Benjamin Price
Privacy policy
This site runs no analytics and tracks nobody. It sets one cookie, and only if you sign in to a project portal. The personal information we hold is what you send us and what a project requires us to handle. This policy sets out how that information is collected, used, disclosed and protected.
Who we are
Benjamin Price (ABN 69 149 362 704) is a website design studio based in Sydney, Australia. In this policy, "we" and "us" mean Benjamin Price, and "you" means anyone who contacts us, engages us, or visits this site.
We handle personal information in accordance with the Privacy Act 1988 (Cth) and the Australian Privacy Principles. Where we deal with individuals in the United Kingdom or the European Economic Area, we also apply the standards set out in this policy to that information.
What we collect
Enquiries and audits
When you complete the enquiry form or request an audit, we collect only what you enter:
- Your name
- Your email address
- Your business name or website address
- An indicative budget range
- Anything you write in the optional notes field
There is no hidden field, and nothing is inferred, enriched, or appended from another source. Enquiring creates no account and requires no sign-in. A sign-in exists only for clients with a live project, and only after we have set it up for you; it is described in section 08.
Client engagements
If you engage us, we collect what is needed to deliver the work. Typically that is your name, email address, phone number, business and billing details, and the content and context you provide for the project. Where the work requires it, you may give us access to systems you control, such as a domain registrar, hosting account, content management system, analytics account, or brand asset library.
We ask for the narrowest access that will do the job, and we ask you to revoke it when the work is finished.
Server logs
Our host records standard server logs, which may include IP addresses, timestamps, requested files and user-agent strings. These are generated automatically by the act of serving a web page, are used only for security and to keep the site running, and are not linked to any individual or used to build a profile.
Dealing with us anonymously
You may read this site without identifying yourself. You may also make a general enquiry using a pseudonym and a contact address that does not identify you. We cannot deliver an audit or carry out paid work without a real name and contact details, because we need to correspond with you and invoice you.
How we use it
We use personal information for the purpose you gave it to us and for directly related purposes:
- To reply to your enquiry and to prepare and send the audit you requested
- To scope, quote, deliver and support work you have engaged us for
- To invoice you and to meet our tax and record-keeping obligations
- To resolve a dispute or enforce our agreement with you
We do not use your information for automated decision-making or profiling. We do not sell, rent, or trade it, and we do not share it with anyone for their own marketing.
Payments
Fees are invoiced and paid by bank transfer or through a third-party payment processor. We do not collect, store, or have access to your full card number or payment credentials. Where a processor is used, its handling of your payment data is governed by its own privacy policy.
We retain invoices and related billing records for the period required by Australian tax law, currently five years.
Client confidentiality
Information you share in the course of an engagement is treated as confidential. That includes commercial performance, pricing, strategy, client lists, unreleased brand and product work, technical systems, and credentials.
It is used only to deliver the agreed work. We will not publish, quote, or refer to it without your permission. Published case studies are shown to you before they go live, and we will remove or anonymise anything you ask us to.
Sites we build and maintain
Where we build a site for you, you are the party responsible for the personal information that site collects from its own visitors, and you decide what it collects and why. We act on your instructions.
Our default is to build sites that collect nothing: no cookies, no analytics, no third-party pixels. If you ask us to add analytics, advertising tags, chat widgets, or similar tools, we will tell you what they collect and it becomes your responsibility to disclose that to your visitors and to obtain any consent required.
Under a Care plan we may hold hosting and administrative access to your site, and may see personal information stored in it, such as form submissions. We access it only to perform the work you have asked for.
Signing in to your project portal
If you are a client with a live project, you have a project portal on this site: the plan, the documents, and a record of what has happened. It is reached by signing in at benjaminprice.co/clients.
Access is by invitation only. We add the email addresses that should have it when the project starts, and there is no way to create an account. An address we have not added cannot sign in, whatever it is.
If you sign in with Google
Google confirms to us that you control the address you signed in with, and sends us your email address, your name, and the identifier Google uses for your account. We do not receive, and never ask for, your Google password. We do not gain access to your Gmail, your contacts, your calendar, your files, or anything else in your Google account.
Choosing this option means your browser contacts Google, which necessarily tells Google that you visited this sign-in page. That is a disclosure to Google LLC in the United States, and Google handles it under its own privacy policy. If you would rather not involve Google at all, use the email link instead, which does not load anything from Google.
If you ask for a link by email
We send a one-time sign-in link to the address you enter. The link expires after fifteen minutes. The address is passed to our email provider, Resend, in the United States, purely to deliver that message.
We reply the same way to every address, whether or not it has access, so that this page cannot be used to work out who our clients are. If nothing arrives, it means that address is not on the list for any project.
The cookie
Signing in sets a single cookie, named bp_session. It contains your email address, the time it was issued, the time it expires, and a signature that lets our server confirm the cookie has not been altered. It contains nothing else, and it is not used to follow you anywhere.
It lasts thirty days, is marked HttpOnly (so no script on the page can read it) and Secure (so it is only ever sent over an encrypted connection). Signing out deletes it immediately. Clearing your browser's cookies has the same effect.
