Privacy Policy
Your privacy matters to us. This policy explains how xarolionex collects, uses, and protects your personal information when you use our profitability analysis services.
Last updated: January 15, 2025 | Effective from: January 15, 2025
Information We Collect
When you engage with our financial analysis services, we collect information that helps us provide personalised profitability insights. This includes details you provide directly and information we gather through your interactions with our platform.
- Personal identification details including name, email address, and phone number
- Business information such as company name, industry sector, and operational data
- Financial data you share for analysis purposes, including revenue streams and expense categories
- Technical information like IP address, browser type, and device specifications
- Usage patterns and preferences within our analytical tools
- Communication records from our interactions via email, phone, or live chat
We only collect information that's necessary to deliver our services effectively. You control what financial data you share with us, and we never access your accounts without explicit permission.
How We Use Your Information
Your information enables us to create detailed profitability assessments and provide tailored business recommendations. We process your data to deliver the analytical insights you've requested and to enhance our service quality.
- Generate comprehensive profitability reports based on your business data
- Provide personalised recommendations for improving financial performance
- Deliver customer support and respond to your enquiries promptly
- Process payments and manage your account access securely
- Send important updates about your analysis projects and results
- Improve our analytical tools based on aggregated usage patterns
- Ensure platform security and prevent unauthorised access
We base our data processing on legitimate business interests, contractual necessity, and your explicit consent where required. You can withdraw consent for optional processing at any time through your account settings.
Data Protection and Security
Protecting your financial information is our highest priority. We employ multiple layers of security to safeguard your data from unauthorised access, alteration, or disclosure.
- 256-bit SSL encryption for all data transmission and storage
- Multi-factor authentication for account access and administrative functions
- Regular security audits conducted by independent cybersecurity firms
- Restricted access protocols ensuring only authorised staff handle your data
- Automated backup systems with secure, geographically distributed storage
- Real-time monitoring for suspicious activities and potential breaches
- Compliance with Australian Privacy Principles and international security standards
Our security measures meet banking-level standards. We regularly update our protocols to address emerging threats and maintain the highest level of data protection.
Sharing and Third Parties
We don't sell your personal information to third parties. However, we work with selected service providers to deliver our analytical services effectively. All partnerships are governed by strict data protection agreements.
- Cloud hosting providers that store your data in secure, Australian-based servers
- Payment processors for handling subscription fees and service charges
- Analytics tools that help us improve platform performance using anonymised data
- Customer support software providers for managing your service requests
- Professional advisors including legal and accounting firms when necessary
- Regulatory bodies if required by Australian law or court orders
Before sharing any information, we ensure third parties maintain equivalent security standards and agree to use your data solely for the intended purpose. We conduct regular reviews of all vendor relationships.
Your Privacy Rights
Under Australian privacy law, you have significant control over your personal information. We make it easy to exercise these rights through your account dashboard or by contacting our privacy team directly.
- Access your personal data and receive copies in a portable format
- Correct inaccurate information or update your details at any time
- Request deletion of your account and associated data
- Restrict how we process your information for specific purposes
- Object to processing based on legitimate interests
- Withdraw consent for optional data processing activities
- File complaints with the Office of the Australian Information Commissioner
Most privacy requests can be handled immediately through your account settings. For complex requests, we respond within 30 days and keep you informed throughout the process.
Data Retention and Deletion
We retain your information only as long as necessary to provide our services and meet legal obligations. Our retention periods are designed to balance your privacy rights with practical business needs.
- Active account data: Retained while your account remains open and for 12 months after closure
- Financial analysis reports: Kept for 3 years to support ongoing advisory relationships
- Communication records: Stored for 2 years to resolve any service disputes
- Payment information: Retained for 7 years as required by Australian tax law
- Marketing preferences: Deleted immediately upon unsubscribe request
- Technical logs: Automatically purged after 6 months unless needed for security investigations
When retention periods expire, we securely delete your information using industry-standard data destruction methods. You can request early deletion of most data types, though some information must be retained for legal compliance.
International Transfers
Your data is primarily stored within Australia using local cloud infrastructure. When international transfers are necessary, we ensure adequate protection through approved transfer mechanisms.
- Primary data storage occurs in Sydney and Melbourne data centres
- Backup systems maintain copies within Australian borders
- Some software providers may process data in the United States or European Union
- All international transfers use adequacy decisions or standard contractual clauses
- We regularly assess the privacy laws of countries where data may be processed
We avoid transferring sensitive financial data internationally wherever possible. When transfers occur, we implement additional safeguards including encryption and access controls.
Children's Privacy
Our business analysis services are designed for professional use and aren't intended for individuals under 18. We don't knowingly collect personal information from children.
If we discover that we've inadvertently collected information from someone under 18, we'll delete it immediately. Parents or guardians who believe we may have collected their child's information should contact us straight away.
Policy Updates
We review this privacy policy regularly to ensure it reflects our current practices and legal requirements. Significant changes will be communicated clearly, and we'll seek your consent where required by law.
- Minor updates for clarity or legal compliance take effect immediately
- Material changes require 30 days' notice via email and account notifications
- Changes affecting your rights or data processing require explicit consent
- Previous policy versions are archived and available upon request
We recommend reviewing this policy periodically to stay informed about how we protect your information. The effective date at the top indicates when the current version came into force.
Privacy Questions?
Our privacy team is here to help with any questions about how we handle your information. We're committed to transparent communication and prompt responses.