Privacy Policy

← Sign in

AristaTech · Last updated 10 June 2026

Draft for review. A starting point only — have it reviewed by your legal adviser, and complete the items marked [TBC], before relying on it.

This policy explains how AristaTech (ABN [TBC], [registered address TBC]) handles personal information in its internal CRM, consistent with the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs).

1. Information we collect

The CRM holds business-contact details of our clients and prospects (names, roles, email addresses, phone numbers), organisation details (company name, ABN, addresses) and commercial information (opportunities, quotes, proposals and activity notes). For our own staff we collect a name and email address via Google sign-in. We do not intentionally collect sensitive information.

2. How we collect it

We collect personal information directly from you or your organisation during the sales and onboarding process, and from your interactions with us. Product and pricing data sourced from our distributors is not personal information.

3. Why we use it

To quote and deliver managed IT and cybersecurity services, prepare proposals, manage our relationship with you, and meet our legal and record-keeping obligations.

4. Disclosure & service providers

We do not sell personal information. We use trusted service providers to operate the CRM: Supabase (database, Sydney region), Vercel (hosting), Google (staff authentication), Resend (email delivery) and Sentry (error monitoring, with identifiers scrubbed). Distributor pricing feeds (e.g. Leader Systems) receive no client personal information. Some providers may process data outside Australia; we take reasonable steps to ensure it is handled consistently with the APPs (APP 8).

5. Storage & security

Data is stored in Australia (Supabase, ap-southeast-2 / Sydney) where practicable, and protected by access controls, database row-level security, encryption in transit, and access restricted to authorised Arista Technologies staff using approved company accounts.

6. Retention

We keep personal information while we have an active relationship with you and for as long as needed for our legitimate business and legal obligations, after which we de-identify or securely destroy it.

7. Access, correction & erasure

You may request access to, correction of, or erasure of your personal information by contacting us at privacy@aristatech.com.au [TBC]. We will respond within a reasonable period and may need to verify your identity first.

8. Complaints

If you have a privacy concern, contact us first at privacy@aristatech.com.au [TBC]. If you are not satisfied with our response, you may contact the Office of the Australian Information Commissioner (OAIC) at oaic.gov.au.

9. Cookies

The CRM uses only essential cookies needed to keep you signed in. It does not use third-party advertising or analytics cookies.

10. Changes to this policy

We may update this policy from time to time; the “last updated” date above reflects the current version.