Privacy Policy
Last updated: 22 August 2026
Macidton Consulting respects your privacy and is committed to handling personal information responsibly, transparently and securely.
This Privacy Policy explains the kinds of personal information we may collect and hold, how we collect and use it, when we may disclose it, how long we retain it, and how you can contact us about your information.
We manage personal information in accordance with this policy and, where applicable, the Privacy Act 1988 (Cth), the Australian Privacy Principles and other applicable privacy laws.
1. Who we are
Macidton Consulting Pty Ltd
ABN 97 808 592 146
Website: https://macidton.com.au
Email: privacy@macidton.com.au
Postal address: PO Box 45, Mount Eliza VIC 3930, Australia
2. Personal information we collect
The personal information we collect depends on how you interact with us. It may include:
- your name and business contact details, including email address and telephone number;
- your job title, role, employer or organisation;
- information you provide when making an enquiry or booking a meeting;
- emails, correspondence, meeting notes and other records of our communications;
- information relevant to consulting, advisory or other services we provide to you or your organisation;
- proposal, contractual, invoicing and billing information;
- marketing subscription and communication preferences;
- information you provide through customer research, surveys or feedback activities; and
- technical information generated when you use our website, such as IP address, browser information, device information, server logs, pages requested and referral information, where this is collected by our website, hosting, security or analytics systems.
Business contact information, including a person’s name and work email address, may still constitute personal information where it identifies or reasonably identifies an individual.
3. Sensitive information
We do not ordinarily seek to collect sensitive information such as health information, racial or ethnic origin, political opinions, religious beliefs, sexual orientation or criminal records.
If sensitive information is provided to us, we will only collect, use or retain it where it is reasonably necessary for a legitimate purpose and where we have the consent or other lawful basis required to do so.
4. How we collect personal information
We usually collect personal information directly from you, including when you:
- contact us by email, telephone or through our website;
- book or attend a meeting;
- request a proposal or engage us to provide services;
- communicate or work with us during a consulting engagement;
- subscribe to receive information from us;
- respond to a customer research survey, questionnaire or feedback request; or
- otherwise provide information to us.
We may also obtain professional or business contact information from referrals, publicly available business sources, company websites, professional networking platforms or other legitimate business sources where it is reasonably necessary for our activities.
Some information may also be generated automatically through website hosting, security systems, analytics tools, email systems and other technology used to operate our business.
5. Customer research and surveys
We may invite clients, prospective clients, business contacts and other selected participants to take part in customer research, including research relating to business needs, sales practices, ideal customer profiles, value propositions, service development and client feedback.
Unless a particular survey expressly states otherwise, Macidton customer research surveys are not anonymous.
Where we issue an individual survey invitation, the invitation may be associated with the recipient’s name, business email address and organisation. A unique survey link is used to associate the response with the invitation. The link identifies the invitation through which the response was received; it does not independently verify that the named recipient personally completed the survey if the link has been forwarded to another person.
We design our private survey system to minimise unnecessary collection of technical information. For Macidton-managed private surveys, we do not intentionally retain IP address, browser, device or location information as part of the survey response. Our website hosting, security or network providers may nevertheless create ordinary technical or security logs as part of operating their services.
We may analyse survey responses individually or in aggregate to understand customer needs, improve our services, develop business and sales frameworks, test propositions and produce research findings.
Direct invitation information such as the respondent’s name, invited email address, company and administrative notes is ordinarily removed after the research period in accordance with the retention approach described below. Survey answers may be retained for ongoing research and analysis.
Removing direct invitation details does not necessarily make every survey answer anonymous. For example, a participant may include their name, company or other identifying information in a free-text answer. Information contained within survey responses is retained as submitted unless it is separately corrected, removed or de-identified.
6. Why we collect and use personal information
We may collect, hold, use and disclose personal information where reasonably necessary to:
- respond to enquiries and communicate with you;
- understand your organisation, requirements and business needs;
- prepare proposals and provide consulting, advisory or related services;
- manage client relationships and engagements;
- conduct customer, market and service research;
- improve our services, methodologies, website and customer experience;
- administer contracts, invoicing and business records;
- maintain the security and integrity of our website, systems and information;
- meet legal, regulatory, accounting and taxation obligations;
- manage complaints or disputes; and
- send business updates, articles or marketing communications where permitted.
7. Marketing communications
We may send relevant business or marketing communications where you have consented to receive them or where otherwise permitted by law.
Marketing communications will identify Macidton Consulting and provide a straightforward way to unsubscribe. You can opt out at any time using the unsubscribe option provided in the communication or by emailing privacy@macidton.com.au.
An unsubscribe request will not prevent us from sending non-marketing communications that are reasonably necessary for an existing enquiry, contract, engagement, transaction or other business relationship.
8. When we disclose personal information
We do not sell personal information.
We may disclose personal information where reasonably necessary to service providers that help us operate our business, including providers of:
- website hosting and website services;
- email and communications;
- cloud file storage and document management;
- calendar and meeting services;
- customer relationship and business administration systems;
- survey and form technology;
- analytics, security and technical support;
- accounting, invoicing or payment services; and
- professional advice such as legal, accounting or technology services.
