Privacy Policy - MLG Content

Privacy Policy

Last updated: August 25, 2025
We don’t sell your data. We never sell, rent, or share your personal information with third parties for their marketing. We only share what’s necessary to deliver our services or when required by law.

This Privacy Policy explains how MLG Content (“we”, “us”, “our”) collects, uses, and protects information when you use our website, AI receptionist chat, lead capture, content services, social media management, and outreach offerings.

Who we are (Data Controller).
SIMPSON, GOPINATH KLINGER (Sole Trader) trading as MLG Content (ABN 95 611 877 600), NSW 2484, Australia. Privacy contact: privacy@mlgcontent.com.

1. Information We Collect

1.1 You Provide to Us

  • Contact and Business Details: name, email, phone (optional), company, industry, goals.
  • Project Discovery: website platform, pages/URL examples, features, timeline/budget, and other notes shared via our chat/receptionist or forms.
  • Service Preferences: content types, social accounts (e.g., Instagram), posting preferences, brand guidelines.
  • Communications: emails, support messages, consultation notes, and approvals.
  • Payments: processed by Stripe; we do not store card numbers.

1.2 Collected Automatically

  • Usage Data: pages viewed, session state for the chat widget, interaction timestamps.
  • Technical Data: IP address, device/browser type, and basic diagnostic logs for reliability and abuse prevention.
  • Service Analytics: delivery timing, success/error rates, and high-level performance metrics (aggregated where possible).

1.3 Cookies and Local Storage

  • Strictly necessary: session and security features, chat widget state. These are required for the site to function.
  • Optional analytics: only if enabled and with consent, to improve content quality and site performance.

Where required, we show a consent banner for non-essential cookies. You can withdraw consent via your browser or by contacting us.

2. How We Use Information

  • Provide services: AI-assisted content, website copy, social media, outreach, and consulting.
  • Operate our AI receptionist: guide discovery, capture your email with consent, and forward to a human within 24 hours.
  • Send transactional emails: confirmations, scheduling, and important service notices.
  • Process payments via Stripe and manage orders/invoices.
  • Secure our services: fraud/spam prevention, rate limiting, abuse detection.
  • Improve quality: troubleshoot, measure effectiveness, and enhance user experience.
  • Comply with law: tax, accounting, and regulatory obligations.

2A. Legal Bases for Processing (GDPR/APPs)

  • Contract: to deliver services you request or purchase.
  • Legitimate interests: to secure, operate, and improve our services (balanced against your rights).
  • Consent: for optional analytics or marketing; you can withdraw consent at any time.
  • Legal obligation: to meet tax, accounting, and other regulatory requirements.

3. Sharing with Third Parties

  • OpenAI (AI processing): prompts are sent to generate content/replies; we don’t allow training on your data.
  • Email/SMS providers (transactional messaging): to send acknowledgements and updates.
  • Stripe (payments): PCI DSS–compliant processing; we never see full card details.
  • Hosting/Infrastructure (e.g., cloud and deployment platform): secure hosting and storage.
  • Social platforms (if you authorize): to manage or schedule your social content.

We maintain appropriate data processing agreements with our key vendors where required by law.

We may also disclose information if required by law or to protect our rights, users, or the public.

4. Data Security and Retention

4.1 Security

  • Encryption in transit (HTTPS) and at rest where applicable.
  • Least‑privilege access controls and audit logging.
  • Automated protections: spam/fraud detection and rate limiting.

4.2 Retention

  • Leads and communications: typically 24 months, unless you request deletion earlier.
  • Chat sessions: up to 90 days for support quality, then deleted or anonymized.
  • Generated content and assets: delivered to you; we avoid retaining copies unless necessary for active work.
  • Payment and invoices: 7 years for legal/tax purposes.
  • Security/diagnostic logs: ~30–90 days unless required longer for investigations.

5. Your Rights

  • Access and receive a copy of your personal information.
  • Request correction or deletion of your data.
  • Object to or restrict processing in certain cases.
  • Opt out of optional communications at any time.
  • Data portability for supported data sets.

These rights apply under Australian Privacy Principles (APPs), GDPR for EU/UK users, and similar laws. We’ll honor applicable local requirements.

5A. Regional Notices

EU/UK (GDPR)

You can exercise GDPR rights (access, rectification, erasure, restriction, portability, and objection) by emailing privacy@mlgcontent.com. We will respond within one month where feasible.

California (CPRA)

  • Right to know, delete, and correct personal information.
  • Right to opt out of “sale” or “sharing” of personal information. We do not sell personal information or share it for cross‑context behavioral advertising. To submit an opt‑out or limit request, email privacy@mlgcontent.com.
  • Right to non‑discrimination for exercising your rights.
  • Authorized agents: you may designate an agent to submit requests on your behalf; we may need to verify identity.

Australia (APPs)

If you have concerns, contact us first at privacy@mlgcontent.com. If unresolved, you can contact the Office of the Australian Information Commissioner (OAIC) at oaic.gov.au.

6. International Transfers

We may process data in Australia, the United States, and other locations where our providers operate. When data is transferred internationally, we use appropriate safeguards (e.g., Standard Contractual Clauses) to protect your information.

7. Children’s Privacy

Our services are intended for adults (18+). We do not knowingly collect data from children. If you believe a minor provided data, contact us and we’ll remove it.

8. Changes to This Policy

We update this policy as our services or laws change. Significant changes will be communicated on this page and/or via email when appropriate.

9. Contact

MLG Content – Privacy

Email: privacy@mlgcontent.com
Support: support@mlgcontent.com
General: info@mlgcontent.com

Business

Legal entity: SIMPSON, GOPINATH KLINGER (Sole Trader) — trading as “MLG Content”
ABN: 95 611 877 600
Location: NSW 2484, Australia
Hours: Mon–Fri 9:00–17:00 AEST (chat available after hours)


This page is provided for transparency and does not constitute legal advice. For specific legal guidance, consult a qualified professional.