Privacy Policy
Who We Are
This privacy policy is issued by Blueshift Corporation Pty Ltd ("Blueshift", "we", "us"), an Australian company. It explains what personal information we collect through our website and our applications, why we collect it, and the choices and rights you have. We handle personal information in accordance with the Australian Privacy Act 1988 (Cth) and, where it applies to you, the EU General Data Protection Regulation (GDPR) and UK GDPR.
For the processing described in this policy, Blueshift is the data controller, except where we process personal data inside a client's application instance on that client's behalf — in those cases our client is the controller and we act as a data processor under our agreement with them.
You can contact us about anything in this policy at privacy@blueshift.one.
Website
Cookies and analytics
We use cookies and similar technologies to understand how visitors use our website and to measure the effectiveness of our marketing, including the LinkedIn Insight Tag, which supports advertising and conversion measurement. Optional tracking of this kind runs only if you accept it through our cookie banner, and you can change your choice at any time using the "Cookie settings" link in the page footer. Essential cookies that remember your theme and language preferences are always on. We honor Do Not Track signals and will not track, plant cookies, or use advertising when a Do Not Track (DNT) browser mechanism is in place.
Company identification
We use Snitcher, a visitor identification service provided by Snitcher B.V. (Netherlands), to help us understand which companies visit our website. Snitcher processes your IP address and the pages you view to identify the organisation a visit is likely associated with — not you as an individual. Unless you accept optional cookies through our cookie banner, Snitcher runs without any persistent identifier, so your visits are not linked across browser sessions; if you accept, it also sets a first-party cookie that allows visits to be recognised across sessions. We use this information to understand business interest in our products and to reach out to those organisations. Our legal basis is our legitimate interest in marketing our services to businesses. We do not use this service to identify individual visitors, to track the contents of forms, or to track links in emails, and you can object to this processing at any time (see "Your Rights" below). We also use Albacross (Albacross Nordic AB, Sweden), a similar company-identification service; it loads only if you accept optional cookies through our cookie banner.
ROI Calculator, Business Enquiries and Direct Marketing
When you use our ROI calculator, contact us through our website or otherwise make a business enquiry, we may collect:
- your name, work email address, telephone number, job title and company details;
- business and operational information entered into the calculator, such as business size, revenue, costs, margins, headcount and other performance estimates;
- results generated by the calculator; and
- information contained in your enquiry and subsequent correspondence with us.
We use this information to:
- calculate, prepare and provide the results you request;
- respond to your enquiry and contact you about your results;
- assess whether Blueshift’s products or services may be relevant to your organisation;
- manage prospective customer relationships and our sales activities;
- send direct marketing about Blueshift’s products, services, events, insights and offers where you have consented or where otherwise permitted by applicable law;
- maintain internal business records; and
- operate, secure, analyse and improve our website, calculator, products and services.
We may disclose this information to Blueshift personnel, partners and service providers that assist us with these activities. These include Asana for work and project management, Mailchimp for marketing and communications management, and Lemlist for sales outreach and communications management. We may also disclose information to providers supporting our website, calculator, hosting, analytics, customer relationship management and IT systems, as well as to professional advisers and authorities where required or permitted by law.
We do not collect payment-card or bank-account information through the ROI calculator. Please do not enter sensitive personal information or information about identifiable customers or employees into the calculator. We do not knowingly collect personal information from children under 16.
You can opt out of direct marketing at any time by using the unsubscribe facility included in a communication or by contacting us using the details below. Opting out of marketing will not prevent us from communicating with you about a report, enquiry, service or other request you have made.
Overseas Processing and Disclosures
Some of our service providers process or store personal information outside Australia.
Asana and its subprocessors or affiliates may process personal information in Australia, Canada, France, Germany, Iceland, Ireland, Japan, the Philippines, Poland, Singapore, Switzerland, the United Kingdom, the United States and other locations within the European Union, depending on the services and features we use.
Mailchimp and its subprocessors may process personal information in the United States, Germany, the United Kingdom, Romania, Greece and other countries in which Mailchimp, its affiliates or subprocessors maintain data-processing operations.