This cookie is strictly necessary to deliver a service you have asked for: without it, the site cannot tell that the person asking for a project is the person entitled to see it. That is why there is no cookie banner. It is the only cookie this site sets, and no consent option would be meaningful, because declining it is the same as not signing in.
What is recorded
Our server logs record successful and refused sign-ins, and which project was opened, with the email address involved and a timestamp. We keep this so that we can answer the question "who has seen this project", which is a fair question for a client to ask us and one we could not previously answer. These logs are retained for thirty days.
Removing access
Tell us and we will remove an address, which takes effect on our next deployment and cannot be worked around by an already open session for longer than that. If somebody has left your firm, this is worth doing promptly and we will treat it as urgent.
What this site does not do
There is no cookie banner because there is nothing to consent to: the only cookie is the sign-in cookie described in section 08, which is strictly necessary for a service you have to deliberately ask for. Nothing on this site is tracked, profiled, or shared for advertising, and browsing it without signing in leaves nothing in your browser at all.
Third parties this site loads
We state this plainly, because it is the one place data leaves the page without any action from you. To display correctly, this site requests files from:
- Google Fonts (fonts.googleapis.com, fonts.gstatic.com), for typefaces
- unpkg (unpkg.com), for the 3D graphics library
- Google Identity Services (accounts.google.com), only on the sign-in page at /clients, and only to draw the "Sign in with Google" button. It is not loaded on any other page of this site, and it is not loaded at all if you use the email link instead.
When your browser requests those files, the provider necessarily receives your IP address and basic request information, as happens with any file loaded from another server. They deliver files only. Enquiries and call bookings are processed through Google (a spreadsheet and calendar in our own account, via Google Apps Script), which receives the details you submit and handles them under Google's privacy policy. Sign-in links are delivered by Resend, our email provider.
Disclosure and providers
We disclose personal information only in these circumstances:
- Service providers. A form-processing service and an email provider, so that enquiries reach us and correspondence can continue. Accounting and payment providers, for invoicing. Hosting providers, for sites under a Care plan.
- Sign-in providers. Google LLC, if you choose to sign in with Google, which confirms your identity to us. Resend, our email provider, if you choose a sign-in link, which delivers that one message. Neither is given anything about your project, and neither is given any information about you if you never sign in.
- Professional advisers. Our accountant or lawyer, where they need it and are bound to keep it confidential.
- Where the law requires it. In response to a valid legal request, or to establish or defend a legal claim.
We use a deliberately small number of providers, and we choose ones that do not monetise the data passing through them.
Overseas disclosure
Some of our providers store or process data outside Australia, most commonly in the United States and the European Union. Our hosting provider, our email provider (Resend) and Google are all United States companies. Before disclosing personal information to an overseas recipient we take reasonable steps to satisfy ourselves that it will be handled consistently with the Australian Privacy Principles. If you would prefer your information not leave Australia, tell us and we will discuss what is possible.
How long we keep it
Enquiries that do not become projects are kept while the conversation is live and for a reasonable period afterwards, then deleted. Project records and correspondence are kept for the duration of the engagement and for seven years afterwards, so we can support the work and meet our legal obligations. Billing records are kept for five years, as Australian tax law requires.
Credentials you give us are deleted from our records once the work is complete. You should revoke the access at your end as well.
Sign-in sessions expire after thirty days and are not stored on our servers at any point, so there is nothing for us to delete: signing out or clearing your cookies ends one immediately. Sign-in logs are kept for thirty days. A project portal stays available while the project is live and for a reasonable period afterwards, and we remove access on request at any time.
If you would like something deleted sooner, ask, and we will delete it unless we are required to keep it.
Security and data breaches
This site is served over HTTPS. Access to enquiries and client material is limited to the studio and protected by strong, unique credentials and multi-factor authentication where the provider supports it. Client credentials are stored in an encrypted password manager, never in plain text.
No method of transmission or storage is completely secure. Please do not send confidential material, passwords, or identity documents through the enquiry form.
If a data breach occurs that is likely to result in serious harm, we will notify you and the Office of the Australian Information Commissioner as required by the Notifiable Data Breaches scheme.
Access and correction
You may ask us what personal information we hold about you, ask us to correct it, or ask us to delete it. Email legal@benjaminprice.co. We will respond within 30 days, at no charge.
We may need to verify your identity before acting on a request. If we refuse a request, we will tell you why in writing.
Marketing
There is no mailing list. Submitting the enquiry form does not subscribe you to anything. Any commercial electronic message we send will comply with the Spam Act 2003 (Cth) and will carry a working unsubscribe. If a newsletter ever exists, it will be separate and opt-in.
Complaints
If you believe we have mishandled your personal information, email legal@benjaminprice.co with the details. We will acknowledge your complaint within 5 business days and respond substantively within 30 days.
If you are not satisfied with our response, you may complain to the Office of the Australian Information Commissioner at oaic.gov.au. If you are in the United Kingdom or the European Economic Area, you may also complain to your local supervisory authority.
Changes
We may update this policy as the studio changes. The effective date at the top changes with it. Material changes affecting an active engagement will be communicated to you directly.
Contact
Privacy, legal and copyright enquiries: legal@benjaminprice.co.
Everything else: hello@benjaminprice.co.
Benjamin Price, ABN 69 149 362 704, Sydney, New South Wales, Australia.