Privacy policy
Effective date: 1 June 2026 · Last updated: 1 June 2026
Welcome to Giblet ("Giblet", "we", "us" or "our"). We are committed to protecting your privacy and being transparent about how your information is collected, used and stored. This policy explains how we handle personal information when you interact with our website, applications, verification services and marketing platforms, and is designed to comply with applicable privacy laws, including the Privacy Act 1988 (Cth) in Australia.
1. Scope of this policy
This policy applies to visitors to our website, users who create a Giblet account, individuals submitting information through marketing forms, and customers and authorised users of Giblet services. By accessing or using Giblet, you consent to the collection and use of information as described here.
2. Information we collect
Provided directly: name, email address, organisation, job title, information submitted via forms, uploaded documents and document metadata, and support requests.
Collected automatically: IP address, device and browser information, usage and interaction logs, performance metrics, and referral source.
Proof-record information: creating a proof record involves recording a cryptographic fingerprint of your document, along with a timestamp. This fingerprint data is public and permanent once recorded. We do not intentionally store personal identifying information as part of that fingerprint, and document contents themselves are never recorded this way.
3. How we use personal information
To create and manage accounts; provide access to the Giblet platform; process document workflows and signing; generate proof and verification records; respond to enquiries and support requests; send product updates or service notices; improve security, performance and functionality; analyse platform usage; and comply with legal or regulatory obligations. We do not sell personal information to third parties.
4. Disclosure of information
We may disclose information to service providers assisting in operating the platform (e-signature providers, hosting, email delivery, analytics); to comply with legal obligations or lawful requests; to protect the rights, security or integrity of Giblet or its users; or in connection with a business transaction such as a merger or acquisition. Service providers are required to handle personal information consistently with this policy. Information recorded as part of a public proof record may be visible to anyone who has the relevant reference.
5. Data storage and security
We take reasonable technical and organisational measures to protect personal information, including encryption in transit and at rest, secure cloud infrastructure, access control and monitoring, and security auditing. No system can guarantee absolute security, and we encourage you to take reasonable steps to protect your own account credentials.
6. Data retention
We retain personal information only as long as reasonably necessary to provide our services, meet legal or compliance obligations, and maintain system integrity and security. Uploaded documents are stored temporarily while being processed and for a limited download window afterward. Proof records may remain accessible indefinitely given the permanent nature of the verification technology involved.
7. Cookies and analytics
Giblet may use cookies and similar technologies to analyse website traffic, measure marketing effectiveness, and improve user experience. You can manage cookie settings through your browser preferences.
8. International data transfers
Your information may be processed or stored outside your country of residence, including in jurisdictions with different privacy laws. By using Giblet, you consent to such transfers where appropriate safeguards are in place.
9. Your rights
Subject to applicable law, you may request to access personal information we hold about you, correct inaccurate or outdated information, or request deletion of personal information where legally and technically possible. Some requests may not be possible due to legal obligations or the permanent nature of a recorded proof. Requests can be submitted using the contact details below.
10. Children's privacy
Giblet services are not intended for individuals under 18 years of age. We do not knowingly collect personal information from minors.
11. Changes to this policy
We may update this policy periodically. The "Last updated" date at the top of this page reflects the latest changes. Continued use of the services after updates constitutes acceptance of the revised policy.
12. Contact us
Giblet — hello@giblet.app
Operated by Far East Square Pty Ltd, 30 Willansby Avenue, Brighton, Melbourne, Australia.