Lemlist stores its service databases in France within the European Union. Lemlist may also transfer personal information to subprocessors located outside the European Union, subject to applicable data-transfer safeguards.
The locations used by our service providers may change over time. We take reasonable steps to ensure that providers handling personal information are subject to appropriate privacy, confidentiality and security obligations.
Application
When you are registered in one of our applications, your administrator will enter your name, username, password, and email address, which the application will use to log you in and send you notifications. Sometimes, they may also enter basic information about your role or team and link this to your user permissions in the application. This information is stored securely in the application database and transmitted only over private or encrypted connections. This processing is necessary to provide the application under our agreement with your organisation.
Our applications automatically record application telemetry and crash logs, which at times may include your username. These are used to evaluate application usage, compile activity reports, and investigate crashes and bugs, on the basis of our legitimate interest in operating, securing, and improving our applications. This information may be stored by a third-party log aggregation provider such as DataDog.
User Activity Tracking
In addition to the telemetry noted above, our applications track key user account events. Specifically, when a new user is created or when an existing user is deactivated (or reactivated), the following data is recorded:
- First Name
- Last Name
- Email Address
- Client Instance Identifier
- Status Flag (indicating addition or removal)
- Date of the Event (creation, activation, or deactivation)
The processing of this data is based on our legitimate interests in ensuring service quality, maintaining accurate internal records, and effectively managing our business relationship with our client users. This tracking is used solely for internal reporting and analysis. All data is stored securely, transmitted over encrypted connections, and accessed only by authorized personnel. We process this information in compliance with applicable data protection laws.
When you contact us for support, we'll keep that correspondence and your email address for future reference and to communicate with you regarding your support inquiry. This information is stored securely in our support ticketing tool.
We do not collect any sensitive personal information or financial information such as credit cards, and we don't knowingly collect information from children under 16.
How We Share Personal Information
We do not sell personal information. We share it only with service providers who process it on our behalf and under contract, in the following categories:
- Website advertising and analytics providers (the LinkedIn Insight Tag)
- Website visitor identification providers (Snitcher, Albacross)
- Application logging and monitoring providers (such as DataDog)
- Support ticketing and communication tools
- Cloud hosting and infrastructure providers
We may also disclose personal information where required by law or to protect our legal rights.
International Transfers
We are based in Australia and use service providers located in Australia, the European Union, and the United States. Where personal data originating in the European Economic Area or the United Kingdom is transferred to a country that has not been found to provide an adequate level of protection, we rely on appropriate safeguards such as standard contractual clauses with the receiving provider. You can contact us for more information about the safeguards that apply to a specific transfer.
Retention
We keep personal information only for as long as we need it for the purposes described in this policy. In general: enquiry and correspondence records are kept while we have an ongoing relationship or prospective relationship with you or your organisation; application account data is kept for the duration of our agreement with the client organisation and removed or de-identified after the agreement ends in line with our termination procedures; telemetry, logs, and analytics data are kept for limited operational periods and then deleted or aggregated. We may retain records for longer where the law requires it.
Security
We protect personal information with technical and organisational measures appropriate to its sensitivity, including encryption in transit and at rest, role-based access controls, multi-factor authentication for our staff, and vendor security reviews of the third-party services we use.
Your Rights
You may request access to or correction of the personal information we hold about you at any time. If you are in the European Economic Area or the United Kingdom, you also have the right to:
- request erasure of your personal data, or restriction of its processing
- object to processing based on our legitimate interests, including visitor identification and direct marketing
- receive the personal data you provided to us in a portable format
- withdraw consent at any time, where processing is based on consent
- lodge a complaint with your local data protection supervisory authority
If your personal data is held within a client's application instance, we may need to refer your request to that client, as they control that data. We do not use personal information for automated decision-making that produces legal or similarly significant effects.
In Australia, if you are unsatisfied with our response to a privacy complaint, you may contact the Office of the Australian Information Commissioner (OAIC).
Contact
If you have any questions or complaints regarding this privacy policy, or if you would like to exercise any of the rights described above, you may contact us at privacy@blueshift.one. We may update this policy from time to time and will post the current version on this page.
Last Edited on 2026-07-20