Privacy Policy
Beinc respects your privacy and is committed to protecting the personal information we collect, hold, and use about you. This Privacy Policy explains how Cnieb Pty Ltd (ABN 61 245 004 967), trading as Beinc, handles personal information when you visit our website (www.beinc.com.au), engage our services, communicate with us, or interact with us in any other way.
Beinc is bound by the Australian Privacy Principles (APPs) contained in the Privacy Act 1988 (Cth). Where applicable, we also handle personal information in accordance with the European Union General Data Protection Regulation (EU GDPR) and the United Kingdom General Data Protection Regulation (UK GDPR). Specific information for individuals in the EU and UK is set out in Section 14 of this policy.
By using our website or providing personal information to us, you acknowledge that you have read and understood this Privacy Policy.
1. What is personal information
“Personal information” has the meaning given to it under the Privacy Act 1988 (Cth). In general, it means information or an opinion about an identified individual, or an individual who is reasonably identifiable, whether or not the information or opinion is true and whether or not it is recorded in a material form.
2. The information we collect
The types of personal information we collect and hold depend on the nature of your interaction with us. They may include:
- Identity and contact details: your name, business name, job title, email address, postal address, and phone number;
- Client representative details: the name, role, and contact information of individuals representing client organisations;
- Project and engagement information: information you provide to us in the course of scoping, delivering, or supporting a project, including content, briefs, and approvals;
- Billing and payment information: billing contact details and transaction records, processed through our accounting and payment platforms;
- Marketing engagement data: information about how you interact with our newsletters and marketing communications, such as opens, clicks, and subscription preferences;
- Website usage data: technical information collected automatically when you visit our website, including IP address, device type, browser type and version, operating system, referring URL, pages visited, and the date and time of access;
- Recruitment information: where you apply for a role with us, the information contained in your application, including your CV, work history, and references;
- Any other information you choose to provide to us.
We do not generally collect sensitive information (as defined in the Privacy Act). If we ever need to, we will obtain your consent first, except where the law allows or requires otherwise.
3. How we collect personal information
We collect personal information directly from you wherever practicable, including when you:
- Submit a form or contact us through our website;
- Email, call, or message us;
- Subscribe to our newsletter or download a resource;
- Engage us to provide services, or act on behalf of a client that engages us;
- Apply for a role with us;
- Attend an event, meeting, or workshop we host;
- Visit our website, where information is collected automatically through cookies and similar technologies (see Section 8).
In some cases, we may collect personal information about you from a third party, for example from a client who provides us with the contact details of their staff or customers for the purposes of a project. Where we receive your personal information from a third party, we will take reasonable steps to ensure you are made aware of the matters set out in this policy.
4. Why we collect and how we use personal information
We collect, hold, use, and disclose personal information for the following purposes:
- To respond to enquiries, provide quotes, and discuss potential engagements;
- To deliver, manage, and support the services we have been engaged to provide;
- To invoice clients and process payments;
- To send service-related communications, such as project updates and account notices;
- To send marketing communications, where you have opted in or where it is otherwise permitted by law, and to measure the effectiveness of those communications;
- To improve our website, services, and customer experience;
- To assess applications for employment or engagement with us;
- To meet our legal, regulatory, accounting, and contractual obligations;
- To protect the security and integrity of our systems, our personnel, and our clients;
- For any other purpose that you would reasonably expect or to which you have consented.
We will not use your personal information for a purpose that is not set out in this policy unless we have obtained your consent or are otherwise permitted or required by law to do so.
5. Direct marketing
We may use your contact details to send you marketing communications about Beinc, our services, and content we think you may find useful, where you have opted in to receive them or where it is otherwise permitted under the Privacy Act 1988 (Cth) and the Spam Act 2003 (Cth).
Every marketing email we send includes an option to unsubscribe. You can also opt out at any time by emailing us at hello@beinc.com.au. We will action opt-out requests promptly.
6. Disclosure of personal information
We do not sell your personal information. We may disclose personal information to:
- Our personnel, including employees, contractors, and consultants, on a need-to-know basis;
- Third-party service providers who help us operate our business, including providers of email and cloud productivity services, customer relationship management platforms, accounting and invoicing software, marketing and email delivery platforms, website hosting and content delivery, project management tools, and analytics services;
- Our clients, where this is required to deliver the services they have engaged us to provide;
- Professional advisers, including lawyers, accountants, and auditors, where reasonably necessary;
- Regulatory authorities, law enforcement, or courts, where we are required or permitted by law to do so;
- A purchaser or successor entity in connection with the sale, merger, or restructure of our business.
We require third-party service providers we engage to handle personal information consistently with this policy and with applicable privacy laws.
7. Overseas disclosure
Some of the third-party service providers we use to operate our business store or process personal information outside Australia. The countries in which our service providers are likely to process personal information include the United States of America and other jurisdictions in which major cloud service providers operate data centres.
Before disclosing personal information overseas, we take reasonable steps in the circumstances to ensure that the overseas recipient does not breach the Australian Privacy Principles in relation to that information, including through our contractual arrangements with providers and by selecting providers with established privacy and security programs.
8. Cookies and similar technologies
Our website uses cookies and similar technologies to help the site work, to understand how it is used, and to support our marketing. The categories of cookies we may use include:
Strictly necessary cookies. Required for the website to function and cannot be disabled in our systems. They are usually set in response to actions you take, such as setting privacy preferences or filling in forms.
Analytics cookies. Allow us to count visits and understand how visitors move through the site, so we can measure and improve its performance.
