Privacy Policy

Last Updated: March 2025

At vestralumeno, we take your privacy seriously. This policy outlines how we collect, use, store, and protect your personal information when you interact with our financial statement analysis education services.

We operate in accordance with the Australian Privacy Principles (APPs) under the Privacy Act 1988 (Cth) and are committed to transparent data handling practices that respect your rights and protect your information.

Information We Collect

Personal Information You Provide

When you engage with our educational services, we collect information that you voluntarily provide to us. This helps us deliver tailored learning experiences and communicate effectively about our programs.

  • Contact Details: Your name, email address, phone number, and postal address when you inquire about our courses or register for programs
  • Educational Background: Information about your current knowledge level, professional experience, and learning goals to customize program recommendations
  • Account Information: Username, password (encrypted), and profile preferences when you create a learning portal account
  • Payment Information: Billing details and transaction records when you enroll in paid programs (processed securely through third-party payment processors)
  • Communication Records: Content from emails, phone calls, or messages you send to our support team

Information Collected Automatically

Our website and learning platform collect certain technical information to improve functionality and understand how users interact with our content.

  • Usage Data: Pages visited, time spent on content, course progress, and learning module interactions
  • Device Information: Browser type, operating system, IP address, and device identifiers
  • Cookies and Tracking: We use cookies to maintain login sessions, remember preferences, and analyze site performance (see Cookie Policy section below)
  • Performance Metrics: Assessment scores, quiz results, and completion rates to track your educational progress

How We Use Your Information

We process your personal data for specific, legitimate purposes related to delivering quality financial education services. Here's what we do with the information we collect:

Primary Purpose: All data collection serves our core mission of providing effective financial statement analysis education tailored to Australian accounting standards and business practices.

  • Program Delivery: Managing your enrollment, providing access to learning materials, tracking your progress, and issuing completion certificates
  • Communication: Sending course updates, responding to inquiries, providing technical support, and sharing relevant educational resources
  • Personalization: Customizing learning paths based on your knowledge level, adjusting content difficulty, and recommending relevant modules
  • Payment Processing: Handling transactions, issuing receipts, managing refunds, and maintaining financial records as required by Australian tax law
  • Service Improvement: Analyzing usage patterns to enhance course content, identify technical issues, and develop new educational materials
  • Legal Compliance: Meeting regulatory obligations, maintaining business records, and protecting our legal rights when necessary
  • Marketing: Informing you about new courses, program updates, and educational opportunities (you can opt out at any time)

We don't sell your personal information to third parties. We don't use your data for purposes beyond what we've described here without obtaining your explicit consent first.

Data Sharing and Disclosure

We share your information only when necessary to operate our services or when required by law. Transparency about who has access to your data is important to us.

Service Providers

We work with trusted third-party vendors who help us deliver our educational platform. These providers are contractually obligated to protect your information and use it only for specified purposes:

  • Payment Processors: Secure handling of credit card and banking information (we never store full payment card details ourselves)
  • Cloud Hosting Services: Storage of learning materials and platform infrastructure (servers located in Australia where possible)
  • Email Service Providers: Delivery of course communications, newsletters, and support responses
  • Analytics Tools: Understanding website traffic and user behavior to improve our services
  • Customer Support Software: Managing inquiries and maintaining communication history for better service

Legal Requirements

We may disclose your information when legally required or to protect legitimate interests:

  • In response to valid legal requests from Australian law enforcement or regulatory bodies
  • To comply with court orders, subpoenas, or statutory obligations
  • To protect our rights, property, or safety, or that of our students and staff
  • During business transitions such as mergers or acquisitions (with notice provided to affected users)

We never share your educational progress, assessment results, or learning data with employers or third parties without your explicit written consent.

Data Security Measures

Protecting your information is a top priority. We implement industry-standard security practices, though no system can be 100% secure.

Security Layer Protection Measures
Data Transmission SSL/TLS encryption for all data transferred between your device and our servers
Data Storage Encrypted databases with restricted access controls and regular security audits
Access Control Role-based permissions ensuring staff access only necessary information for their duties
Account Security Password encryption, secure authentication, and optional two-factor authentication
Infrastructure Firewalls, intrusion detection systems, and regular vulnerability assessments
Backup Systems Regular encrypted backups stored in secure, geographically separated locations

Our staff receive regular training on data protection practices and are bound by confidentiality agreements. We monitor systems for suspicious activity and have incident response procedures in place.

Your Role in Security: Use strong, unique passwords for your account. Don't share login credentials. Log out when using shared devices. Report any suspicious activity to our support team immediately.

Your Privacy Rights

Under Australian privacy law, you have significant control over your personal information. We make it straightforward to exercise these rights.

Access Your Data

Request a copy of all personal information we hold about you, including learning records and account history.

Correction Rights

Update or correct inaccurate information in your profile or records at any time through your account settings.

Data Portability

Receive your data in a structured, commonly used format for transfer to another service provider.

