Privacy Policy
How we use your personal information
Last updated: January 2026
Vermilion Pinstripes (“we”, “us”, “our”) is committed to protecting the privacy of individuals and managing personal information in an open and transparent way.
This Privacy Policy explains how we collect, use, disclose, store, and safeguard personal information in accordance with:
-
the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs); and
-
the EU General Data Protection Regulation (GDPR) (where applicable to individuals located in the EU/EEA or UK).
By interacting with us, using our websites or services, or providing personal information, you consent to its handling as described in this policy.
1. Who We Are
Vermilion Pinstripes is a modern marketing and communications agency helping businesses build confidence and sell without selling. We operate across Australia, Singapore, the United Kingdom, and Europe.
2. Personal Information We Collect
We may collect and hold the following types of personal information:
-
Name, job title, company and role
-
Email address, phone number and contact details
-
Communication preferences and marketing history
-
Website usage data, analytics and cookies
-
Enquiry information and correspondence
-
Transaction, billing and account information (for paid services)
-
Country and region information
-
Technical data (IP address, browser type, device identifier)
We generally do not collect sensitive information unless required for a clear business purpose and with consent.
3. How We Collect Information
We collect personal information through:
-
Website forms and subscriptions
-
Email, phone or direct enquiries
-
Downloads, webinar registrations and gated content
-
Events, meetings and workshops (online or in person)
-
CRM and marketing automation systems
-
Cookies, pixels, and analytics tools (e.g. Google Analytics)
-
Social media platforms
-
Third-party providers acting on our behalf
Where reasonable, we collect information directly from you. When collected from a third party, we take reasonable steps to ensure you are aware of how your information will be handled.
4. Purpose of Collection and Use
We collect, hold, and use personal information to:
-
Provide, manage and improve our services
-
Respond to enquiries and customer communication
-
Administer subscriptions, newsletters and marketing campaigns
-
Personalise your user experience and content
-
Support workshops, training and consulting programs
-
Facilitate billing and business administration
-
Comply with legal and regulatory obligations
-
Conduct analytics to improve business performance
We may also use contact details for direct marketing where permitted by law or with your consent. You may opt out at any time.
5. Disclosure of Personal Information
We may disclose personal information to:
-
Technology providers (e.g. CRM, hosting, analytics, digital marketing, IT)
-
Payment and billing service providers
-
Professional advisers (legal, accounting, compliance)
-
Related offices and operational teams
-
Event partners and collaborative service providers
-
Government or regulatory authorities as required by law
We do not sell personal information.
6. Overseas Disclosure and Transfers
We may disclose or store personal information overseas for operational purposes. Countries may include:
-
Australia
-
Singapore
-
United Kingdom
-
European Union member states
-
United States (for SaaS platforms and marketing tools)
Where data is transferred internationally, we take reasonable steps to ensure appropriate protections are in place, including contractual safeguards consistent with the GDPR and APP requirements.
7. Legal Basis for Processing (GDPR)
Where GDPR applies, our legal bases for processing include:
-
Consent (e.g. newsletter subscriptions)
-
Contractual necessity (e.g. delivering services requested)
-
Legitimate interests (e.g. analytics, business development, marketing)
-
Legal obligations (e.g. taxation or regulatory compliance)
8. Data Security
We take reasonable measures to protect personal information from misuse, loss, unauthorised access, modification, or disclosure. Measures may include physical, technical, and administrative safeguards.
No system is 100% secure. If a data breach is likely to cause serious harm, we will notify affected individuals and regulators as required under the Notifiable Data Breaches (NDB) scheme.
9. Data Retention
We retain personal information for as long as reasonably necessary to:
-
fulfil the purposes outlined in this policy,
-
comply with legal obligations, and
-
support business operations.
When no longer required, information is securely destroyed or de-identified.
10. Access and Correction
You may request access to or correction of your personal information. Requests should be made in writing to our Privacy Officer (contact details below). We will respond within a reasonable timeframe unless permitted otherwise by law.
11. Complaints Handling
If you believe your privacy has been breached, please contact us. We will investigate and respond.
If you are unsatisfied with our response, you may escalate to:
Office of the Australian Information Commissioner (OAIC)
www.oaic.gov.au
Where GDPR applies, you may also lodge a complaint with a supervisory authority in the relevant EU/EEA jurisdiction.
12. Cookies, Analytics and Tracking Technologies
Our websites may use cookies and analytics technologies to:
-
analyse performance
-
remember preferences
-
personalise content
-
improve user experience
-
conduct marketing and advertising
You may disable cookies in your browser settings, although website functionality may be affected.
13. Direct Marketing Communications
We may send marketing communications where permitted by law or with consent. You may opt out using the unsubscribe link or by contacting us directly.
14. Links to Third Parties
Our websites may include links to third-party sites. We are not responsible for their privacy practices and encourage you to read their privacy policies.
15. Children
Our services are not generally intended for children under 16. In limited cases, we may provide educational or marketing guidance to teen entrepreneurs under 16 with the knowledge and supervision of a parent or legal guardian.
Where this occurs, we only collect the minimum personal information necessary for the engagement, and parental or guardian consent must be provided. We do not knowingly collect personal information from children without such consent or supervision.
16. Changes to This Policy
We may update this Privacy Policy from time to time. The most current version will be published on our website with an updated “Last updated” date.
17. Contacting Us
For privacy enquiries, access requests, or complaints, contact:
Vermilion Pinstripes
Email: admin@vermillionpinstripes.com
Postal: P.O. Box 9339, Port Macquarie, NSW 2444
17. GDPR Data Controller
For individuals in the EU/EEA or UK, Vermilion Pinstripes acts as a Data Controller in respect of personal information collected.