Marketing cookies. May be set by us or by advertising and marketing partners through our site. They may be used to build a profile of your interests and show you relevant content on our site or other sites.
Most browsers let you refuse or delete cookies through your browser settings. If you do, some parts of our website may not work as intended.
9. How we protect personal information
Beinc takes reasonable steps to protect personal information from misuse, interference, and loss, and from unauthorised access, modification, or disclosure. Our security measures include:
- Multi-factor authentication on all business accounts that support it;
- Role-based access control on a least-privilege basis;
- Strong password requirements and use of an approved password manager;
- Full-disk encryption on devices used to access our systems;
- Encryption of data in transit (TLS 1.2 or higher) and at rest through our cloud platforms;
- Email authentication (SPF, DKIM, and DMARC) and email gateway filtering;
- Documented information security, incident response, and business continuity policies;
- Regular access reviews and prompt revocation of access when personnel leave or change role;
- Security awareness training for all personnel.
No transmission of information over the internet is completely secure. While we work hard to protect your personal information, we cannot guarantee the security of information you transmit to us, and you do so at your own risk.
10. How long we keep personal information
We retain personal information only for as long as we need it for the purposes set out in this policy, or for as long as we are required to do so by law. When personal information is no longer needed, we take reasonable steps to destroy it or de-identify it, in accordance with our Data Retention and Disposal Policy.
Records relating to client engagements, including financial records, are generally kept for at least seven (7) years after the engagement ends, to comply with tax, corporate, and contractual obligations.
11. Notifiable data breaches
Beinc maintains a documented Incident Response Plan that includes the steps we take when a data breach is suspected or confirmed. If we experience a data breach that is likely to result in serious harm to any individual, we will notify the affected individuals and the Office of the Australian Information Commissioner (OAIC) as required by the Notifiable Data Breaches scheme under Part IIIC of the Privacy Act 1988 (Cth).
12. Your rights and choices
Under the Australian Privacy Principles, you have the right to:
- Request access to the personal information we hold about you;
- Request correction of any personal information that is inaccurate, out of date, incomplete, irrelevant, or misleading;
- Opt out of receiving marketing communications from us at any time;
- Make a complaint about how we have handled your personal information.
To exercise any of these rights, please contact us at hello@beinc.com.au. We will respond to your request within a reasonable timeframe, generally within 30 days. We may need to verify your identity before actioning a request. There is no fee for making a request, although we may charge a reasonable fee to cover the cost of providing access in some circumstances.
If we refuse to provide access to or correct your personal information, we will give you a written notice setting out the reasons and your options for review.
13. Complaints
If you believe we have breached the Australian Privacy Principles or otherwise mishandled your personal information, please contact us in the first instance at hello@beinc.com.au. We will acknowledge your complaint promptly and aim to investigate and respond within 30 days.
If you are not satisfied with our response, you may lodge a complaint with the Office of the Australian Information Commissioner:
- Website: www.oaic.gov.au
- Phone: 1300 363 992
- Post: GPO Box 5288, Sydney NSW 2001
14. Information for individuals in the European Union and United Kingdom
Where Beinc processes the personal data of individuals located in the European Union (EU) or United Kingdom (UK), we do so in accordance with the EU General Data Protection Regulation (EU GDPR) and the UK General Data Protection Regulation (UK GDPR) (collectively, “GDPR”).
Controller. For personal data we collect about you in the course of operating our business and providing our services, Beinc is the data controller.
Lawful bases for processing. We process personal data on one or more of the following lawful bases: your consent (which you may withdraw at any time); the performance of a contract with you or steps taken at your request before entering into a contract; compliance with a legal obligation; or our legitimate interests in operating, promoting, and protecting our business, provided those interests are not overridden by your interests or fundamental rights.
Your rights under the GDPR. Subject to the conditions and exceptions set out in the GDPR, you have the right to: access your personal data; rectification of inaccurate personal data; erasure of your personal data; restriction of processing; data portability; object to processing (including for direct marketing); withdraw consent; and lodge a complaint with a supervisory authority in your country of residence, place of work, or place of the alleged infringement.
International transfers. If personal data of individuals in the EU or UK is transferred outside the EU, UK, or another jurisdiction recognised as providing an adequate level of protection, we will rely on a lawful transfer mechanism such as the Standard Contractual Clauses adopted by the European Commission (and the UK International Data Transfer Addendum, where applicable).
Retention. We retain personal data only for as long as necessary for the purposes for which it was collected, subject to applicable legal, accounting, and reporting requirements.
To exercise any of your rights, or for any other GDPR enquiry, please contact us at hello@beinc.com.au.
15. Children’s information
Our website and services are not directed at children under the age of 16, and we do not knowingly collect personal information from children. If you become aware that a child has provided personal information to us, please contact us at hello@beinc.com.au and we will take reasonable steps to delete that information.
16. Third-party websites
Our website may contain links to third-party websites and services. This Privacy Policy does not apply to those sites or services. We are not responsible for the privacy practices of third parties, and we encourage you to review their privacy policies before providing them with personal information.
17. Changes to this Privacy Policy
We may update this Privacy Policy from time to time to reflect changes to our practices, technology, legal requirements, or for other reasons. When we make material changes, we will post the updated policy on our website with a new “Last Updated” date. We encourage you to review this policy periodically.
18. Contact us
If you have any questions, requests, or concerns about this Privacy Policy or our handling of your personal information, please contact us:
- Email: hello@beinc.com.au
- Website: www.beinc.com.au