GDPR Policy
1. Introduction
The General Data Protection Regulation (GDPR) is a European Union law that protects personal data. Even though we are based in Australia, we respect and comply with the GDPR for all visitors, including those from the EU/EEA.
This policy explains your GDPR rights and how to use them.
2. Data Controller
The data controller for this website is:
Aurelia Grand Resort & Casino
37 Yarborough Avenue, Perth, WA 6000, Australia
Email: support@musegiftscoast.com
Website: musegiftscoast.com
The data controller decides how and why your personal data is processed.
3. Your GDPR Rights
Under the GDPR, you have the following rights:
3.1 Right of Access
You can request a copy of all personal data we hold about you. We will provide this within 30 days of your request, free of charge.
3.2 Right to Correction
If any of your personal data is incorrect or incomplete, you can ask us to fix it. We will make corrections as soon as possible.
3.3 Right to Deletion (Right to Be Forgotten)
You can ask us to delete your personal data. We will do this unless we have a legal reason to keep it (such as tax or accounting records). We will confirm deletion within 30 days.
3.4 Right to Restriction
You can ask us to limit how we process your data. This means we will store your data but not use it until the restriction is lifted. You can request this if:
- You dispute the accuracy of your data.
- The processing is unlawful but you prefer restriction over deletion.
- We no longer need the data but you need it for legal claims.
- You have objected to processing and are waiting for a response.
3.5 Right to Data Portability
You can ask for your personal data in a structured, commonly used, machine-readable format (such as CSV or JSON). You can also ask us to transfer your data directly to another controller where technically possible.
3.6 Right to Objection
You can object to processing of your personal data based on legitimate interests or direct marketing. If you object to marketing, we will stop immediately. For other objections, we will review and respond within 30 days.
4. How to Use Your Rights
To use any of your GDPR rights, contact us:
Email: support@musegiftscoast.com
Please include:
- Your full name.
- The email address linked to your data.
- Which right you want to use.
- Any details that help us find your data.
We will verify your identity before processing your request. We respond within 30 days. If the request is complex, we may extend this by 60 days, but we will let you know.
5. Consent
Where we rely on consent to process your data, you have the right to withdraw consent at any time. Withdrawal does not affect processing done before you withdrew consent.
To withdraw consent:
- Email us at support@musegiftscoast.com with the subject "Withdraw Consent".
- Use the cookie settings on our website to change your cookie preferences.
- Click the unsubscribe link in any marketing email.
6. Cookie Management
We use cookies on our website. You can manage cookies in several ways:
- Cookie banner: When you first visit our site, you can choose which cookies to accept.
- Browser settings: Most browsers let you block or delete cookies. Check your browser's help section for instructions.
- Contact us: Email support@musegiftscoast.com and we can update your preferences.
Essential cookies cannot be turned off as they are needed for the website to work.
For full details on our cookies, see our Privacy Policy.
7. Data Processing Activities
We process personal data for the following activities:
| Activity | Data Used | Legal Basis | Retention |
|---|---|---|---|
| Website enquiries | Name, email, phone | Consent | 2 years |
| Bookings | Name, email, phone, payment | Contract | 7 years |
| Marketing emails | Name, email | Consent | Until withdrawn |
| Analytics | IP, browser, pages visited | Legitimate interest | 26 months |
| Push notifications | Device token, email | Consent | Until withdrawn |
8. Data Transfers
Your data is stored in Australia. Some of our service providers may store data outside Australia or the EU/EEA. When this happens, we make sure adequate safeguards are in place, such as:
- Standard Contractual Clauses approved by the European Commission.
- Data processing agreements with all third parties.
- Encryption of data in transit and at rest.
9. Data Breaches
If a data breach occurs that is likely to affect your rights, we will:
- Notify the relevant data protection authority within 72 hours.
- Notify you directly if the breach poses a high risk to your rights.
- Take immediate steps to contain and fix the breach.
10. Complaints
If you are not happy with how we handle your data, you can:
- Contact us first at support@musegiftscoast.com. We will try to resolve your concern.
- Lodge a complaint with the Office of the Australian Information Commissioner (OAIC) at oaic.gov.au.
- If you are in the EU/EEA, contact your local data protection authority.
11. Changes to This Policy
We may update this GDPR Policy as laws or our practices change. Updates will be posted on this page with a new date. We encourage you to review this policy regularly.
12. Contact
For any GDPR-related questions or requests:
Aurelia Grand Resort & Casino
37 Yarborough Avenue, Perth, WA 6000, Australia
Email: support@musegiftscoast.com
Website: musegiftscoast.com