PRIVACY POLICY
I'll create a comprehensive privacy policy that covers Australian Privacy Principles compliance and addresses GDPR requirements for your international collector base.
PRIVACY POLICY
Effective Date: 1 January 2022
​
Buratti Art Group and associated entities ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website robertburatti.art, make a purchase, or interact with our services.
By using our website, you consent to the data practices described in this policy.
​
1. INFORMATION WE COLLECT
Personal Information You Provide:
When you make a purchase or create an account, we collect:
-
Full name
-
Email address
-
Shipping and billing address
-
Phone number
-
Payment information (processed securely through our payment provider)
Newsletter & Communications:
-
Email address (when you subscribe to studio updates)
-
Communication preferences
Automatically Collected Information:
-
IP address
-
Browser type and version
-
Device information
-
Pages visited and time spent on site
-
Referring website
-
Geographic location (city/country level)
-
Cookies and similar tracking technologies
Information from Third Parties:
-
Social media platforms (if you interact with our content or use social login)
-
Payment processors (transaction confirmation data)
2. HOW WE USE YOUR INFORMATION
We use your information for the following purposes:
Order Fulfillment:
-
Processing and delivering your purchases
-
Sending order confirmations and shipping updates
-
Managing returns and exchanges
-
Issuing certificates of authenticity
Communication:
-
Responding to your inquiries and providing customer support
-
Sending studio updates, exhibition announcements, and new work releases (with your consent)
-
Notifying you of changes to our policies or services
Business Operations:
-
Improving our website and user experience
-
Analyzing purchasing patterns and collector preferences
-
Preventing fraud and enhancing security
-
Complying with legal obligations
Marketing (with your consent):
-
Sharing information about new artworks and collections
-
Inviting you to exhibitions and events
-
Offering exclusive early access to new releases
You may opt out of marketing communications at any time by clicking "unsubscribe" in any email or contacting us directly.
3. LEGAL BASIS FOR PROCESSING (GDPR)
For visitors from the European Union, we process your personal data under the following legal bases:
-
Contract Performance: To fulfill orders and provide requested services
-
Legitimate Interest: To improve our services, prevent fraud, and communicate about our artistic practice
-
Consent: For marketing communications and non-essential cookies
-
Legal Obligation: To comply with tax, accounting, and legal requirements
4. HOW WE SHARE YOUR INFORMATION
We do not sell, rent, or trade your personal information. We may share your information with:
Service Providers:
-
Shipping carriers (Australia Post, DHL, FedEx, etc.)
-
Payment processors (PayPal, Stripe, etc.)
-
Email service providers (for newsletter delivery)
-
Website hosting providers
-
Analytics services (Google Analytics)
Legal Requirements:
-
When required by law, court order, or government authority
-
To protect our rights, property, or safety
-
In connection with fraud prevention
Business Transfers:
-
In the event of a merger, acquisition, or sale of assets (with notification to affected users)
All third-party service providers are bound by confidentiality agreements and may only use your information to perform services on our behalf.
5. INTERNATIONAL DATA TRANSFERS
We are based in Australia. If you are located outside Australia, please be aware that your information may be transferred to, stored, and processed in Australia where our servers and service providers are located.
For EU visitors, we ensure adequate data protection through:
-
Standard contractual clauses
-
Service provider compliance with GDPR
-
Your explicit consent where required
6. DATA SECURITY
We implement industry-standard security measures to protect your personal information:
-
SSL/TLS encryption for data transmission
-
Secure payment processing (we do not store credit card details)
-
Regular security audits and updates
-
Restricted access to personal data (need-to-know basis)
-
Secure backup systems
However, no method of transmission over the internet is 100% secure. While we strive to protect your information, we cannot guarantee absolute security.
7. COOKIES AND TRACKING TECHNOLOGIES
Our website uses cookies and similar technologies to enhance your experience.
Types of Cookies We Use:
Essential Cookies:
-
Required for website functionality
-
Remember items in your shopping cart
-
Maintain your session
Analytics Cookies:
-
Google Analytics to understand how visitors use our site
-
Track page views, bounce rates, and user journeys
-
Help us improve website performance
Marketing Cookies:
-
Remember your preferences
-
Provide personalized content
-
Track effectiveness of marketing campaigns
Cookie Management: You can control cookies through your browser settings. Note that disabling certain cookies may affect website functionality.
​
8. YOUR PRIVACY RIGHTS
Australian Residents: Under the Australian Privacy Principles, you have the right to:
-
Access your personal information
-
Correct inaccurate or incomplete information
-
Request deletion of your information (subject to legal obligations)
-
Opt out of marketing communications
-
Lodge a complaint with the Office of the Australian Information Commissioner (OAIC)
EU/UK Residents (GDPR): You have additional rights including:
-
Right to erasure ("right to be forgotten")
-
Right to data portability
-
Right to restrict processing
-
Right to object to processing
-
Right to withdraw consent
-
Right to lodge a complaint with your supervisory authority
California Residents (CCPA):
-
Right to know what personal information is collected
-
Right to know if personal information is sold or disclosed
-
Right to opt out of the sale of personal information (we do not sell personal information)
-
Right to deletion
-
Right to non-discrimination
Exercising Your Rights: To exercise any of these rights, please contact us at [insert email]. We will respond within:
-
30 days (Australian Privacy Principles)
-
30 days (GDPR)
-
45 days (CCPA)
9. DATA RETENTION
We retain your personal information for as long as necessary to:
-
Fulfill the purposes outlined in this policy
-
Comply with legal, accounting, or reporting requirements
-
Resolve disputes and enforce agreements
Typical Retention Periods:
-
Purchase records: 7 years (tax compliance)
-
Marketing communications: Until you unsubscribe or request deletion
-
Website analytics: 26 months (Google Analytics default)
-
Inactive accounts: 3 years before review for deletion
10. CHILDREN'S PRIVACY
Our services are not directed to individuals under 18 years of age. We do not knowingly collect personal information from children. If you believe we have inadvertently collected information from a child, please contact us immediately.
1
1. THIRD-PARTY LINKS
Our website may contain links to third-party websites, including:
-
Social media platforms (Instagram, Facebook)
-
Partner galleries and institutions
-
Art publications and resources
We are not responsible for the privacy practices of these external sites. We encourage you to review their privacy policies.
12. CHANGES TO THIS PRIVACY POLICY
We may update this Privacy Policy periodically to reflect changes in our practices or legal requirements.
When we make changes:
-
We will update the "Last Updated" date
-
Significant changes will be communicated via email or prominent website notice
-
Continued use of our services after changes constitutes acceptance
We encourage you to review this policy regularly.
13. CONTACT INFORMATION
For questions, concerns, or to exercise your privacy rights, please contact:
Email: info(at)buratticreative.com
Website: robertburatti.art
​
Australian Privacy Complaints:
Office of the Australian Information Commissioner (OAIC)
Website: www.oaic.gov.au
Phone: 1300 363 992
EU Data Protection Inquiries:
[Insert EU representative if you process significant EU data, or note that inquiries should be directed to main contact]
14. CONSENT
By using our website and services, you acknowledge that you have read and understood this Privacy Policy and agree to its terms.
For marketing communications, you provide explicit consent by:
-
Checking the opt-in box during checkout
-
Subscribing to our newsletter
-
Providing your email address for studio updates
You may withdraw consent at any time without affecting the lawfulness of processing based on consent before withdrawal.



