In our capacity as an IT service provider, we may have administrative access to, or temporarily host, data repositories belonging to our clients. This data includes:
We prioritise decentralised infrastructure to minimise exposure risks:
Any access to client data or system metadata is strictly constrained to professional IT service delivery:
We enforce strict personnel compliance before any technical deployment or system interaction occurs:
Aligned with our strict internal compliance frameworks, we enforce corporate security controls:
We make every effort to resolve data flows locally. Where our diagnostic tools or specialised third-party vendors route metadata or backup verification packets through international server infrastructure, we cannot ensure they enforce privacy protections that match or exceed Australian regulatory requirements because their governing laws will apply and the client should contact those suppliers directly for details.
We maintain a proactive Data Breach Response Plan to isolate and remediate security events rapidly.
Client personnel and data owners retain the right to query, access, or request corrections to the information we hold about them. For questions concerning our security controls or compliance guidelines, contact our Privacy Officer via privacy@kauri.com.au.
We will take all reasonable steps to ensure that all information held about you is accurate and up to date. Please inform us when your details need amending and we will update our records accordingly.
If you believe your personal or sensitive information has been mishandled, please submit your complaint in writing to our Privacy Officer at privacy@kauri.com.au.
We will acknowledge your request and aim to resolve the issue within 30 days. If you do not receive a response from us within 30 days, or if you remain dissatisfied with our resolution, you have the right to lodge a formal complaint with the Office of the Australian Information Commissioner (OAIC) at www.oaic.gov.au.