Where we are working with another person or organisation on your behalf, we may disclose information to them where you have authorised us to do so or where the disclosure is otherwise reasonably necessary and permitted.
We may also disclose information where required or authorised by law, to protect our legal rights, or where reasonably necessary to investigate or respond to suspected fraud, security incidents or unlawful activity.
9. Overseas processing and disclosure
Some of the technology and service providers we use operate internationally. As a result, personal information may be processed, stored or made accessible outside Australia, including in the United States and other jurisdictions in which our service providers operate.
Where the Australian Privacy Principles apply to an overseas disclosure, we take reasonable steps required in the circumstances to ensure personal information is handled consistently with applicable privacy requirements.
The locations used by technology providers can change as their infrastructure and services change. You may contact us at privacy@macidton.com.au if you would like further information about the handling of your personal information by a particular service provider.
10. How we protect personal information
We take reasonable technical and organisational steps appropriate to the nature of the information we hold to protect personal information from misuse, interference, loss, unauthorised access, modification and disclosure.
These measures include appropriate access controls, website and system security, software maintenance, backups, secure service providers and limiting access to information according to business need.
No internet service, electronic storage system or transmission method can be guaranteed to be completely secure. If you become aware of a security concern involving information you have provided to us, please contact privacy@macidton.com.au.
11. How long we keep personal information
We retain personal information only for as long as it is reasonably required for the purpose for which it was collected, for a related lawful purpose, or to meet legal, contractual, accounting or record-keeping requirements.
Our general retention approach includes:
- Enquiries and prospective-client records: ordinarily retained for up to 24 months after the last substantive interaction, unless there is an ongoing business reason to retain them.
- Client and engagement records: generally retained for the period reasonably required to manage the engagement and meet applicable legal, taxation, accounting and professional record-keeping obligations. Depending on the record, this may be several years after the engagement ends.
- Marketing records: retained while you remain subscribed or while we have a lawful reason to maintain the record. Unsubscribe and suppression information may be retained where necessary to ensure we respect your communication preference.
- Private customer research: direct invitation information such as respondent name, invited email address, company and administrative notes is ordinarily retained until the research is closed and then for a limited analysis and follow-up period. Our standard setting is 90 days after survey closure, although a shorter or longer period may be used where appropriate for the particular research. Direct identity may also be removed earlier.
- Research responses: survey answers and research findings may be retained for longer where they remain useful for legitimate research, service improvement or analysis. Where direct respondent identity has been removed, we take reasonable steps to avoid unnecessarily reconnecting the research to the respondent.
- Technical and security information: retained according to the operational and security requirements of our website, hosting and technology providers.
Where personal information is no longer reasonably required and there is no legal or other legitimate requirement to retain it, we take reasonable steps to delete it, place it beyond use or remove identifying information as appropriate.
Historical backups may temporarily contain information that existed at the time a backup was created. Such copies are subject to backup security and retention processes and are not ordinarily used for active business purposes.
12. Accessing or correcting your information
You may ask us for access to personal information we hold about you or request that inaccurate, incomplete or out-of-date information be corrected.
Contact privacy@macidton.com.au and provide enough information for us to identify the relevant records.
We may need to verify your identity before providing access or making a correction. We will respond within a reasonable period and, where the Australian Privacy Principles apply, in accordance with applicable access and correction requirements.
13. Anonymity and pseudonyms
You may choose not to identify yourself, or to use a pseudonym, when dealing with us where this is practical and lawful.
In some circumstances we need to know who you are to respond appropriately, provide services, enter into an agreement, issue an identified research invitation, process a transaction or meet legal obligations.
A customer research survey issued through an identified individual invitation is not anonymous unless the survey specifically states otherwise.
14. Cookies, analytics and website technical information
Our website may use cookies and similar technologies that are necessary for website functionality, administration, security and user preferences.
Our hosting, security and website systems may also record technical information such as IP address, browser information, requested pages, date and time of access and referring information for operational, security and diagnostic purposes.
Where we use analytics tools, those tools may collect information about how visitors use our public website. The technologies used on the public website may differ from those used for private customer research pages, which are designed to minimise unnecessary third-party and technical data collection.
You can control cookies through your browser settings. Blocking some cookies may affect website functionality.
15. Data breaches
If we become aware of a suspected data breach involving personal information, we will take reasonable steps to contain and assess the incident and reduce the risk of harm.
Where the Notifiable Data Breaches scheme under the Privacy Act 1988 applies and an eligible data breach is likely to result in serious harm, we will notify affected individuals and the Office of the Australian Information Commissioner as required by law.
16. Privacy complaints
If you believe we have not handled your personal information appropriately, please contact us first at privacy@macidton.com.au.
Please describe your concern and provide any information that will help us investigate it. We will acknowledge and investigate legitimate privacy complaints and aim to provide a response within 30 days.
If the Australian Privacy Principles apply to the matter and you are not satisfied with our response, you may be able to make a complaint to the Office of the Australian Information Commissioner.
Office of the Australian Information Commissioner
Telephone: 1300 363 992
Website: https://www.oaic.gov.au
17. Changes to this Privacy Policy
We may update this Privacy Policy when our business, technology, information-handling practices or legal obligations change.
