GDPR & TLS Compliance

At Ecopha Bioplastics, we prioritize your data privacy and security by adhering to GDPR (General Data Protection Regulation) standards and implementing TLS (Transport Layer Security) protocols across all our platforms, including bioplastics.au, my.bioplastics.au, and other affiliated multistore websites. This ensures a safe and secure environment for all our customers and business partners.

1. GDPR Compliance

  • What is GDPR?
    • GDPR is a European Union regulation designed to protect individuals' data and privacy.
    • Although it is EU-specific, Ecopha Bioplastics adopts GDPR principles globally to enhance trust and transparency.
  • Your Rights Under GDPR:
    • Access Your Data: View the personal information we store.
    • Rectify Data: Update incorrect or incomplete information.
    • Delete Data: Request the deletion of your data.
    • Restrict Processing: Limit how your data is used.
    • Data Portability: Transfer your data to another service provider.
    • Object to Processing: Opt-out of marketing or profiling activities.
  • How We Ensure GDPR Compliance:
    • Data collection is limited to what is necessary for fulfilling orders, RFQs, and customer support.
    • Consent is obtained before using personal information for marketing or analytics.
    • Data processing agreements are in place with third-party vendors and partners to ensure compliance.

2. TLS (Transport Layer Security)

  • What is TLS?
    • TLS is a protocol that encrypts data exchanged between your browser and our servers, ensuring secure transactions and protecting sensitive information.
  • How TLS Protects You:
    • Encrypts personal and payment information during checkout.
    • Secures your login credentials and account details.
    • Protects against data breaches during online transactions.
  • Our Security Measures:
    • All websites operate under HTTPS, ensuring encrypted communication.
    • Regular security updates and audits to identify and fix vulnerabilities.
    • Advanced firewalls and intrusion detection systems to safeguard data.

3. Data Collection and Use

  • What Data Do We Collect?
    • Personal Information: Name, email, phone number, billing/shipping address.
    • Payment Information: Credit/debit card details are processed through secure gateways.
    • Account Details: Login credentials for single sign-on across domains.
  • Why Do We Collect This Data?
    • To process orders, manage RFQs, and provide customer support.
    • To improve user experience through personalized recommendations.
    • To send updates, promotions, and service-related communications.
  • How Long Do We Retain Your Data?
    • Personal data is retained only as long as necessary for fulfilling orders or complying with legal obligations.
    • Inactive accounts may be anonymized or deleted after a specified period.

4. Cookie Policy

  • What Are Cookies?
    • Cookies are small files stored on your browser to enhance your browsing experience by remembering preferences, saving carts, and enabling faster page loads.
  • Types of Cookies We Use:
    • Essential Cookies: For website functionality (e.g., login, checkout).
    • Performance Cookies: To analyze site performance and user behaviour.
    • Functional Cookies: To remember user settings like language and location.
  • Managing Cookies:
    • You can disable cookies in your browser settings, but this may limit functionality.
    • Clearing cookies may log you out and reset saved preferences.

5. Transparency and Consent

  • Obtaining Consent:
    • Consent is required before using your data for marketing or analytics.
    • You can withdraw consent at any time via your account settings or by contacting us.
  • Transparency:
    • We provide clear information about how your data is collected, stored, and used.
    • Regular updates to our policies are communicated via email or website announcements.

6. Third-Party Data Sharing

  • Who Do We Share Your Data With?
    • Vendors and business partners for order fulfilment and RFQs.
    • Payment gateways for secure transaction processing.
    • Analytics and marketing providers for improving services.
  • How We Protect Shared Data:
    • Data shared with third parties is encrypted and limited to what is necessary.
    • Third parties are contractually obligated to comply with GDPR and other data protection laws.

7. Security and Breach Notification

  • Our Security Measures:
    • Multi-layered security systems to protect data.
    • Regular penetration testing and vulnerability assessments.
  • Breach Notification:
    • In the unlikely event of a data breach, affected users will be notified within 72 hours.
    • Steps will be taken immediately to mitigate risks and resolve the issue.

8. Contact Us
For questions about GDPR, TLS, or data privacy, please contact:
At Ecopha Bioplastics, we are committed to protecting your privacy and ensuring a secure shopping experience.