Privacy Policy

Last updated: July 2026

This Privacy Policy is written for the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs). If you are visiting from outside Australia, see the International visitors section — we extend equivalent rights to you regardless of where you live.

1. Who we are

Velosites is operated by VISHKRMA PTY LTD ATF VISHKRMA FAMILY TRUST, trading as Velosites (ABN 37 122 729 457, ACN 696 066 029) of Level 1, 331 High Street, Penrith NSW 2750, Australia("Velosites", "we", "us"). We take your privacy seriously. This policy explains how we collect, hold, use and disclose your personal information in accordance with the Privacy Act 1988 (Cth) and the Australian Privacy Principles.

2. What personal information we collect

Account information

  • Business name and contact name
  • Email address and phone number
  • Country/region
  • Payment information (processed securely by our payment providers — we never store your card number or CVV)

Project information

To build and manage your website, we collect:

  • Business details and descriptions
  • Brand assets (logos, colours, fonts)
  • Social media links
  • Content and images you provide
  • Design preferences and requirements

Information collected automatically

  • IP address
  • Browser type and version
  • Device information
  • Usage data and analytics (subject to your cookie choices — see Cookies & analytics)

We collect personal information directly from you (through forms, your account, email and phone) and automatically when you use our website. We do not collect sensitive information (such as health or biometric data), and you can deal with us anonymously for general enquiries where practicable.

3. How we use your information

We use your personal information to:

  • Create and manage your account
  • Build, host and maintain your website
  • Process payments and subscriptions
  • Communicate about your projects and provide customer support
  • Send service updates and notifications
  • Improve our services
  • Comply with our legal obligations

Direct marketing

We may send you information about our services that we think will interest you. Every marketing email includes an unsubscribe link, and you can opt out at any time by using that link or contacting us — opting out never affects your service.

4. Who we share your information with

We do not sell your personal information. We disclose it only to:

  • Service providers who help us deliver the service: payment processors (Stripe, Airwallex), hosting infrastructure providers, email service providers (including Titan Mail), and analytics providers
  • Professional advisers (accountants, lawyers) where required for the operation of the business
  • Government bodies and regulators where required or authorised by law
  • A purchaser or successor in connection with a merger, acquisition or sale of the business

Payment information is processed by Stripe Inc. (card payments) and Airwallex Pty Ltd (select payment methods). Stripe's privacy policy is at stripe.com/au/privacy and Airwallex's is at airwallex.com/au/legal/privacy-policy.

5. Overseas disclosure

Your website is hosted on infrastructure located in Australia. Some of our service providers, however, store or process data overseas — most notably payment processing (Stripe — United States) and analytics (Google — United States and other locations). Where personal information leaves Australia, we take reasonable steps to ensure the recipient handles it consistently with the Australian Privacy Principles, including by dealing with providers that maintain recognised data-protection safeguards.

6. 🍪 Cookies & analytics

Cookies are small text files stored on your device. We use:

  • Essential cookies — required for basic functionality (session management, security). Always enabled.
  • Analytics cookies — Google Analytics, to understand how our site is used. Loaded only after you consent via the cookie banner (we use Google Consent Mode, so analytics stays off until you say yes).
  • Marketing cookies — advertising and retargeting cookies, set only if you expressly enable them in the cookie banner. We do not enable these by default.

You can change your cookie choices at any time by:

  • Using the cookie banner / cookie settings on this site
  • Adjusting your browser cookie settings
  • Contacting us to request cookie deletion

7. Data security

We take reasonable steps to protect personal information from misuse, interference, loss, and unauthorised access, modification or disclosure, including:

  • SSL/TLS encryption for data in transit
  • Secure password hashing
  • Isolated, containerised hosting per client
  • Access controls, monitoring and regular security reviews

No method of transmission over the Internet is 100% secure, and we cannot guarantee absolute security.

Data breaches

If a data breach occurs that is likely to result in serious harm, we will notify affected individuals and the Office of the Australian Information Commissioner (OAIC) in accordance with the Notifiable Data Breaches scheme under the Privacy Act 1988 (Cth).

8. Data retention

We retain personal information for as long as your account is active or as needed to provide services, comply with legal obligations (financial records are kept for a minimum of 7 years under Australian tax law), or resolve disputes. When personal information is no longer needed, we take reasonable steps to destroy or de-identify it. You may request deletion of your personal data by contacting privacy@velosites.com, subject to these retention requirements.

9. Access, correction & your choices

You may at any time:

  • Access the personal information we hold about you
  • Correct information that is inaccurate, out of date or incomplete
  • Delete your account and data (subject to the retention requirements above)
  • Export your data in a portable format
  • Opt out of marketing communications

To exercise any of these, contact privacy@velosites.com. We respond to requests within 30 days (or any shorter timeframe required by applicable law), and we will not charge you for making a request.

10. Complaints

If you believe we have mishandled your personal information, contact us first at privacy@velosites.com and we will investigate and respond within 30 days. If you are not satisfied with our response, you can complain to the Office of the Australian Information Commissioner (OAIC) at oaic.gov.au or by calling 1300 363 992.

11. 🌍 International visitors

We are an Australian business and primarily serve Australian and New Zealand customers. If you are located in the European Union, United Kingdom, California, Brazil or another jurisdiction with its own data-protection law, we extend you the same rights described in this policy — access, correction, deletion, portability, objection to marketing — regardless of where you live. In particular:

  • We do not sell personal information, and never have.
  • Analytics and marketing cookies are off by default and only run with your consent.
  • You may request a copy, correction or deletion of your data at any time via privacy@velosites.com.
  • You retain the right to lodge a complaint with your local data protection authority.

12. Children's privacy

Our services are not intended for individuals under 18 years of age. We do not knowingly collect personal information from children.

13. Changes to this policy

We may update this Privacy Policy periodically. We will notify you of significant changes via email or through the platform. The "Last updated" date indicates when the policy was last revised.

14. Contact us

For privacy-related questions, concerns, or to exercise your rights, contact:

Entity: VISHKRMA PTY LTD ATF VISHKRMA FAMILY TRUST, trading as Velosites — ABN 37 122 729 457 — ACN 696 066 029

Address: Level 1, 331 High Street, Penrith NSW 2750, Australia

Phone: 1300 487 842

Email: privacy@velosites.com