Last Updated: August 5, 2026
While plum-crater is based in Australia, we respect the data protection rights of all individuals, including those in the European Economic Area. This page outlines our commitment to GDPR principles.
We process personal data based on one or more of the following legal grounds:
If GDPR applies to you, you have the following rights:
You have the right to request copies of your personal data. We may charge a reasonable fee if your request is clearly unfounded or excessive.
You have the right to request correction of inaccurate personal data and to have incomplete personal data completed.
You have the right to request deletion of your personal data under certain conditions, including when the data is no longer necessary for the purposes it was collected.
You have the right to request restriction of processing of your personal data under certain conditions.
You have the right to request transfer of your personal data to another organization or directly to you under certain conditions.
You have the right to object to processing of your personal data under certain conditions, including processing based on legitimate interests.
You have the right not to be subject to decisions based solely on automated processing, including profiling, which produces legal effects or similarly significantly affects you.
For questions about how we process your personal data or to exercise your GDPR rights, you may contact our data protection contact:
Email: [email protected]
Address: 47 Industrial Drive, Eagle Farm QLD 4009, Australia
We process the following categories of personal data:
Your data may be transferred to and processed in Australia. We ensure appropriate safeguards are in place when transferring data internationally.
We retain personal data only for as long as necessary to fulfill the purposes for which it was collected, including:
We implement appropriate technical and organizational measures to ensure a level of security appropriate to the risk, including:
In the event of a data breach that is likely to result in a risk to your rights and freedoms, we will notify affected individuals within 72 hours of becoming aware of the breach.
We work with third party service providers who process data on our behalf. All processors are carefully selected and required to maintain appropriate security measures and process data only as instructed.
If you are located in the EEA and believe we have not addressed your concerns appropriately, you have the right to lodge a complaint with your local data protection supervisory authority.
We may update our GDPR compliance information from time to time. Any changes will be posted on this page with an updated revision date.