONAL DATA TRANSFERS
10.1 Overseas Processing
Some of our service providers (Stripe, Odoo) may process or store data outside Australia. When this occurs:
- We ensure providers maintain privacy standards equivalent to Australian requirements
- Data is protected by contractual safeguards
- We only transfer data that is necessary for service provision
10.2 Your Consent
By using our services, you consent to these necessary international transfers for service provision.
11. CHANGES TO THIS PRIVACY POLICY
11.1 Updates
We may update this Privacy Policy from time to time to reflect:
- Changes in our practices
- Changes in law
- New features or services
- Customer feedback
11.2 Notification
If we make material changes:
- We will update the "Last Updated" date at the top of this policy
- We will notify you by email if the changes significantly affect your rights
- We will post the updated policy on our website
- Your continued use after changes means you accept the updated policy
12. CONTACT US
12.1 Privacy Questions
For any questions about this Privacy Policy or our privacy practices:
Email: support@mltech.au
12.2 Data Requests
To exercise your privacy rights (access, correction, deletion):
Email: support@mltech.au
Please allow up to 30 days for us to respond to your request.
12.3 Security Issues
To report a security concern:
Email: macauley.lim@mltech.au
We take security reports seriously and will respond promptly.
12.4 General Inquiries
For general customer service:
Email: support@mltech.au
13. DEFINITIONS
Personal Information: Information or an opinion about an identified individual, or an individual who is reasonably identifiable, whether the information or opinion is true or not, and whether recorded in a material form or not.
Australian Privacy Principles (APPs): The 13 principles in the Privacy Act 1988 that regulate the handling of personal information.
Sensitive Information: A subset of personal information that includes information about health, racial or ethnic origin, political opinions, religious beliefs, sexual orientation, criminal record, and other categories defined in the Privacy Act.
Data Breach: Unauthorised access to or disclosure of personal information, or loss of personal information.
14. ACKNOWLEDGEMENT
By using MLtech services, you acknowledge that:
- You have read and understood this Privacy Policy
- You consent to the collection, use, and disclosure of your personal information as described
- If providing information about others (such as parental consent), you have authority to do so
- If under 18, your parent or guardian has consented to your use of services