AI Solution Technologies
Let's talk
LEGAL · AI SOLUTION TECHNOLOGIES PTY LTD

GDPR Compliance Statement.

Our commitment to the EU General Data Protection Regulation

Effective date: 1 January 2026Document version: Version 1.0Website: aisolutiontechnologies.comRegistered office: 33 East Street, Granville, Sydney, NSW 2142, Australia

1. Introduction

AI Solution Technologies Pty Ltd (“AI Solution Technologies”, “we”, “us” or “our”) is committed to protecting the personal data of individuals in the European Economic Area (“EEA”) and the United Kingdom. This GDPR Compliance Statement explains how we comply with Regulation (EU) 2016/679 (the “GDPR”) and the UK GDPR where they apply to our processing of personal data. It supplements our Privacy Policy.

2. When the GDPR applies to us

The GDPR applies to our processing of personal data where we offer services to individuals in the EEA or the UK, or monitor their behaviour in those regions, or where we process personal data on behalf of clients that are subject to the GDPR. Where the GDPR does not apply, we handle personal information under the Australian Privacy Act 1988 (Cth) and the Australian Privacy Principles.

3. Controller and processor roles

Under the GDPR:

  • Controller we act as a controller where we determine the purposes and means of processing, for example when we handle the personal data of our own contacts, website visitors and job applicants.
  • Processor we act as a processor where we process personal data on behalf of a client in the course of delivering our data, analytics and AI services. In that case, processing is governed by a Data Processing Agreement between us and the client.

4. Principles we apply

We process personal data in accordance with the GDPR principles, ensuring that personal data is:

  • processed lawfully, fairly and in a transparent manner;
  • collected for specified, explicit and legitimate purposes;
  • adequate, relevant and limited to what is necessary (data minimisation);
  • accurate and kept up to date;
  • kept in a form that permits identification for no longer than necessary (storage limitation); and
  • processed with appropriate security (integrity and confidentiality).

We are able to demonstrate compliance with these principles (accountability).

5. Lawful bases for processing

Where we act as a controller, we rely on one or more of the following lawful bases under Article 6 of the GDPR:

  • Consent where you have given clear consent for a specific purpose;
  • Contract where processing is necessary to perform a contract with you or to take steps at your request before entering a contract;
  • Legal obligation where processing is necessary to comply with the law;
  • Legitimate interests where processing is necessary for our legitimate interests (or those of a third party), provided your interests and rights do not override those interests.

Where we process special category data, we do so only where an additional condition under Article 9 applies (for example, explicit consent).

6. Your rights as a data subject

If the GDPR applies to our processing of your personal data, you have the right to:

  • be informed about how we use your personal data;
  • access the personal data we hold about you;
  • request rectification of inaccurate or incomplete data;
  • request erasure of your data (the “right to be forgotten”) in certain circumstances;
  • restrict our processing of your data in certain circumstances;
  • data portability, to receive your data in a structured, commonly used, machine-readable format;
  • object to processing based on legitimate interests or for direct marketing; and
  • not be subject to a decision based solely on automated processing that produces legal or similarly significant effects, except as permitted by law.

You may also withdraw consent at any time where we rely on consent. To exercise any of these rights, contact us at info@aisolutiontechnologies.com. We will respond within one month, subject to any extensions permitted by the GDPR.

7. International data transfers

As an Australian-headquartered organisation with operations in the United Arab Emirates and the Kingdom of Saudi Arabia, we may transfer personal data outside the EEA and the UK. Where we do, we implement an appropriate transfer mechanism recognised under the GDPR, such as the European Commission’s Standard Contractual Clauses (and the UK Addendum or International Data Transfer Agreement where applicable), together with any supplementary measures required.

8. Data security

We implement appropriate technical and organisational measures to ensure a level of security appropriate to the risk, including encryption, access controls, network security, personnel training and information security governance aligned with ISO/IEC 27001 and ISO/IEC 42001.

9. Personal data breaches

Where we act as a controller and a personal data breach is likely to result in a risk to the rights and freedoms of individuals, we will notify the competent supervisory authority without undue delay and, where feasible, within 72 hours of becoming aware of it, and will notify affected individuals where the breach is likely to result in a high risk. Where we act as a processor, we will notify the relevant controller without undue delay.

10. Processors and sub-processors

Where we engage sub-processors, we impose data protection obligations on them by contract that are consistent with the GDPR and our commitments to controllers. Details of our processing as a processor are set out in our Data Processing Agreement.

11. Supervisory authority

If you are in the EEA or the UK and believe our processing of your personal data infringes data protection law, you have the right to lodge a complaint with your local supervisory authority. We would, however, appreciate the opportunity to address your concerns first.

12. Changes to this Statement

We may update this GDPR Compliance Statement from time to time. The current version will always be available on our website. This Statement is effective from 1 January 2026.

Contact Us

If you have any questions about this document, or wish to exercise any of your rights, please contact AI Solution Technologies using the details below.

AI Solution Technologies Pty Ltd

Attention: Privacy Officer

33 East Street, Granville, Sydney, NSW 2142, Australia

Email: info@aisolutiontechnologies.com

Phone: +61 466 558 862

Web: aisolutiontechnologies.com

RELATED DOCUMENTS

Other legal & policy documents.