About GDPR

The General Data Protection Regulation (GDPR) is a European Union regulation that governs data protection and privacy. Although dark-comet is based in Australia, we are committed to upholding the principles of GDPR for all our users, regardless of their location.

This page outlines how we comply with GDPR requirements and details your rights as a data subject.

Our Commitment

dark-comet is committed to:

  • Processing personal data lawfully, fairly, and transparently
  • Collecting data for specified, explicit, and legitimate purposes only
  • Ensuring data is adequate, relevant, and limited to what is necessary
  • Keeping data accurate and up to date
  • Storing data only for as long as necessary
  • Processing data securely with appropriate technical measures

Lawful Basis for Processing

We process personal data on the following legal bases:

Consent

When you submit an enquiry form or contact us directly, you consent to us processing your data to respond to your request. You may withdraw consent at any time.

Contract Performance

When you engage our services, we process your data as necessary to fulfil our contractual obligations to you.

Legitimate Interests

We may process data for our legitimate business interests, such as improving our services and marketing, where this does not override your fundamental rights and freedoms.

Legal Obligation

We may process data when required by law, such as for tax and accounting purposes.

Your Rights Under GDPR

If you are located in the European Economic Area (EEA), you have the following rights:

Right to Access

You have the right to request a copy of the personal data we hold about you. We will provide this information within one month of your request.

Right to Rectification

You have the right to request that we correct any inaccurate personal data or complete any incomplete data we hold about you.

Right to Erasure

You have the right to request that we delete your personal data in certain circumstances, such as when the data is no longer necessary for its original purpose or you withdraw consent.

Right to Restrict Processing

You have the right to request that we limit how we use your data in certain circumstances, such as while we verify its accuracy.

Right to Data Portability

You have the right to receive your personal data in a structured, commonly used, machine-readable format and to transmit it to another controller.

Right to Object

You have the right to object to processing based on legitimate interests or for direct marketing purposes.

Rights Related to Automated Decision Making

You have the right not to be subject to decisions based solely on automated processing, including profiling, that produce legal effects. We do not currently use automated decision-making.

International Data Transfers

As an Australian company, data transferred outside the EEA is protected by:

  • Standard contractual clauses approved by the European Commission
  • Ensuring recipients are in countries with adequate data protection
  • Other appropriate safeguards as required by GDPR

Data Protection Officer

While we are not required to appoint a Data Protection Officer, we have designated a privacy contact to handle all data protection matters:

Email: [email protected]

Data Breach Notification

In the event of a personal data breach that poses a risk to your rights and freedoms, we will notify the relevant supervisory authority within 72 hours. If the breach is likely to result in a high risk to your rights, we will also notify you directly.

Exercising Your Rights

To exercise any of your rights under GDPR, please contact us with:

  • A clear description of the right you wish to exercise
  • Sufficient information to verify your identity
  • Any additional information to help us locate your data

We will respond to your request within one month. In complex cases, we may extend this by a further two months, in which case we will inform you.

Complaints

If you are not satisfied with how we handle your data or your request, you have the right to lodge a complaint with a supervisory authority. For EEA residents, this is typically the data protection authority in your country of residence.

Contact Us

For any GDPR-related enquiries, please contact us:

Email: [email protected]
Address: Level 3, 42 Oxford Street, Surry Hills, Sydney NSW 2010