Legal
Privacy
Effective: 2026-05-09 · ERP Heritage · ABN 95 691 945 182 · Donnybrook, Victoria, Australia
This policy describes how ERP Heritage handles personal information when you visit www.erpheritage.com.au, contact us about an Odoo project, or otherwise interact with our marketing site. It is written in plain language, not legalese.
What we collect
We only collect information you give us directly. Two paths:
- Contact form. Your name, company, email, optional phone number, country, and the message you write. We require these so we can reply meaningfully and meet you in your time zone.
- Inbound email. If you write to
info@erpheritage.com.au, we keep your message and reply.
We do not collect biometric data, financial details, government identifiers, or sensitive personal categories through this site. If a project requires any of these, we collect them under a separate engagement letter, not via the website.
How we use it
- Reply to your enquiry, in person, within one business day.
- Create a lead record in our internal Odoo CRM so we have a single thread of context across calls.
- Send a notification email to our team so an enquiry is never missed.
We do not use your details for marketing automation, retargeting, or list-building. We do not sell or rent your personal information to anyone, ever.
Where it lives
- Web hosting. Cloudflare Pages, edge-distributed globally. Cloudflare's privacy policy: cloudflare.com/privacypolicy.
- Bot protection on the contact form. Cloudflare Turnstile, which evaluates the request without setting third-party tracking cookies.
- CRM. A self-hosted Odoo instance running on infrastructure we operate. Access is restricted to the ERP Heritage team.
- Notification email. Resend (resend.com/legal/privacy-policy) delivers the alert email to our team.
- Analytics. Cloudflare Web Analytics, cookieless and aggregated. No individual visitor profiles, no cross-site tracking.
How long we keep it
We keep enquiry records for as long as the relationship is active, plus seven years for tax and audit reasons under Australian record-keeping rules. You can ask us to delete your record sooner; we will, unless we are required to retain it.
Your rights
You can ask us to:
- Confirm what personal information of yours we hold.
- Correct anything that is wrong.
- Delete your records, subject to the retention rule above.
- Receive a copy of your data in a portable format.
Send the request to info@erpheritage.com.au. We respond within five business days.
If you are in the European Economic Area, the United Kingdom, or another jurisdiction with statutory data-protection rights, those rights apply to us when we process your data, and we treat the contact email above as the channel for those requests.
Cookies
This site does not set advertising or cross-site tracking cookies. Two cookies are used: a theme preference (light or dark) and a locale preference, both set when you change those settings. Both are first-party, neither is required for the site to work.
Security
The site is served only over HTTPS. The contact form is rate-limited and challenged by Cloudflare Turnstile to discourage abuse. Our Odoo instance sits behind Cloudflare's network and uses application-level authentication for all access. We do not store payment card data on this site or in our CRM.
Changes
If this policy changes materially we update the effective date at the top and, where the change affects existing customers, we email them. The current version is always at this URL.
Contact
Questions, requests, complaints: info@erpheritage.com.au.