We use essential cookies to enhance your experience. Your privacy matters to us.

Lucid Tonic
  • Home
  • Solutions
  • Approach
  • Connect

GDPR Compliance

Last updated: May 19, 2026

1. Introduction

While Lucid Tonic is based in Australia, we recognize that some of our website visitors and potential clients may be from the European Union. We are committed to transparency and compliance with the General Data Protection Regulation (GDPR) for all EU residents whose data we process.

2. Legal Basis for Processing

We process personal data under the following legal bases:

  • Consent: When you provide explicit consent for us to process your personal data
  • Contract: When processing is necessary to fulfill a contract with you
  • Legitimate Interests: When we have a legitimate business interest that does not override your rights
  • Legal Obligation: When we must comply with legal requirements

3. Your Rights Under GDPR

If you are an EU resident, you have the following rights regarding your personal data:

3.1 Right to Access

You have the right to request copies of your personal data. We may charge a reasonable fee if your request is clearly unfounded or excessive.

3.2 Right to Rectification

You have the right to request that we correct any information you believe is inaccurate or complete information you believe is incomplete.

3.3 Right to Erasure

You have the right to request that we erase your personal data, under certain conditions.

3.4 Right to Restrict Processing

You have the right to request that we restrict the processing of your personal data, under certain conditions.

3.5 Right to Object

You have the right to object to our processing of your personal data, under certain conditions.

3.6 Right to Data Portability

You have the right to request that we transfer the data we have collected to another organization, or directly to you, under certain conditions.

3.7 Right to Withdraw Consent

Where we rely on consent to process your personal data, you have the right to withdraw that consent at any time.

4. Data Protection Officer

While we are not required to appoint a Data Protection Officer under Australian law, we have designated a privacy contact for GDPR-related inquiries:

Email: [email protected]

5. Data Storage and Transfer

Your personal data is primarily stored in Australia. If we transfer data outside the EU, we ensure appropriate safeguards are in place, including:

  • Standard contractual clauses approved by the European Commission
  • Ensuring the recipient country provides an adequate level of data protection
  • Obtaining your explicit consent for the transfer

6. Data Retention

We retain personal data only as long as necessary for the purposes set out in our Privacy Policy or as required by law. Retention periods vary depending on the type of data and the purpose for which it was collected.

7. Security Measures

We implement appropriate technical and organizational measures to ensure a level of security appropriate to the risk, including:

  • Encryption of personal data
  • Regular security assessments
  • Access controls and authentication
  • Staff training on data protection
  • Incident response procedures

8. Data Breach Notification

In the event of a data breach that is likely to result in a risk to your rights and freedoms, we will notify you and the relevant supervisory authority within 72 hours of becoming aware of the breach, as required by GDPR.

9. Automated Decision Making

We do not use automated decision-making or profiling that produces legal effects or similarly significant effects on individuals.

10. Children's Data

Our services are not directed at children under 16 years of age. We do not knowingly collect or process personal data from children. If we become aware that we have collected data from a child, we will take steps to delete it promptly.

11. Cookies and Tracking

We use cookies and similar technologies. You can control your cookie preferences at any time. For detailed information, please see our Cookies Policy.

12. Third-Party Services

We may use third-party services that process personal data on our behalf. We ensure these processors:

  • Provide sufficient guarantees of GDPR compliance
  • Process data only on our instructions
  • Maintain appropriate security measures
  • Assist us in responding to data subject requests

13. Updates to This Policy

We may update this GDPR compliance statement from time to time. We will notify you of any material changes by posting the new policy on our website with an updated effective date.

14. How to Exercise Your Rights

To exercise any of your GDPR rights, please contact us at:

Email: [email protected]
Address: Level 3, 147 Collins Street, Melbourne VIC 3000, Australia

We will respond to your request within one month. If your request is complex or we receive multiple requests, we may extend this period by two months, and we will inform you of the extension and the reasons for it.

15. Right to Lodge a Complaint

If you believe we have not handled your personal data in accordance with GDPR, you have the right to lodge a complaint with a supervisory authority in the EU member state where you reside, work, or where the alleged infringement occurred.

16. Contact Information

For questions about this GDPR compliance statement or our data practices, please contact:

Lucid Tonic
Email: [email protected]
Address: Level 3, 147 Collins Street, Melbourne VIC 3000, Australia

Lucid Tonic

Making technology work the way it should.

Navigate

  • Home
  • Solutions
  • Approach
  • Connect

Legal

  • Privacy Policy
  • GDPR
  • Cookies Policy
  • Terms of Use

© 2026 Lucid Tonic. All rights reserved.