Legal

Privacy Policy

Canetoad.ai, operated by Toad AI Pty Ltd (ACN: 685 842 602) (Company, we, us, our) respects your privacy. We are committed to ensuring all information we collect or hold is handled respectfully and in accordance with relevant privacy laws including the Privacy Act 1988 (Cth) (Privacy Act) and the Australian Privacy Principles (APPs).

This policy explains how and why we collect, use, hold and disclose your personal information together with your rights to access and correct that information or make a complaint about our handling of personal information.

You consent to us collecting, holding, using and disclosing your personal information in accordance with this policy.

What is personal information?

Personal information is any information or an opinion about an identified individual or an individual who can be reasonably identified from the information or opinion. Information or an opinion may be personal information regardless of whether it is true.

What personal information do we collect and hold?

The Company will only collect personal information from individuals as required to conduct our business operations. This includes when individuals use our website, apply for a position, work with us, invest in us or engage with us in other ways. Generally, the types of personal information we collect will include name, contact details and records of communications with us including your history of purchases and use of our products and services, details of enquiries or complaints you make and any other information, data or documents which you provide to the Company in the course of using our products and services.

We will also collect personal information, including names and contact details about:

  • people involved in or through organisations that we support or sponsor;
  • our suppliers: this information is collected for business-related purposes but contains some limited personal information contact details of the people that we deal with;
  • people who correspond with us, including through our website, in which case we may keep a copy of that correspondence and relevant contact details;
  • people who request information updates about us through our website mailing list.

We may collect information about how you access, use and interact with the website. We do this by using a range of tools such as Google Analytics. This information may include:

  • the location from which you have come to the site and the pages you have visited; and
  • technical data, which may include IP address, the types of devices you are using to access the website, device attributes, browser type, language and operating system; and
  • website usage, error reports and other system logs

Do we use cookies or other analytic tools on our website?

Our website uses 'cookies' to improve your browser experience. Cookies are small text files that are downloaded and stored onto your computer's browser directory when you visit our website.

Cookies are used to track the pages and services you visit on our website and to ensure that you are able to move freely across our website, without needing to re-enter information that you have already provided. Cookies are also used to recognize you when you return to our website and to enhance the performance of our website, by collecting information that helps us understand how our website is being used and to make improvements to its functionality.

We use cookies to collect information such as:

  • your computer's IP address and other technical information;
  • the date and time at which you access our website and the duration of your visit;
  • the pages and content that you viewed during your visit;
  • the type of browser you are using.

You may refuse to use cookies by selecting the appropriate settings on your browser. However, please note that if you do this, you may not be able to use the full functionality of the website.

Why do we collect, hold and use your personal information?

We may use personal information for the primary purpose for which it is collected (e.g. provision of our services, including administration of our services) or for secondary purposes which are related (or directly related to the case of sensitive information) to the primary purpose.

We collect, hold and use your personal information so that we can:

  • comply with our legal obligations and assist government and law enforcement agencies or regulators;
  • communicate with, and comply with our legal obligations to, our shareholders, and to process payments to them;
  • enable third party service providers to provide us and our related companies with services such as information technology, auditing, legal advice, geological and investment learning models, printing and mailing services, and services related to our share register;
  • correspondence with people who have contacted us, and deal with feedback;
  • provide services to, and manage, our related companies;
  • consider applications from prospective employees or contractors;
  • maintain and update our records;
  • conduct or participate in investigations or due diligence;
  • facilitate transactions involving the Company or any of our affiliates;
  • provide you with products and services, and manage our relationship with you;
  • develop and assess new products and services;
  • contact you, for example, to respond to your queries or complaints, or if we need to tell you something important;
  • identify and tell you about other products or services that we think may be of interest to you.

Where appropriate, we will confirm your express consent before collecting such information.

If you do not provide us with your personal information, we may not be able to provide you with our services, communicate with you or respond to your enquiries.

How do we collect your personal information?

We will collect your personal information directly from you whenever you interact with us.

We may also collect information from third parties.

How do we store and hold personal information?

We store most information about you in computer systems and databases operated by either us or our external service providers.

We implement and maintain processes and security measures to protect personal information which we hold from misuse, interference or loss, and from unauthorised access, modification or disclosure. Processes including taking steps to restrict access to databases, maintaining firewalls, encrypting data, using secure servers in controlled facilities and only allowing access by those entrusted with authority and computer network passwords. We also require all employees to comply with information security policies and attend training. In addition, we monitor and regularly review our practices against industry best practice.

