1. Who We Are

Tautua Digital Agency ("we," "our," or "us") is an Australian digital services agency providing AI-powered

lead reactivation, SMS automation, and digital marketing systems. We are bound by the Australian Privacy

Act 1988 (Cth) and the 13 Australian Privacy Principles (APPs).

ABN: 42342211017

Contact: [email protected]

Website: tautuadigital.com

2. Information We Collect

Information you provide to us directly:

• Full name and contact details (email address, phone number)

• Business name, role, and industry

• Billing and payment information

• Information submitted through website forms, contact pages, or booking systems

• Information shared during consultations, calls, or onboarding processes

Information collected automatically:

• IP address and general location data

• Browser type and device information

• Website pages visited and time spent on pages

• Referring website or source

• Cookie and tracking data (see Section 5)

Client-provided lead data:

When clients engage our lead reactivation services, they may provide us with contact databases

containing personal information of their customers or leads. We process this data solely on behalf of our

clients and as directed by them. Clients are responsible for ensuring this data has been lawfully collected

and that appropriate consents are in place.

3. How We Use Your Information

We use personal information for the following purposes:

• To provide, manage, and improve our services

• To respond to enquiries, support requests, and business communications

• To process payments and manage client accounts

• To send service-related updates, proposals, and communications

• To send marketing and promotional communications (with your consent, or where permitted by law)

• To operate SMS reactivation campaigns on behalf of clients

• To analyse website performance and improve user experience

• To comply with applicable laws and legal obligations

You may opt out of marketing communications at any time by clicking "unsubscribe" in any email or

contacting us directly.

4. SMS & Automated Communications

Our services involve the use of AI-powered SMS messaging. All SMS campaigns conducted by Tautua

Digital Agency on behalf of clients comply with the Spam Act 2003 (Cth) and the Do Not Call Register Act

2006 (Cth).

When we conduct SMS reactivation campaigns on your behalf as a client:

• We process contact data solely for the purpose of the agreed campaign.

• We include opt-out mechanisms in all campaign messages as required by Australian law.

• We do not retain client lead data beyond the agreed campaign period unless otherwise instructed.

• Contacts who opt out are removed from campaign sequences immediately.

If you are a recipient of an SMS sent as part of a reactivation campaign, you may opt out at any time by

replying STOP to any message.

5. Cookies and Tracking Technologies

Our website uses cookies and similar technologies to improve functionality and understand how visitors

use our site. Cookies may be used to:

• Remember your preferences and settings

• Analyse website traffic and user behaviour (e.g. via Google Analytics)

• Support advertising and retargeting campaigns

• Enable chatbot and automated support features

You can disable or manage cookies through your browser settings at any time. Disabling cookies may

affect the functionality of parts of our website.

6. Sharing Your Information

We do not sell your personal information to third parties. We may share your information with:

• Third-party service providers who assist us in operating our business (e.g. payment processors, CRM

platforms, SMS providers, analytics tools, hosting providers) — these providers are required to handle

your information securely and in accordance with applicable privacy laws.

• Our clients, where you have engaged with a campaign we operate on their behalf.

• Regulatory authorities or law enforcement agencies, where required by Australian law.

• Professional advisors including lawyers or accountants, where necessary.

Third-party platforms we use may include: Go High Level (GHL), Twilio, Google Analytics, Stripe, Cliniko,

and Pabau. Each platform operates under its own privacy policy.

7. Cross-Border Disclosure

Some of our third-party service providers may be located outside Australia. Where personal information is

disclosed to overseas recipients, we take reasonable steps to ensure that information is handled in

accordance with the Australian Privacy Principles. By using our services, you consent to your information

being processed in countries where data protection laws may differ from those in Australia.

8. Data Security

We take reasonable technical and organisational measures to protect your personal information from

unauthorised access, misuse, disclosure, alteration, or loss. These measures include:

• Secure HTTPS connections on our website

• Access controls and authentication on internal systems

• Use of reputable, security-certified third-party platforms

• Limited internal access to personal information on a need-to-know basis

No online system can guarantee absolute security. In the event of a data breach that is likely to result in

serious harm, we will notify affected individuals and the Office of the Australian Information Commissioner

(OAIC) as required under the Notifiable Data Breaches (NDB) scheme.

9. Data Retention

We retain personal information only for as long as necessary to fulfil the purposes for which it was

collected, including to provide services, comply with legal obligations, resolve disputes, and enforce

agreements.

Client lead data provided for reactivation campaigns is retained only for the duration of the campaign and

deleted or returned upon completion, unless otherwise agreed in writing.

10. Your Privacy Rights

Under the Australian Privacy Act 1988 and the Australian Privacy Principles, you have the right to:

• Access the personal information we hold about you.

• Request correction of inaccurate, incomplete, or out-of-date information.

• Request deletion of your personal information, where we are not legally required to retain it.

• Opt out of direct marketing communications at any time.

• Lodge a complaint with the Office of the Australian Information Commissioner (OAIC) at oaic.gov.au if

you believe your privacy rights have been breached.

To exercise any of these rights, please contact us at [email protected]. We will respond to

requests within a reasonable timeframe and no later than 30 days.

11. Children's Privacy

Our website and services are intended for business owners and professionals and are not directed at

individuals under the age of 18. We do not knowingly collect personal information from minors. If you

believe we have inadvertently collected such information, please contact us immediately.

12. Third-Party Links

Our website may contain links to third-party websites. We are not responsible for the privacy practices or

content of those websites. We encourage you to review the privacy policies of any third-party sites you

visit.

13. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, services, or legal

requirements. Any updates will be posted on this page with a revised effective date. We encourage you to

review this policy periodically.

14. Privacy Complaints

If you have a concern about how we have handled your personal information, please contact us in the first

instance at [email protected]. We will acknowledge your complaint within 5 business days and

aim to resolve it within 30 days.

If you are not satisfied with our response, you may lodge a complaint with the Office of the Australian

Information Commissioner (OAIC):

OAIC

Website: oaic.gov.au

Phone: 1300 363 992

15. Contact Us

For any questions, requests, or concerns regarding this Privacy Policy or how we handle your personal

information, please contact:

Tautua Digital Agency

Website: tautuadigital.com

Email: [email protected]

Tautua Digital Agency · tautuadigital.com · supp