Privacy notice
Last updated: 8 May 2026
1. Who we are
Redo You ("we", "us") operates redoyou.com.au and is the data controller for personal data collected through this site. Contact: hello@redoyou.com.au.
2. Data we collect
- Account data: name, email address, hashed password or third-party login identifier.
- Newsletter data: email address and subscription preferences.
- Usage data: pages viewed, search prompts, credits used, votes/comments you submit, device type, IP address, and rough location.
- Support data: any messages you send us.
- Order metadata: which product you bought, transaction ID, subscription status. Card details are collected and stored by Stripe, not by us.
- Cookies: essential cookies for sign-in and analytics cookies (Google Analytics) to understand site usage.
3. How and why we use your data
- Provide the Service (account creation, generating reviews, granting credits) — legal basis: performance of contract.
- Send transactional emails (receipts, account changes) — legal basis: performance of contract.
- Send the newsletter if you subscribe — legal basis: consent (you can unsubscribe at any time).
- Improve the product, prevent fraud and abuse, secure the Service — legal basis: legitimate interests.
- Comply with legal obligations (tax, accounting, lawful requests) — legal basis: legal obligation.
4. Who we share data with
We share personal data only with the following categories of recipients:
- Stripe — our payment processor for credit pack purchases and Pro subscriptions. Stripe handles card processing, fraud screening, and invoicing as an independent data controller for payment information. See Stripe's privacy notice.
- Service providers / subprocessors — hosting, database, email delivery, analytics, customer support tooling, AI inference providers used to generate reviews.
- Professional advisers — legal, accounting, tax, where reasonably necessary.
- Authorities — when required by law or to protect rights, safety, or property.
We do not sell your personal data.
5. International transfers
Some of our providers operate outside Australia (including the EU, UK, and US). When personal data is transferred internationally we rely on appropriate safeguards such as Standard Contractual Clauses or adequacy decisions.
6. Retention
We keep account data while your account is active and for a reasonable period afterwards (typically up to 24 months) to handle disputes and meet legal obligations. Order and tax records are retained for as long as required by law (typically 7 years). Newsletter subscribers' email addresses are kept until you unsubscribe. Usage logs are kept for up to 12 months.
7. Your rights
Subject to applicable law, you have the right to:
- access the personal data we hold about you;
- request correction or deletion;
- object to or restrict certain processing;
- withdraw consent at any time (e.g. unsubscribe from the newsletter);
- request a portable copy of data you provided;
- lodge a complaint with your local data-protection authority (e.g. the OAIC in Australia).
To exercise these rights email hello@redoyou.com.au. We aim to respond within 30 days.
8. Security
We use appropriate technical and organisational measures including encryption in transit, access controls, and audit logging. No online service is 100% secure — please use a strong, unique password and notify us if you suspect unauthorised access.
9. Cookies
We use essential cookies for authentication and analytics cookies (Google Analytics) to measure traffic. You can control cookies through your browser settings.
10. Changes
We may update this notice. Material changes will be highlighted on the site.