Last updated 9 August 2026
Privacy Policy
This group Privacy Policy explains how Suburban Australia handles personal and technical information across its four websites and service brands. The common policy applies everywhere, together with the schedule for the service you use.
1. Who We Are And Scope
Suburban Australia (ABN 24 550 297 597) operates suburbanau.com, Suburban Secure at suburbansecure.au, Townsville Computer Man at tsvcomputerman.com.au, and Can They Email As Me? at cantheyemailasme.com. References to “we”, “us” and “our” mean Suburban Australia, including the relevant trading brand.
This policy covers information collected through those websites and through related enquiries, bookings, repairs, projects, accounts, domain checks, monitoring, support and billing. A shorter collection notice may be shown when information is requested for a particular purpose.
2. Information We Collect
Depending on how you deal with us, we may collect identity and contact information; organisation, booking, delivery or collection details; enquiry and correspondence content; quote, project, repair, purchase and billing records; account and authentication information; domains, devices, systems or services relevant to requested work; and support, complaint or suppression information.
Our websites and systems may also collect technical and security information such as IP address, request and browser details, approximate location, device information, pages visited, referral or campaign information, cookies or local-storage preferences, form and account activity, rate-limit information, error logs, audit records and security signals.
The service schedules below describe additional information associated with each brand. We aim to collect only information reasonably needed for the relevant website, service, security or legal purpose.
3. How We Collect And Hold Information
We generally collect information directly from you when you visit a site, submit a form, make a booking or purchase, create an account, run a check, contact us, provide a device or system, or approve work. We may also receive information from an authorised colleague or customer, public technical sources, and service providers used for booking, payment, security, email, analytics or service delivery.
Information may be held in website databases and logs, email, booking and payment platforms, project or repair records, backups and related business systems. Information collected under one Suburban Australia brand may be handled in shared systems or by authorised personnel supporting another brand because all four are operated by the same entity.
4. How We Use Information
We use information to operate and secure our websites; respond to enquiries; assess, quote, schedule and deliver requested work; collect and return equipment; administer accounts, checks, monitoring, alerts, reports, purchases and subscriptions; provide support; maintain audit and business records; prevent abuse and fraud; investigate faults or security events; improve our services; and comply with applicable law.
We may use contact details to communicate about an enquiry, booking, account, repair, project, purchase, subscription, security matter or material service change. We do not sell personal information, enquiry information, repair data or checked-domain information.
5. Analytics, Cookies And Security Services
Our sites may use essential cookies or browser storage for sessions, form protection, authentication, security and user preferences. Blocking essential storage may prevent forms, accounts or security features from working.
We use Google Analytics to understand site and product usage. It may process page, browser, device and interaction information under Google’s own privacy terms. Where a site provides an analytics privacy control, you can use it to block analytics; browser controls may also be used.
Cloudflare provides network security, performance and abuse prevention, including Turnstile on relevant forms. Cloudflare may process IP addresses, request and browser information and security signals required to provide those services.
6. Service Providers, Disclosure And Overseas Processing
Information may be handled by providers used for hosting, databases, backups, email delivery, booking, analytics, security, DNS or network checks, notifications, payments, accounting and business administration. We disclose only what is reasonably required for those functions, with your authority, or where disclosure is required or authorised by law.
Providers may include Google, Cloudflare, Cal.com, Stripe and the suppliers or platforms relevant to an authorised project or repair. These and other providers may process information outside Australia or through global infrastructure. Processing locations can change and may include the countries in which a provider, its related companies or subprocessors operate.
7. Security And Data On Customer Systems Or Devices
We use reasonable technical and organisational safeguards appropriate to the information and service, including access controls, encrypted transport, hashed credentials or tokens where applicable, account and tenant authorisation checks, audit records, MFA on relevant administrative accounts and service-provider security controls.
No internet service, transmission or storage method is completely secure. Customers should avoid sending unnecessary credentials or sensitive information through general enquiry forms. Where access to a device, account or system is required, we limit access to what is reasonably needed for the authorised work.
8. Retention And Deletion
We retain information for as long as reasonably needed to provide the relevant website, account, result, history, repair, project, support or subscription; prevent abuse; maintain security, accounting and business records; meet legal obligations; and resolve disputes. Different records have different operational and legal retention needs.
We may aggregate or de-identify information, or securely delete it when it is no longer required. Deletion from active systems may not immediately remove information from backups, immutable security records or records that must reasonably be retained for billing, dispute, fraud-prevention or legal purposes.
