Seller: Superspeed.ai Pty Ltd
IP Owner & Licensor: Strategic Global Holdings Pty Ltd (ACN 693 256 503)
Effective Date: 1 January 2025
Version: 4.95 Ultra-Final
Document Owner: CEO, Superspeed.ai Pty Ltd
Review Cycle: Annual or upon legislative change
1. Definitions
Defines: ‘Personal Data’, ‘Processing’, ‘Controller’, ‘Processor’, ‘Digital Content’, ‘Sensitive Data’, ‘Cookie’, ‘Tracking Technologies’, ‘Applicable Law’, etc.
2. Purpose & Scope
Explains that this Policy governs data processing across the bookstore, checkout, user accounts, digital downloads, and analytics operations.
3. Categories of Personal Data Collected
- Identity data
- Contact details
- Account credentials
- Order and transaction data
- Device/technical data
- Usage analytics
- Digital download logs
- Consent records
4. How We Collect Data
Direct collection, automated tracking, cookies, third-party processors, and customer support interactions.
5. Purposes of Processing
- Fulfilling contracts
- Account operation
- Fraud prevention
- Personalisation
- Analytics
- Marketing (where consented)
- Compliance with law
6. Legal Bases for Processing
Includes contract necessity, consent, legitimate interests, legal obligations, and protective interests. Region-specific bases apply for EU/UK, California, China, Singapore.
7. Cookies & Tracking Technologies
Explains categories, consent rules, management rights, and links to Cookie Notice & Preferences Policy.
8. Sharing of Personal Data
Describes sharing with:
- Payment processors (PCI-DSS)
- Hosting providers
- Logistics partners
- Security vendors
- Analytics providers
Confirms that personal data is not sold.
9. International Transfers
Explains safeguards including Standard Contractual Clauses (EU/UK), PIPL-compliant transfer mechanisms, PDPA transfer obligations, and global hosting architecture.
10. Data Retention
Retention periods for transactions, download history, compliance logs, and deletion principles.
11. Security Controls
Covers encryption, access controls, MFA, SIEM logging, vulnerability scanning, business continuity, and incident response alignment with ISO 27001.
12. Automated Decision-Making & Profiling
Explains optional personalisation, search optimisation, and fraud detection. States that no automated decisions produce legal or significant effects.
13. Region-Specific Rights
Provides matrices for EU/UK GDPR rights, California CCPA/CPRA rights, China PIPL rights, Singapore PDPA rights, and Australian APP rights.
14. Exercising Privacy Rights
Explains authentication, timelines, contact method, escalation paths, and how Superspeed.ai processes requests.
15. Children’s Data
States that no data from minors is knowingly collected without lawful consent.
16. Data Breach Management
Describes breach notification rules for Australia, EU/UK, and other applicable jurisdictions.
17. Complaints Handling
Provides pathways for internal complaints and external regulators (OAIC, ICO, EU DPAs, CPPA, China CAC).
18. Document Hierarchy
Links to: Cookie Notice, Cookie Preferences, Regional Addenda, E-Commerce Terms, EULA, Security Overview, AI Governance Statements.
19. Contact Details
Email: support@superspeed.ai