Privacy Policy
Last Updated: February 15, 2025
At virelathorn, we take your privacy seriously. This policy explains how we collect, use, store, and protect your personal information when you use our scenario modeling platform and related services.
We're committed to transparency about our data practices. If something isn't clear here, reach out and we'll explain it in plain English.
Questions about your privacy?
Contact our privacy team at contact@virelathorn.com or call +61412754448 during business hours.
You can also write to us at 3/791-801 Anzac Parade, Maroubra NSW 2035, Australia
Information We Collect
Personal Information You Provide
When you register for virelathorn or use our services, you share certain information with us. This helps us create your account, provide personalized scenario modeling, and keep you informed about your financial projections.
- Account details: name, email address, phone number, and password
- Financial information: income ranges, expense categories, investment goals, and scenario parameters
- Profile preferences: notification settings, dashboard configurations, and modeling preferences
- Payment information: credit card details, billing address (processed through secure third-party providers)
- Communication records: support tickets, feedback, and correspondence with our team
Information Collected Automatically
Like most online services, we automatically collect certain technical information when you use our platform. This helps us understand how people interact with our tools and where we can improve.
- Device information: browser type, operating system, device identifiers
- Usage data: pages viewed, features accessed, time spent on platform, scenario modeling patterns
- Location data: IP address and general geographic location
- Performance metrics: load times, error reports, system diagnostics
Information From Third Parties
Sometimes we receive information about you from other sources, particularly when you connect external accounts or use integrated services within our platform.
- Financial data connections: when you link bank accounts or financial institutions (with your explicit permission)
- Authentication services: if you sign in using third-party credentials
- Public databases: business registries or professional networks when relevant to your account verification
How We Use Your Information
We're not in the business of selling your data. We use your information to run our service, make it better, and keep you informed about things that matter to your financial planning.
Primary Service Functions
- Creating and maintaining your account with secure authentication
- Processing your financial scenarios and generating projections based on your inputs
- Storing your modeling data and preferences for future sessions
- Processing payments and managing your subscription
- Providing customer support and responding to your inquiries
- Sending service-related notifications about your account or scenarios
Platform Improvement
We analyze usage patterns to understand what works and what doesn't. This helps us build features that actually matter to you.
- Analyzing how users interact with different modeling tools to improve interface design
- Identifying technical issues and performance bottlenecks
- Testing new features with user groups to refine functionality
- Understanding which scenario types are most valuable to our community
Communication and Updates
We'll send you information about your account, important updates, and occasionally suggestions for features you might find useful. You control most of these preferences.
- Essential account notifications (you can't opt out of these)
- Product updates and new feature announcements (optional)
- Educational content about financial scenario modeling (optional)
- Platform tips and best practices (optional)
Marketing Communication: We won't bombard you with promotional emails. When we do send marketing content, there's always an unsubscribe option. Service-related emails (like password resets or billing notifications) can't be disabled because they're essential to account operation.
Data Storage and Security
Your financial data is sensitive, and we treat it that way. We've implemented multiple layers of security to protect your information from unauthorized access, alteration, or disclosure.
Security Measures
- End-to-end encryption for data transmission using TLS 1.3 protocol
- AES-256 encryption for data at rest in our databases
- Multi-factor authentication options for account access
- Regular security audits conducted by independent third parties
- Automated threat detection and monitoring systems
- Restricted employee access with role-based permissions and audit logs
- Secure backup systems with encrypted redundancy
Data Storage Locations
We store your data on secure servers located in Australia, in compliance with the Australian Privacy Principles under the Privacy Act 1988. Our infrastructure partners maintain ISO 27001 certification and SOC 2 Type II compliance.
Data Breach Protocol: In the unlikely event of a data breach affecting your personal information, we'll notify you within 72 hours via email and provide clear information about what happened, what data was affected, and what steps we're taking. We're also required to notify the Office of the Australian Information Commissioner (OAIC) under the Notifiable Data Breaches scheme.
Data Retention Periods
| Data Type | Retention Period | Reason |
|---|---|---|
| Account information | Duration of active account + 3 years | Legal compliance and dispute resolution |
| Financial modeling data | Duration of active account + 2 years | Service provision and analysis |
| Payment records | 7 years after transaction | Tax and accounting requirements |
| Support communications | 3 years after last contact | Customer service improvement |
| Usage analytics | 2 years | Platform optimization |
Your Privacy Rights
Under Australian privacy law, you have significant control over your personal information. Here's what you can do and how to do it.
Access Your Data
You can request a complete copy of all personal information we hold about you. We'll provide this in a structured, commonly used format within 30 days.
Correct Information
Found something that's not quite right? You can update most information directly in your account settings, or contact us to correct data you can't change yourself.
