Privacy Notice

Who this notice applies to

This notice describes how WSP Info handles personal information about visitors to wearesmartypants.com and people who contact us by email or post. It is written to comply with the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs). WSP Info is a small-business operator and this notice reflects our voluntary commitment to APP-aligned practices even where the Act does not compel them.

What information we collect

We collect a limited set of information. When you contact us by email, we collect your email address and any information you choose to include in your message. When you visit the site, we log standard web-server data such as the IP address of the connecting client, the browser user agent, the time of the request, and the pages requested. This data is retained in server logs for a short period for security and troubleshooting purposes.

We do not require you to register an account. We do not run behavioural advertising trackers. We do not sell reader data. Our editorial model is neither dependent on nor structured around user profiling.

How we use information

Information we collect is used to respond to your enquiries, to operate and secure the website, and to understand aggregate patterns of how our articles are read. Aggregate reading patterns are used to improve editorial coverage — which topics readers spend time on, which they leave quickly — not to profile individual readers.

Where we send you a reply to an email you sent us, we use your email address for that reply and any necessary follow-up. We do not add you to any marketing list. We do not have a marketing list.

Cookies and analytics

Detail on the small number of cookies WSP Info uses is on our Cookies page. In short: we use essential cookies for site operation and a minimal privacy-respecting analytics setup to understand aggregate traffic. We do not use third-party advertising cookies.

Disclosure to third parties

We do not disclose personal information about readers to third parties for their marketing purposes. We do use standard service providers to operate the site — a hosting provider, an email provider, a content delivery network — and those providers necessarily process technical information such as IP addresses to deliver the service. Those service providers are bound by their own privacy commitments and are not permitted to use your data for their own purposes.

We may disclose information where required by law — for example, in response to a lawful subpoena or a request from an Australian regulator. Where we can lawfully notify you of such a disclosure, we will.

Overseas data flows

Some of our service providers store data on servers located outside Australia. Where that happens, we require the provider to maintain protection at a level substantially equivalent to what the APPs would require of us. We rely on our providers' contractual commitments and, where applicable, their own certifications to standards such as ISO 27001.

Security

We take reasonable steps to protect personal information from misuse, interference, loss, and unauthorised access, modification, or disclosure. Technical measures include TLS encryption for all site traffic, access controls on our internal systems, and periodic review of our security posture. Where a breach affecting reader information does occur, we will comply with the Notifiable Data Breaches scheme under the Privacy Act.

Access and correction

You have the right to ask us what personal information we hold about you and to request correction of anything that is inaccurate. In practice, given our limited data collection, the answer to an access request will usually be "your email address and the content of any messages you sent us". Requests can be sent to the Contact page email address.

Complaints and further information

If you consider we have breached the APPs, please contact us first. We will investigate and respond within a reasonable time. If you are not satisfied with our response, you have the right to complain to the Office of the Australian Information Commissioner (OAIC), which is the independent regulator of the Privacy Act.

Changes to this notice

We may update this notice from time to time to reflect changes in our practices or changes in the law. Material changes will be highlighted on the site for a reasonable period after they take effect. The date at the top of this notice records when it was last revised.