What we collect, and why
GARD Systems handles personal information in line with the Australian Privacy Principles under the Privacy Act 1988. This policy explains what we collect through this website and in the course of supporting a business, why we hold it, and how to have it corrected or removed.
It covers information GARD Systems holds in its own right. Information inside the systems we manage for a client belongs to that client, and is covered separately in section 05.
Last updated — September 2026
Only what the work requires.
We do not collect personal information we have no use for, and we do not buy or sell contact data.
Enquiries
When you use the contact form we collect your name, business name, phone number, email address, the device range you select and anything you write in the message field.
Clients
For businesses we support, we hold the contact details of nominated staff, billing information, and technical records of the environment we manage.
Systems we manage
Our monitoring tools collect device names, user account names, software inventory, security events and performance data from managed devices.
This website
Standard server logs, which may include IP address, browser type and the pages requested. This site sets no cookies of its own and runs no analytics, advertising or tracking scripts.
We do not sell, rent or trade your information.
Your details are used to respond to you, to deliver the services you have engaged us for, and to meet our legal and billing obligations. Nothing else. We do not use personal information for advertising, we do not disclose it for anyone else to advertise with, and we do not build profiles of the people who visit this site.
Four purposes, and no others.
Responding to you
To answer enquiries, prepare quotes and arrange the initial conversation about your business.
Delivering the service
To monitor, maintain, secure and support the systems you have engaged us to manage.
Billing and records
To invoice for work performed and to keep the financial records Australian law requires us to keep.
Security and incident response
To investigate suspicious activity on managed systems and to notify you when something needs your decision.
Information inside a client's systems belongs to that client.
Managing an IT environment means handling information a business holds about its own staff and customers. That information is theirs, not ours.
Where GARD Systems manages systems for a business, that business decides what personal information is collected and why. We handle it on their instructions and under our services agreement with them, for the purpose of delivering the service they have engaged us for — not for any purpose of our own.
If you are an employee or a customer of a business we support and you want to know what is held about you, or want it corrected or deleted, that request goes to that business first, because it is their decision to make. We will help them act on it. If you are not sure who to ask, get in touch and we will point you to the right contact.
Our suppliers, and only where the work needs it.
Delivering managed IT means using established platforms. Where your information passes through one, it is limited to what that platform needs to do its job.
Service platforms
Remote monitoring, endpoint security, ticketing and backup providers process data from managed systems on our behalf under their own terms.
Vendors
Microsoft, Google and hardware suppliers, where licences or equipment are provisioned in your name.
Overseas storage
Some of these platforms store data outside Australia. We select providers that maintain recognised security standards.
Legal obligation
Where we are required by law to disclose information, or where disclosure is necessary to prevent a serious threat to life, health or safety.
Access, correction and complaints.
You can ask what we hold about you, ask us to correct it, or ask us to delete it where we are not legally required to keep it. Email info@gardsystems.com.au and we will respond within a reasonable period. We may need to confirm who you are before acting on a request, so that we are not disclosing someone else's information.
There is no charge for asking what we hold. If you are not satisfied with how we have handled your information, raise it with us directly, and if it remains unresolved, with the Office of the Australian Information Commissioner at oaic.gov.au.
Held securely, kept only as long as needed.
We apply the same protections to our own systems that we apply to the businesses we support: access control, endpoint security, monitoring and backup. No system can be guaranteed secure, but those are the controls we hold ourselves to.
Client records are retained for the period our legal and taxation obligations require, and enquiry details are kept only as long as they are useful to the conversation. If a data breach occurs that is likely to cause serious harm, we will notify you and the Office of the Australian Information Commissioner as required under the Notifiable Data Breaches scheme.
This policy will change as our services and obligations change. The current version always sits at this address, and the date at the top of the page shows when it last changed.
Questions about your information.
Anything in this policy, or a request to access or correct what we hold — get in touch and we'll come back to you.
- Phone
- 0494 182 034
- info@gardsystems.com.au
- Based in
- Bendigo VIC 3550
- Service area
- Bendigo & surrounding areas