Inventory Manager

Privacy

Last updated: 17 August 2026

Draft — requires legal review before publishing. Placeholders in [SQUARE BRACKETS] must be completed. This is a structural starting point, not legal advice.

Who we are

Inventory Manager is operated by Gapwise Consulting Pty Ltd [ABN] (“we”, “us”). You can contact us at [PRIVACY CONTACT EMAIL].

Who controls your information

Inventory Manager is provided to agencies, consultants and other service providers (“providers”), who use it on behalf of the businesses they work with.

Where a provider uses the platform to manage a business’s catalogue, that provider decides what information is held and why. In data-protection terms they are the controller and we act as a processor on their instructions. If you are a client of a provider and want to know what is held about you, or want it corrected or deleted, contact your provider first — they can action it directly.

We are the controller only for the limited information we need to run the platform itself, described below.

What we hold

We do not sell personal information, and we do not use catalogue content to build products for anyone other than the business it belongs to.

Cookies

We use cookies that are necessary for signing in and keeping you signed in. [CONFIRM: analytics or other non-essential cookies in use, if any.]

Service providers

We use third parties to host and operate the platform, including cloud hosting, email delivery and AI processing providers. [LIST SUB-PROCESSORS AND HOSTING REGIONS.] These providers act on our instructions and are not permitted to use the information for their own purposes.

Where information is held

[HOSTING REGION(S).]

How long we keep it

Account and activity records are kept for as long as the provider’s account is active, and for [RETENTION PERIOD] afterwards unless we are required to keep them longer.

Your rights

Depending on where you live you may have rights to access, correct, delete or export your information, or to object to certain processing. Contact your provider first where they are the controller, or us at [PRIVACY CONTACT EMAIL].

[IF SERVING AU: reference the Australian Privacy Principles and the OAIC complaints process. IF SERVING EU/UK: reference GDPR lawful bases and the relevant supervisory authority.]

Security

Access is restricted to the workspace you have been granted, transport is encrypted, and administrative actions are logged. No system is perfectly secure; if a breach affects you we will notify you and any regulator as required.

Changes

We will update this page when our practices change, and revise the date at the top.