Privacy Policy
Effective date: [INSERT DATE]
Privacy contact: admin@a-que.com
1. Scope
This Policy explains how A-Que handles personal information collected through the website, A-Que Cloud, subscriptions, enquiries, support and authorised marketing.
2. Information collected
Information may include names, contact details, organisation details, account credentials, subscription records, support communications and information entered into A-Que by authorised customers, including customer, supplier, member, employee and user records. Payment-card details should be handled by the payment provider rather than stored by A-Que.
3. How information is collected
Information may be collected directly from users, from an organisation administrator, through the website or application, during payment and support interactions, and automatically through necessary technical logs and approved website technologies.
4. Purposes of use
Information may be used to provide and secure A-Que, administer accounts and subscriptions, process payments, provide support, communicate service information, improve functionality, comply with law and send marketing where valid consent or another lawful basis exists.
5. Organisational data
A subscribing organisation is responsible for the personal information it enters and for ensuring it has authority to collect and use that information. A-Que processes organisational data to provide the service and according to documented instructions and applicable law.
6. Service providers and disclosure
A-Que may use carefully selected hosting, payment, communications, analytics and support providers. The final Policy must name or describe relevant provider categories, explain disclosures and identify countries or regions where information may be processed where required.
7. Storage and security
A-Que will use reasonable administrative, technical and organisational safeguards appropriate to the information held. No online service can guarantee absolute security. Users must protect credentials and report suspected unauthorised access promptly.
8. Retention and deletion
Information will be retained only for operational, contractual, legal and security purposes. Final retention periods for active accounts, cancelled subscriptions, backups, enquiries and financial records must be documented before publication.
9. Access, correction and complaints
Individuals may contact A-Que to request access to or correction of personal information, or to make a privacy complaint. Identity may need to be verified. The final Policy should state expected response timeframes and escalation options.
10. Data breaches
A-Que will assess suspected data breaches and notify affected individuals and regulators where required by applicable law. Internal response procedures should support investigation, containment, remediation and documentation.
11. International users
Privacy rights may vary by location. The final Policy and operating procedures must address mandatory rights in countries where A-Que intentionally offers services.
12. Changes and contact
Material changes will be communicated appropriately and the effective date updated. Privacy questions and requests may be sent to admin@a-que.com or another nominated privacy contact.