Back to home

Privacy Policy

Effective Date: 21 April 2026

1. Introduction

This Privacy Policy explains how Lucas Tastet trading as Northbridge Technologies Digital Infrastructure, ABN 23 369 357 072, collects, uses, stores, shares, and otherwise processes personal data in connection with the website northbridgetech.co, related enquiries, pre-contractual discussions, client engagements, and associated business operations. We are committed to handling personal data in accordance with applicable law, including the Australian Privacy Act 1988 and, where applicable, the General Data Protection Regulation.

TASTET Holdings OÜ is a separate Estonian company (Registry No. 17410400) associated with international operations, software, intellectual property, and related digital assets. Where data processing relates specifically to those international operations, TASTET Holdings OÜ may act as the relevant controller under applicable EU law.

2. Data Controller

Australian Operator: Lucas Tastet t/a Northbridge Technologies Digital Infrastructure

ABN: 23 369 357 072

Location: QLD 4101, Australia

Contact Email: contact@northbridgetech.co

Phone: +61 483 727 856

Unless otherwise stated, Lucas Tastet t/a Northbridge Technologies Digital Infrastructure acts as the data controller for personal data collected through this website in connection with Australian services, business development, contract administration, service delivery, invoicing, support, and operations. Where we process personal data strictly on behalf of a client under documented instructions, we may act as a processor or sub-processor instead.

3. Categories of Personal Data We May Collect

A. Data provided directly by you

  • full name, job title, company or business name
  • email address, telephone or mobile number, website address
  • project or enquiry details, service interests
  • communications content, meeting notes
  • files, documents, and materials you choose to send us

B. Data collected automatically through website use

  • IP address, approximate location, browser type, device type
  • pages viewed, timestamps, technical event logs
  • security and abuse-prevention logs
  • cookie and consent preferences where applicable

C. Business and engagement data

  • proposal history, commercial discussions, billing details
  • transaction and payment status, project records, support history

4. Sources of Personal Data

  • directly from you or your employer
  • through forms submitted on our website
  • from email, call, scheduling, or messaging correspondence
  • from cookies, logs, and basic analytics tools
  • from publicly available business sources, where lawful

5. Purposes of Processing

  • responding to enquiries and assessing project suitability
  • preparing proposals, scopes, estimates, or agreements
  • providing services and carrying out implementation work
  • administering billing, accounting, and compliance obligations
  • maintaining website functionality, security, and performance
  • detecting, preventing, or investigating abuse, fraud, or misuse
  • complying with applicable legal, tax, accounting, and regulatory obligations

6. Legal Bases for Processing

  • pre-contractual steps and performance of a contract
  • legitimate interests, including operating and improving our business
  • legal obligation, including accounting, tax, and record-keeping
  • consent, where required by law, such as for certain optional cookies

7. Use of Personal Data

We use personal data only to the extent reasonably necessary for the purposes described.

  • We do not sell personal data.
  • We do not rent personal data.
  • We do not disclose personal data to data brokers.
  • We do not carry out solely automated decision-making producing legal effects.

8. Cookies and Similar Technologies

Our website may use strictly necessary cookies and similar technologies required for core functionality, security, and abuse prevention. Where optional analytics or third-party cookies are used, they will be activated in accordance with applicable law and your valid consent. More details are set out in our Cookie Notice.

9. Recipients

  • hosting and cloud infrastructure providers
  • website, analytics, monitoring, and security providers
  • email, messaging, and communications providers
  • payment processors, banks, and accounting providers
  • professional advisers including lawyers and accountants
  • courts, regulators, or law enforcement where legally required

10. International Transfers

We may process personal data within the EEA and, depending on the tools and providers used, outside the EEA, subject to lawful transfer mechanisms such as adequacy decisions or Standard Contractual Clauses.

11. Data Retention

  • General enquiry records: up to 24 months after last meaningful contact
  • Proposal and pre-contractual records: up to 36 months
  • Client project records: for the engagement duration and thereafter as reasonably required
  • Billing and accounting records: as required by applicable law
  • Technical and security logs: typically up to 12 months

12. Security

We apply technical and organisational measures including HTTPS, access controls, principle of least privilege, logging, backups, and vendor access restrictions. No method of transmission or storage is completely secure.

13. Your Rights

Subject to applicable law, you may have the right to access, correct, erase, restrict, or port your personal data, object to certain processing, withdraw consent, and lodge a complaint with a supervisory authority.

To exercise your rights, contact: contact@northbridgetech.co

14–18. Further Provisions

This policy also covers complaints handling, third-party websites, children's data (this site is for business use only), and future policy changes. We may amend this policy; the latest version will be published with an updated effective date.

For all enquiries: contact@northbridgetech.co

Request Infrastructure Review