Delete Your Data
You can request deletion of your account and associated data at any time. Some information may be retained for legal compliance, but we'll delete everything else within 90 days.
Restrict Processing
You can ask us to limit how we use your information, particularly for marketing purposes or optional features you're not using.
Data Portability
Want to move your data elsewhere? We'll provide your information in a machine-readable format that you can use with other services.
Object to Processing
You can object to certain types of data processing, and we'll stop unless we have compelling legitimate grounds to continue.
How to Exercise Your Rights
Making a privacy request is straightforward. Email us at contact@virelathorn.com with your request, and we'll verify your identity before proceeding. Most requests are handled within 30 days, though complex requests might take up to 60 days.
If you're not satisfied with how we handle your privacy request, you have the right to lodge a complaint with the Office of the Australian Information Commissioner (OAIC) at oaic.gov.au.
Data Sharing and Third Parties
We don't sell your personal information to anyone. Period. But we do work with certain service providers who help us run our platform, and they might process your data on our behalf.
Service Providers We Work With
- Cloud hosting providers for secure data storage and platform infrastructure
- Payment processors for subscription billing and financial transactions
- Email service providers for account notifications and communications
- Analytics tools to understand platform usage and improve user experience
- Customer support platforms to manage and respond to your inquiries
- Security services for threat detection and platform protection
All our service providers are contractually obligated to protect your data and can only use it for the specific purposes we authorize. They can't use your information for their own purposes or share it with others.
When We're Required to Share Information
Sometimes we're legally obligated to share information, though this is rare. We'll only do this when:
- We receive a valid legal request from law enforcement or regulatory authorities
- It's necessary to comply with Australian law or legal proceedings
- We need to protect our rights, property, or safety, or that of our users
- We're responding to suspected fraud or security incidents
In these situations, we'll carefully review each request and only share the minimum information necessary. Where legally permitted, we'll notify you before sharing your data.
Business Transfers: If virelathorn is acquired by or merges with another company, your information would be transferred to the new entity. We'd notify you at least 30 days before this happens and explain any changes to how your data will be handled. You'd have the option to delete your account before the transfer if you're not comfortable with the change.
International Data Transfers
While we primarily store data in Australia, some of our service providers operate globally. When your information is transferred outside Australia, we ensure it receives equivalent protection through approved mechanisms.
How We Protect International Transfers
- Standard contractual clauses approved by relevant data protection authorities
- Verification that recipient countries have adequate privacy protections
- Additional technical safeguards like encryption during transfer
- Regular audits of international service providers' security practices
You have the right to request information about where your data is stored and processed. Just email us and we'll provide specific details about our current infrastructure and service provider locations.
Children's Privacy
virelathorn is designed for adults managing their financial scenarios. We don't knowingly collect personal information from anyone under 18 years old. If you're a parent or guardian and believe your child has provided us with personal information, please contact us immediately and we'll delete it.
Cookies and Tracking Technologies
We use cookies and similar technologies to make our platform work properly and to understand how people use it. Here's what's happening behind the scenes.
Types of Cookies We Use
- Essential cookies: Required for basic platform functionality like maintaining your login session and remembering your preferences
- Performance cookies: Help us understand which features are used most and where users encounter issues
- Functional cookies: Remember your settings and customization choices
- Analytics cookies: Provide insights into user behavior patterns to help us improve the platform
You can control cookie preferences through your browser settings. Keep in mind that blocking essential cookies will prevent certain platform features from working properly.
Do Not Track Signals
We respect Do Not Track browser settings. When your browser sends a DNT signal, we disable non-essential tracking and analytics on your account.
Changes to This Privacy Policy
We update this policy occasionally to reflect changes in our practices, technology, or legal requirements. When we make significant changes, we'll notify you by email and display a prominent notice on our platform at least 30 days before the changes take effect.
The "Last Updated" date at the top of this page shows when we most recently revised the policy. We encourage you to review this page periodically to stay informed about how we're protecting your information.
Continued use of virelathorn after policy changes indicates your acceptance of the updated terms. If you disagree with changes, you can delete your account before they take effect.
Contact Information
We're here to answer questions about your privacy and how we handle your data. Don't hesitate to reach out if something's unclear or you want to exercise your privacy rights.
Privacy Officer
virelathorn Financial Modeling Services
3/791-801 Anzac Parade, Maroubra NSW 2035, Australia
Email: contact@virelathorn.com
Phone: +61412754448
Response time: We aim to respond to privacy inquiries within 5 business days
For general data protection questions or concerns about Australian privacy law compliance, you can also contact the Office of the Australian Information Commissioner:
OAIC Website: oaic.gov.au | Phone: 1300 363 992