9. Access, Correction And Your Choices
You may ask what personal information we hold about you, request correction of inaccurate information, or ask for deletion where practical and lawful. We may need to verify your identity or authority before providing access or changing information.
You can control analytics through available site or browser controls. Account and service-specific choices, including account deletion or result suppression, are described in the relevant schedule. Some records may need to be retained despite a request for legitimate security, accounting, dispute or legal reasons.
10. Privacy Concerns And Complaints
Contact us first so we can review and respond to a privacy concern. Please describe the site, service and information involved and the outcome you are seeking. We will handle the concern through the appropriate Suburban Australia brand or group process.
If you are not satisfied with our response, you may be able to seek guidance from the Office of the Australian Information Commissioner about applicable privacy rights and complaint options.
11. External Links And Changes To This Policy
External websites and services have their own privacy practices and are not controlled by us. Embedded content, if used, may behave as though you visited the external provider directly.
We may update this policy as our services, information flows, providers or applicable law change. The current version and its update date will be published on our websites.
Schedule A — Suburban Australia
This schedule applies to suburbanau.com, group enquiries and services offered directly as Suburban Australia. Contact or quote forms may collect your name, organisation, email address, phone number, location and message.
Recycling or equipment enquiries may also collect equipment type and quantity, collection suburb or address, data-destruction preference and other details needed to assess, quote and arrange the service. Those details are used for contact, planning, collection, service delivery, records and follow-up.
Schedule B — Suburban Secure
This schedule applies to Suburban Secure enquiries and advisory, cyber security, infrastructure and implementation work. We may collect contact and organisation details, organisation type, project objectives, systems or providers in scope, risks or incidents described to us, authorised access details, technical evidence, recommendations, approvals and project correspondence.
Information supplied for a security review or implementation is used only as reasonably required to assess, scope, deliver, document and support the authorised work, protect our systems and maintain appropriate business and audit records. Project-specific handling requirements may also be agreed in writing.
Schedule C — Townsville Computer Man
This schedule applies to tsvcomputerman.com.au, bookings, repairs, collection and return, recycling, data services and secondhand sales. We may collect your name, email, phone, address or collection location, booking time, device and fault details, quote approvals, job notes, parts, payment or purchase information and communications.
Cal.com handles booking information provided through its platform under its own privacy terms as well as this policy. We use booking details to schedule and manage the requested appointment or collection.
We access files, accounts and device contents only where reasonably required to diagnose or perform authorised work. Data recovery, storage replacement, reinstallations and recycling can create particular data risks; we will discuss material options where practical, and customers should back up or remove sensitive data before handover where possible.
Equipment accepted for recycling is handled with reasonable care and storage media is wiped or destroyed as part of the applicable service. A formal certificate applies only where a certified erasure or destruction service is specifically agreed.
Schedule D — Can They Email As Me?
This schedule applies to cantheyemailasme.com and its checker, results, accounts, verified domains, monitoring, alerts, DMARC reporting, support and billing. A public check may store the submitted domain, public DNS, TLS, website and mail observations, findings, timestamps, scan status and version, and a hashed or opaque result token so the result can operate and be revisited.
A public check does not require a name, email address or account and does not access a mailbox or private system. Result links are long and unguessable, excluded from our sitemaps and marked not to be indexed, but anyone with the link can view the result. Share it only with intended recipients.
Account features may collect name, email, password hash, email-verification state, MFA and recovery information, plan, activity and audit records. Verified-domain and monitoring features may store ownership challenges, monitoring history, detected providers, alerts, candidate remediation records and confirmed senders.
DMARC reporting may include report metadata, source IP addresses, providers, message counts, authentication outcomes and report contact addresses supplied for a verified domain. Support and suppression requests may include the reason provided and related result or domain identifiers.
Stripe handles payment-card entry and processing. We may receive and store Stripe customer, subscription, transaction and plan identifiers, but this website does not directly store complete payment-card details.
We do not send the checked domain, account email, name, ABN or free-text support content to Google Analytics. We may publish aggregate or de-identified statistics about public email-security signals, but do not publish private result links or a directory of named-domain weaknesses. Formal research reports will describe their cohort, methods, exclusions and correction process.
Account holders can request account deletion through account settings, subject to records that must reasonably be retained. Removing an account or verified domain does not necessarily delete independently generated public-check records. A person with a result link can submit a suppression request; requests are reviewed to avoid allowing an unrelated person to hide another organisation’s information.
Contact
Privacy questions, access requests and complaints can be sent to [email protected]. Townsville Computer Man customers may also use [email protected]. Please use the contact or support page for the relevant site if you prefer.