Client Confidentiality Policy
Last updated: 3 August 2026
Our commitment to confidentiality
At GetQuickSites, we understand that our clients share sensitive business information with us in the course of our working relationship. We treat all client information as confidential and are committed to protecting it with the same level of care we would apply to our own proprietary information.
This policy outlines how we define, handle, protect, and manage confidential information throughout and beyond our engagement with clients.
Definition of confidential information
"Confidential Information" includes, but is not limited to:
- Business Information: Business plans, strategies, financial data, pricing, customer lists, supplier information, and marketing plans.
- Technical Information: Proprietary processes, software, algorithms, formulas, and technical specifications.
- Access Credentials: Login details, passwords, API keys, hosting credentials, and administrative access information.
- Brand Assets: Unpublished logos, designs, brand guidelines, and creative materials.
- Client Data: Customer databases, contact information, and any data you provide to us for website integration.
- Project Details: Project scopes, timelines, and any information marked as "confidential" or reasonably understood to be confidential.
- Communications: Emails, meeting notes, and discussions regarding business operations or strategy.
How we protect your information
We implement comprehensive security measures to protect your confidential information:
Technical safeguards
- Encryption: All data transmitted to and from our systems is encrypted using SSL/TLS protocols.
- Secure Storage: Client files and credentials are stored in encrypted, access-controlled environments.
- Password Management: We use enterprise-grade password managers to securely store client credentials.
- Access Controls: Access to client data is restricted to authorised team members on a need-to-know basis.
- Secure Communication: We use encrypted email and messaging for sensitive communications.
Operational safeguards
- Need-to-Know Basis: Only team members directly involved in your project have access to your information.
- Regular Security Reviews: We conduct periodic reviews of our security practices.
- Secure Workstations: All devices used to access client data are password-protected and regularly updated.
- Clean Desk Policy: Physical documents containing client information are securely stored or disposed of.
Team member obligations
All GetQuickSites employees and contractors are bound by confidentiality obligations:
- Employment and contractor agreements include confidentiality provisions.
- Team members are trained on data handling and security best practices.
- Breach of confidentiality is treated as a serious disciplinary matter.
- Confidentiality obligations continue after engagement ends.
Non-disclosure commitments
We commit to the following non-disclosure practices:
- No Third-Party Disclosure: We will not disclose your confidential information to third parties without your prior written consent, except where necessary for service delivery (e.g., hosting providers) or required by law.
- Limited Internal Sharing: Confidential information is shared internally only on a need-to-know basis.
- No Competitive Use: We will not use your confidential information to benefit competitors or for any purpose outside the scope of our engagement.
- Subcontractor Obligations: Any subcontractors we engage are bound by equivalent confidentiality obligations.
Duration of confidentiality
Our confidentiality obligations survive the termination of our engagement. We will continue to treat your confidential information as confidential indefinitely, unless:
- The information becomes publicly available through no fault of ours.
- You provide written consent for disclosure.
- Disclosure is required by law, court order, or regulatory authority.
- The information was already known to us prior to your disclosure.
Exceptions to confidentiality
We may disclose confidential information in the following limited circumstances:
- Legal Requirements: When required by law, court order, subpoena, or government regulation.
- With Your Consent: With your prior written permission.
- To Service Providers: To third-party service providers necessary for delivering our Services (e.g., hosting companies), who are bound by confidentiality obligations.
- Public Information: Information that is or becomes publicly available through no breach of this policy.
- Prior Knowledge: Information we possessed prior to receiving it from you, as evidenced by our records.
If we are legally compelled to disclose your information, we will notify you promptly (unless prohibited by law) to allow you to seek protective measures.
Data return & destruction
Upon completion of a project or termination of our engagement, you may request:
- Data Return: Return of all confidential materials and data you provided to us.
- Data Destruction: Secure destruction of confidential information in our possession.
- Credential Removal: Deletion of access credentials and login information from our systems.
We will retain copies of project files for our records and backup purposes for a reasonable period (typically 7 years for tax compliance), but such materials will continue to be treated as confidential.
Portfolio & case study use
We may wish to feature your project in our portfolio or case studies. In such cases:
- We will seek your written permission before using your project publicly.
- We will not disclose sensitive business information without consent.
- You may request removal from our portfolio at any time.
- Any metrics or results shared will be with your approval.
Formal non-disclosure agreements
For projects involving highly sensitive information, we are happy to execute a formal Non-Disclosure Agreement (NDA) tailored to your specific requirements. Please contact us to discuss NDA arrangements before project commencement.
Breach notification
In the unlikely event of a data breach affecting your confidential information, we will:
- Notify you promptly upon becoming aware of the breach.
- Provide details of the breach and the information affected.
- Outline the steps we are taking to mitigate the impact.
- Cooperate with you in addressing the breach.
- Report to relevant authorities as required by law.
Contact us
For questions about our confidentiality practices or to request data return/destruction:
GetQuickSites Pty Ltd (ABN 82 690 212 474)
Email: hello@getquicksites.com.au
Phone: (03) 7056 9915
Address: 220 Collins St, Melbourne VIC 3000, Australia
Related policies
- Privacy Policy: how we handle personal data
- Terms of Service: full terms and conditions