Get marketing insights first
Subscribe for actionable strategies, growth tips and useful industry insights, delivered straight to your inbox.
Your privacy
This policy explains what personal information DesignEpic collects, why we use it, who we may share it with and the choices available to you.
We collect only the information reasonably needed to operate our website, respond to you and deliver our services. We do not sell personal information. Where practical, you may contact us anonymously or using a pseudonym.
This Privacy Policy describes how DesignEpic manages personal information when you visit our website, contact us, book a meeting, become a client, work with us as a supplier or otherwise interact with our business.
We aim to handle personal information consistently with the Privacy Act 1988 (Cth), the Australian Privacy Principles and other privacy laws that apply to our activities. Some services may also be governed by a proposal, confidentiality agreement, data-processing terms or our Terms of Service .
“Personal information” means information or an opinion about an identified individual, or an individual who is reasonably identifiable. This policy does not apply to information that has been effectively de-identified.
The information we collect depends on how you interact with us and may include:
We do not ordinarily seek sensitive information. Please do not provide it unless it is reasonably necessary and we have asked for it or the law otherwise permits its collection.
We usually collect personal information directly from you when you complete a form, schedule a meeting through our booking page, send an email, speak with us, sign a proposal, use our services or interact with our website.
We may also collect information from:
Information may be held in business systems operated by us or trusted providers, including website hosting, booking, email, cloud storage, project management, customer relationship management, accounting and security systems.
We collect, hold, use and disclose personal information for purposes reasonably connected with our business, including to:
We may create aggregated or de-identified insights for business analysis and service improvement. We do not currently use personal information to make solely automated decisions that could reasonably be expected to significantly affect a person’s rights or interests. If this practice changes, we will update this policy and provide any additional information required by law.
Our website and service providers may use cookies, pixels, local storage, server logs and similar technologies to keep the site functioning, remember preferences, understand site use, measure performance and protect against malicious activity.
You can manage many cookies through your browser settings and, where available, our cookie controls. Blocking some technologies may affect form, booking or website functionality. Third-party content or links may be governed by the privacy practices of their providers.
We may disclose personal information where reasonably necessary for the purposes described in this policy to:
We do not sell personal information or disclose it to third parties for their independent direct marketing. Service providers may process information for us only for authorised purposes and under their applicable contractual and privacy obligations.
DesignEpic serves clients across the APAC region and uses online service providers whose personnel, infrastructure or subprocessors may be located outside Australia. Depending on the provider and project configuration, likely locations may include Australia, New Zealand, Singapore, the United States, the United Kingdom and member states of the European Economic Area.
Before disclosing personal information to an overseas recipient, we take reasonable steps appropriate to the circumstances, such as reviewing privacy and security terms, limiting the information shared and using contractual controls. We may also rely on an exception permitted by law. Overseas privacy protections and enforcement rights may differ from those available in Australia.
We may send relevant news, insights or service information when you have consented or when the communication is otherwise permitted by law and reasonably expected in the context of our relationship.
We do not use sensitive information for direct marketing unless valid consent and applicable law permit it.
When delivering website, CRM, automation, analytics, reporting, support or work-management services, we may access personal information that a client controls. In those circumstances, the client generally decides why and how that information is handled, while DesignEpic handles it only as needed to provide the agreed services and follow lawful instructions.
Project-specific security, retention, deletion or data-location requirements should be documented in the proposal or a separate data-processing agreement.
We take reasonable technical and organisational steps to protect personal information from misuse, interference, loss and unauthorised access, modification or disclosure. Measures may include access controls, multi-factor authentication, encryption in transit, backups, software maintenance, provider reviews and limiting access to people who need it.
No internet transmission or storage method is completely secure. If we become aware of a suspected data incident, we will contain and assess it, take reasonable remediation steps and notify affected individuals and regulators where required by applicable law, including the Notifiable Data Breaches scheme.
We retain personal information only for as long as reasonably necessary for the purposes in this policy, the engagement, dispute management and legal or professional record-keeping. Retention periods vary by record type, contractual requirement and provider capability. When information is no longer required, we take reasonable steps to delete, destroy or de-identify it, subject to lawful backups and required records.
You may ask to access personal information we hold about you or request that inaccurate, out-of-date, incomplete, irrelevant or misleading information be corrected. You may also ask about your marketing preferences or raise a concern about how information is used.
Some information may also be updated directly in the relevant account or third-party platform. Requests concerning information controlled by one of our clients should be directed to that client.
If you have a privacy question, want another accessible copy of this policy or believe we have mishandled personal information, contact us with enough detail to investigate.
We will acknowledge a complaint, investigate fairly and aim to provide a response within 30 days. If you are not satisfied with our response, or we do not respond within 30 days, you may be able to complain to the Office of the Australian Information Commissioner .
We may update this policy when our practices, services or legal obligations change. The latest version will be published on this page with a revised “Last updated” date. If a change materially affects how we handle information already collected, we will provide additional notice where reasonably practicable or required by law.
Questions about your data?
Ask about the information we hold, request a correction or raise a privacy concern.
Practical ideas for connected customer journeys, digital systems and better work across APAC.