Privacy Policy
Last updated: 30 January 2026
1. Introduction
Kongtek Pty Ltd (ABN 668 188 761) ("Kongtek", "we", "us", or "our") is a specialist data and AI consultancy based in Melbourne, Australia. We are committed to protecting the privacy of individuals who visit our website at kongtek.io ("Site") and who engage with our services.
This Privacy Policy explains how we collect, use, disclose, and safeguard your personal information in accordance with the Australian Privacy Act 1988 (Cth), the Australian Privacy Principles (APPs), and the European Union General Data Protection Regulation (GDPR) where applicable.
2. Information We Collect
We may collect the following types of personal information:
Information you provide directly
- Name, email address, phone number, and company name when you submit our contact form
- Details about your data or AI challenge as described in the contact form
- Marketing consent preferences
Information collected automatically
- Device and browser information (type, operating system, screen resolution)
- IP address and approximate geographic location
- Pages visited, time spent on pages, and navigation patterns
- Referring website or source
3. How We Use Your Information
We use the information we collect to:
- Respond to your enquiries and contact form submissions
- Provide, maintain, and improve our consulting services
- Send marketing communications where you have opted in to receive them
- Analyse website usage to improve the user experience and our content
- Comply with legal obligations and protect our legitimate interests
4. Legal Basis for Processing (GDPR)
Where the GDPR applies, we process personal data on the following legal bases:
- Consent — when you submit our contact form, subscribe to communications, or accept cookies
- Legitimate interests — to analyse website usage and improve our services
- Contractual necessity — to deliver consulting services you have engaged us for
- Legal obligation — to comply with applicable laws and regulations
5. Cookies and Tracking Technologies
Our Site uses cookies and similar technologies to enhance your experience and collect analytical data. We use the following services:
- Google Analytics 4 — to understand how visitors interact with our Site, including page views, session duration, and traffic sources
- Google Tag Manager — to manage and deploy tracking tags on the Site
- Secure Privacy — to manage cookie consent preferences and ensure compliance with privacy regulations
You can manage your cookie preferences at any time through the cookie consent banner or your browser settings. Most browsers allow you to refuse or delete cookies. Please note that disabling cookies may affect your experience on the Site.
6. Third-Party Services
We use the following third-party service providers who may process your data on our behalf:
- Cloudflare (USA) — website hosting, CDN, and security
- Google (USA) — analytics and tag management
- Resend (USA) — transactional email delivery for contact form submissions
- Notion (USA) — content management for blog articles
- Secure Privacy (EU) — cookie consent management
These providers are bound by their own privacy policies and, where applicable, data processing agreements. Data transferred outside Australia is protected by appropriate safeguards, including Standard Contractual Clauses (SCCs) for GDPR compliance.
7. Data Retention
We retain your personal information only for as long as necessary to fulfil the purposes for which it was collected, including to satisfy legal, accounting, or reporting requirements.
- Contact form submissions are retained for up to 2 years unless a client relationship is established
- Analytics data is retained in accordance with Google Analytics default retention settings
- Client engagement records are retained for 7 years in accordance with Australian tax and business law requirements
8. Your Rights
Under the Australian Privacy Act
You have the right to:
- Access the personal information we hold about you
- Request correction of inaccurate, incomplete, or out-of-date information
- Complain to the Office of the Australian Information Commissioner (OAIC) if you believe your privacy has been breached
Under the GDPR (where applicable)
You additionally have the right to:
- Request erasure of your personal data
- Request restriction of processing
- Data portability
- Object to processing based on legitimate interests
- Withdraw consent at any time
- Lodge a complaint with a supervisory authority in your jurisdiction
9. Data Security
We take reasonable steps to protect your personal information from misuse, interference, loss, and unauthorised access, modification, or disclosure. Our security measures include:
- Encryption of data in transit using TLS/SSL
- Access controls limiting who within our organisation can access personal data
- Use of reputable, security-certified third-party service providers
10. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, or legal requirements. We will post the updated policy on this page with a revised "Last updated" date. We encourage you to review this page periodically.
11. Contact Us
If you have any questions about this Privacy Policy, wish to exercise your rights, or want to make a complaint, please contact us:
- Kongtek Pty Ltd
- Melbourne, Australia
- Email: privacy@kongtek.io
You may also contact the Office of the Australian Information Commissioner (OAIC) at www.oaic.gov.au if you are not satisfied with our response.