Effective Date: September 22, 2026
Summit Vertex is committed to protecting the privacy and security of your personal data in accordance with the General Data Protection Regulation (GDPR) and applicable Australian privacy laws.
Summit Vertex acts as the data controller for personal information collected through our website and services. Our contact details are:
Email: [email protected]
Address: 127 Collins Street, Melbourne, Victoria 3000, Australia
We process your personal data under the following lawful bases:
Under the GDPR, you have the following rights:
You have the right to request copies of your personal data. We may charge a reasonable fee if your request is clearly unfounded, repetitive, or excessive.
You have the right to request correction of any information you believe is inaccurate or completion of information you believe is incomplete.
You have the right to request erasure of your personal data under certain conditions, including when the data is no longer necessary for the purposes for which it was collected.
You have the right to request restriction of processing your personal data under certain conditions.
You have the right to request transfer of your data to another organization or directly to you under certain conditions.
You have the right to object to processing of your personal data under certain conditions, particularly for direct marketing purposes.
You have the right not to be subject to decisions based solely on automated processing, including profiling, which produces legal effects concerning you or similarly significantly affects you.
To exercise any of these rights, please contact us at [email protected]. We will respond to your request within one month, although this may be extended by two further months in complex cases.
You will not have to pay a fee to access your personal data or to exercise any of your other rights. However, we may charge a reasonable fee if your request is clearly unfounded, repetitive, or excessive.
We retain personal data only for as long as necessary to fulfill the purposes we collected it for, including satisfying any legal, accounting, or reporting requirements.
When determining appropriate retention periods, we consider the amount, nature, and sensitivity of the personal data, the potential risk of harm from unauthorized use or disclosure, the purposes for which we process the data, and applicable legal requirements.
We may transfer your personal data outside the European Economic Area. When we do so, we ensure appropriate safeguards are in place to protect your data in accordance with GDPR requirements.
In the event of a data breach that is likely to result in a high risk to your rights and freedoms, we will notify you without undue delay, and where feasible, within 72 hours of becoming aware of the breach.
You have the right to lodge a complaint with a supervisory authority if you believe our processing of your personal data violates the GDPR. In Australia, you may contact the Office of the Australian Information Commissioner.
We may update this GDPR compliance statement from time to time. We will notify you of any significant changes by posting the new statement on this page and updating the effective date.
If you have questions about our GDPR compliance or wish to exercise your rights, please contact us at [email protected].