1. Introduction
Lewis Behr Consultants Pty Ltd ("Company," "we," "us," or "our"), an Australian company, operates the YourLawDocs website and services. This Privacy Policy explains how we collect, use, disclose, and safeguard your personal information when you visit our website or use our services.
We are committed to protecting your privacy and handling your data responsibly. This policy complies with:
- The Australian Privacy Act 1988 and Australian Privacy Principles (APPs)
- The European Union General Data Protection Regulation (GDPR) for EU/EEA users
- Other applicable privacy laws and regulations
By using our Service, you consent to the collection and use of your information as described in this Privacy Policy. If you do not agree with this policy, please do not use our Service.
2. Information We Collect
Information You Provide
Account Information:
- Name and email address
- Company or business name
- Country or region
- Password (stored securely hashed)
Document Form Data:
- Your business details (company name, address, registration numbers)
- Manufacturer information (company name, address, USCC)
- Product descriptions and specifications
- Contract terms and preferences you select
Payment Information:
- Payment is processed by Stripe; we do not store your full credit card numbers
- We receive billing address information
- We maintain transaction history and receipts
Trademark Service Data:
- Trademark name, design, and specimen images
- Business registration documents
- Contact information for CNIPA correspondence
Communications:
- Emails and messages you send to our support team
- Feedback and survey responses
Information Collected Automatically
- IP address
- Browser type and version
- Device information (operating system, device type)
- Pages visited and time spent on each page
- Referral source (how you found us)
- Error logs and diagnostic data
3. How We Use Your Information
We use the information we collect for the following purposes:
| Purpose | Legal Basis (GDPR) | Australian Privacy Principle |
|---|---|---|
| Provide our services and generate documents | Contract performance | APP 6 |
| Process payments | Contract performance | APP 6 |
| Send transactional emails (receipts, account updates) | Contract performance | APP 6 |
| Provide customer support | Legitimate interest | APP 6 |
| Send marketing communications (opt-in only) | Consent | APP 6, 7 |
| Analyze website usage and improve our service | Legitimate interest | APP 6 |
| Track and fix errors | Legitimate interest | APP 6 |
| Prevent fraud and abuse | Legitimate interest | APP 6 |
| Comply with legal obligations | Legal obligation | APP 6 |
6. International Data Transfers
Your information may be transferred to and processed in countries other than your country of residence. Our primary data storage is in the United States (via Supabase).
For EU/EEA Users: When we transfer your data outside the EU/EEA, we rely on:
- Standard Contractual Clauses (SCCs) approved by the European Commission
- EU-US Data Privacy Framework certifications where applicable
- Other lawful transfer mechanisms under GDPR
For Australian Users: In accordance with APP 8, we take reasonable steps to ensure overseas recipients handle your data consistently with the Australian Privacy Principles.
By using our Service, you acknowledge and consent to the transfer of your information to the United States and other countries where our service providers operate.
7. Data Retention
We retain your information for as long as necessary to provide our services and fulfill the purposes described in this policy:
| Data Type | Retention Period |
|---|---|
| Account data | Duration of account + 7 years |
| Generated documents | Duration of account + 90 days |
| Payment records | 7 years (legal requirement) |
| Trademark application records | 10 years |
| Analytics data (Google Analytics) | 26 months |
| Error logs (Sentry) | 90 days |
| Marketing preferences | Until consent is withdrawn |
After the retention period, we will securely delete or anonymize your data unless a longer retention is required by law.
8. Your Rights
For All Users
You have the right to:
- Access the personal information we hold about you
- Request correction of inaccurate information
- Withdraw consent for marketing communications at any time
- Request deletion of your account and associated data
Additional Rights for EU/EEA Users (GDPR)
Under the GDPR, you also have the right to:
- Right to Erasure: Request deletion of your personal data ("right to be forgotten")
- Right to Restrict Processing: Request limitation of how we use your data
- Right to Data Portability: Receive your data in a structured, machine-readable format
- Right to Object: Object to processing based on legitimate interests
- Rights Related to Automated Decision-Making: We do not make automated decisions that significantly affect you
- Right to Lodge a Complaint: File a complaint with your local Data Protection Authority
For Australian Users
Under the Privacy Act 1988, you have the right to:
- Access your personal information (APP 12)
- Request correction of your personal information (APP 13)
- Complain to us or the Office of the Australian Information Commissioner (OAIC)
How to Exercise Your Rights
To exercise any of these rights, please contact us at support@yourlawdocs.com. We will respond to your request within 30 days. We may need to verify your identity before processing your request.
Some requests may be subject to limitations, such as where we need to retain data for legal compliance or legitimate business purposes.
9. Data Security
We implement appropriate technical and organizational measures to protect your personal information:
- Encryption in Transit: All data transmitted to and from our website is encrypted using HTTPS/TLS
- Encryption at Rest: Sensitive data is encrypted in our database
- PCI Compliance: Payment processing is handled by Stripe, which is PCI-DSS Level 1 certified
- Access Controls: Access to personal data is limited to authorized personnel on a need-to-know basis
- Authentication: Secure password hashing and optional two-factor authentication
- Regular Reviews: We regularly review and update our security practices
Despite our efforts, no method of transmission over the Internet or electronic storage is 100% secure. If you have reason to believe that your interaction with us is no longer secure, please contact us immediately.
10. Children's Privacy
Our Service is not intended for individuals under the age of 18. We do not knowingly collect personal information from children under 18. If we become aware that we have collected personal information from a child under 18, we will take steps to delete that information promptly.
If you are a parent or guardian and believe your child has provided us with personal information, please contact us at support@yourlawdocs.com.
11. Marketing Communications
Opt-In Only: We only send marketing emails to users who have explicitly opted in to receive them. You can subscribe to our newsletter and promotional communications during account registration or at any time through your account settings.
Transactional Emails: We will always send transactional emails necessary for the Service, including:
- Purchase receipts and confirmations
- Account verification and password reset emails
- Important service updates and security notifications
- Trademark application status updates
Unsubscribe: Every marketing email includes an unsubscribe link. You can also manage your preferences in your account settings or by contacting us.
12. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or for other operational, legal, or regulatory reasons.
Notification of Changes: For material changes, we will notify you by email (sent to the email address associated with your account) and/or by posting a prominent notice on our website prior to the changes becoming effective.
We encourage you to review this Privacy Policy periodically. Your continued use of the Service after any changes constitutes your acceptance of the updated Privacy Policy.
Previous versions of this policy are available upon request.
13. Contact Information
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
- Email: support@yourlawdocs.com
- Address: Lewis Behr Consultants Pty Ltd, Level 3, Suite 329/98-100 Elizabeth Street, Melbourne, VIC 3000, Australia
Regulatory Contacts
Australian Users: If you are not satisfied with our response to a privacy concern, you may contact the Office of the Australian Information Commissioner (OAIC):
- Website: www.oaic.gov.au
- Phone: 1300 363 992
EU/EEA Users: You have the right to lodge a complaint with your local Data Protection Authority. A list of EU Data Protection Authorities is available at: edpb.europa.eu