We will also take reasonable steps to destroy or de-identify personal information once we no longer require it for the purposes for which it was collected or for any secondary purpose permitted under the APPs.

However, the internet is not a secure environment and no computer system is perfectly secure. Although all care is taken, we cannot guarantee the security of information provided to us. This means that there is always a risk that your personal information may be accessed or used without authorisation.

Who do we disclose your personal information to, and why?

We may transfer or disclose your personal information to our related companies.

We may disclose personal information to external service providers (including IT service providers, auditors, legal advisors, geological and investment learning models, mail houses and our share registrar) so that they may perform services for us or on our behalf.

We may also disclose your personal information to others outside our group of companies where:

  • we are required or authorised by law to do so;
  • you may have expressly consented to the disclosure or the consent may be reasonably inferred from the circumstances; or
  • we are otherwise permitted to disclose the information under the Privacy Act.

If the ownership or control of all or part of our assets or business changes, we may transfer your personal information to the prospective or new owner.

Do we disclose personal information to overseas recipients?

We may disclose your personal information to recipients which are located outside Australia.

The Company may also use overseas facilities to process or back up its information. As a result, we may transfer your personal information to our overseas facilities for storage. However, this does not change any of our commitments to safeguard your privacy.

Do we use your personal information for marketing?

We will use your personal information to offer you products and services we believe may interest you, but we will not do so if you tell us not to. These products and services may be offered by us, our related companies, our other business partners or our service providers.

Where you receive electronic marketing communications from us, you may opt out of receiving further marketing communications by following the opt-out instructions provided in the communication.

Access to and correction of your personal information

You may access or request correction of the personal information that we hold about you by contacting us. Our contact details are set out below. We may need to verify your identify before giving you access to your personal information. There are some circumstances in which we are not required to give you access to your personal information (for example, where a legal exemption applies).

There is no charge for requesting access to your personal information, but we may require you to meet our reasonable costs in providing you with access (such as photocopying costs or costs for time spent on collating large amounts of material).

We will respond to your requests to access or correct personal information in a reasonable time and will take all reasonable steps to ensure that the personal information we hold about you remains accurate and up to date.

Your rights under the EU GDPR

We welcomed the General Data Protection Regulation (GDPR) of the European Union (EU) as an important step forward in streamlining data protection globally. Although we do not operate an establishment within the EU and do not target any offering of services towards clients in the EU specifically, we intend to comply with the data handling regime laid out in the GDPR in respect of any personal information of data subjects in the EU that we may obtain.

Under the GDPR, as a data subject you have the right to:

  • access your data;
  • have your data deleted or corrected where it is inaccurate;
  • object to your data being processed and to restrict processing;
  • withdraw consent to having your data processed;
  • have your data provided in a standard format so that it can be transferred elsewhere; and
  • not be subject to a decision based solely on automated processing.

We have processes in place to deal with Data Subject Rights requests. Our actions and responsibilities will depend on whether we are the controller or processer of the personal data at issue. Depending on our role as either a controller or processor, the process for enabling Data Subject Rights may differ, and are always subject to applicable law. We offer a self-service option in some situations that directly allows you to access, correct, or delete the personal data that you may have provided. Please refer to the Contact Details section of this policy if you would like to make a Data Subject Rights request OR have a specific need for assistance with a Data Subject Rights request.

Complaints

If you have a question about our policy or wish to make a complaint about the way in which we have handled any privacy issue, including your request for access or correction of your personal information, you should contact us in writing. Our contact details are set out below.

We will consider your complaint promptly and determine whether it requires further investigation. We will notify you of the outcome of this investigation and any subsequent internal investigation.

It is our intention to resolve any complaints to your satisfaction. However, if you remain unsatisfied with the way in which we have handled a privacy issue, you may approach an independent advisor or contact the Office of the Australian Information Commissioner (OAIC) for guidance on alternative courses of action which may be available.

Office of the Australian Information Commissioner

Phone: 1300 363 992

Mail: GPO Box 5218, SYDNEY NSW 2001

Email: enquiries@oaic.gov.au

Website: www.oaic.gov.au

Contact details

If you have any questions, comments, requests or concerns, please contact us at:

hello@canetoad.ai

Changes to this policy

From time to time, we may change our policy on how we handle personal information or the types of personal information which we hold. Any changes to our policy will be published on our website.

You may obtain a copy of our current policy from our website www.canetoad.ai or by contacting us at the contact details above.