Deletion Requests

Request deletion of your personal data, subject to legal record-keeping requirements and active enrollments.

Marketing Opt-Out

Unsubscribe from promotional emails at any time using the link in messages or through account preferences.

Restrict Processing

Limit how we use your information in specific circumstances while maintaining essential service functions.

How to Exercise Your Rights

To make a privacy request, contact us using the details at the bottom of this page. We'll respond within 30 days of receiving your request. Some requests may take longer if they're complex or if we need to verify your identity for security purposes.

You can update basic account information yourself through the learning portal. For more comprehensive requests, we may ask for identification to prevent unauthorized access to your data.

Complaints Process

If you're concerned about how we've handled your personal information, contact our privacy officer first. We take complaints seriously and will investigate thoroughly. If you're not satisfied with our response, you have the right to lodge a complaint with the Office of the Australian Information Commissioner (OAIC).

Data Retention and Deletion

We keep your information only as long as necessary for the purposes we collected it or as required by law. Different types of data have different retention periods.

Retention Periods

  • Active Accounts: We maintain your profile and learning data while your account is active and for up to 12 months after your last login
  • Course Records: Educational transcripts, completion certificates, and assessment results are retained for 7 years to verify credentials and meet educational recordkeeping requirements
  • Financial Records: Transaction history and payment information kept for 7 years in compliance with Australian taxation law
  • Marketing Data: Contact lists and communication preferences retained until you unsubscribe or request deletion
  • Support Communications: Help desk tickets and correspondence archived for 3 years for quality assurance and training purposes
  • Website Analytics: Aggregated usage data retained indefinitely after anonymization; individual session data deleted after 24 months

Deletion Process

When retention periods expire or you request deletion, we remove your data from active systems. Some information may persist in backup systems for up to 90 days before permanent deletion occurs. Anonymized data used for statistical analysis cannot be deleted as it no longer identifies you personally.

If you have ongoing legal obligations (like unpaid fees) or active course enrollments, we may need to retain certain information until those matters are resolved.

Cookies and Tracking Technologies

Our website uses cookies and similar technologies to provide functionality and understand how people use our services. You have control over most of these technologies.

Types of Cookies We Use

  • Essential Cookies: Required for the learning platform to function properly, including login sessions and security features. These cannot be disabled without breaking site functionality.
  • Performance Cookies: Help us understand how visitors interact with our website by collecting anonymous usage statistics. These identify patterns but don't identify you personally.
  • Functional Cookies: Remember your preferences, language settings, and customization choices to improve your experience.
  • Marketing Cookies: Track your interaction with our promotional content to measure campaign effectiveness and limit how often you see the same advertisements.

Managing Cookie Preferences

Most web browsers accept cookies automatically, but you can modify your browser settings to decline cookies or alert you when websites set them. Be aware that disabling cookies may limit certain features of our learning platform.

You can control marketing cookies through your account settings or by using browser privacy tools. Essential cookies cannot be disabled as they're necessary for the platform to work.

International Data Transfers

We primarily store and process data within Australia. However, some of our service providers operate globally, which may involve transferring your information overseas.

When we transfer data internationally, we ensure appropriate safeguards are in place:

  • Service providers must comply with privacy standards equivalent to Australian Privacy Principles
  • Contractual clauses requiring protection of transferred data and limiting its use
  • Regular audits of international vendors to verify compliance with privacy commitments
  • Preference for Australian or privacy-certified international providers where practical

Countries we may transfer data to include the United States and European Union member states, typically for cloud hosting and software services. These transfers are always documented and subject to protection requirements.

Children's Privacy

Our financial statement analysis courses are designed for adults in professional or tertiary education contexts. We don't knowingly collect personal information from anyone under 18 years of age without parental consent.

If you're under 18 and wish to enroll in our programs, we require a parent or guardian to create the account and manage enrollment on your behalf. If we discover we've inadvertently collected information from someone under 18 without proper consent, we'll delete that data promptly.

Parents or guardians who believe their child has provided us with personal information should contact our privacy officer immediately.

Changes to This Privacy Policy

We review and update this privacy policy periodically to reflect changes in our practices, technology, or legal requirements. The "Last Updated" date at the top of this page shows when the most recent changes were made.

For significant changes that affect how we handle your personal information, we'll notify you via email or through a prominent notice on our website before the changes take effect. Continuing to use our services after changes are implemented indicates your acceptance of the updated policy.

We encourage you to review this policy occasionally to stay informed about how we protect your information. Previous versions of this policy are available upon request.

Contact Our Privacy Officer

If you have questions about this privacy policy, want to exercise your privacy rights, or have concerns about how we handle your data, please reach out to us:

Phone: +61 404 313 743
Mail: Privacy Officer, vestralumeno, 28/8 Victoria Ave, Castle Hill NSW 2154, Australia

We aim to respond to all privacy inquiries within 5 business days. Complex requests may take up to 30 days, and we'll keep you informed of progress.