PRIVACY
Privacy policy
How we handle personal information on this website and at the events we run. Last updated 3 October 2026.
Who we are
This website and the event pages at livestreamvideo.com.au/events are run by The Jasper Picture Company Pty Ltd (“JPC”, “we”), based in Burwood, Victoria. This policy explains how we handle personal information under the Privacy Act 1988 (Cth) and the Australian Privacy Principles.
When we run an event for an organisation (a company, fund, council, association or other client), that organisation decides who is invited and what to ask. We handle attendees’ information to run the event for them. Their own privacy policy also applies, and they may receive the information described below.
What we collect
- Enquiries and chat: your name and email address, and what you tell us about your event (type of production, budget, how you heard about us, and your messages).
- Signing in: your email address. We send a one-time code. There are no passwords.
- Registration and invitations: your name, email address, and answers to any questions the organiser adds (for example organisation, role, dietary or access needs).
- Taking part in an event: your questions, poll answers, word cloud entries and reactions, and any audio or video question you choose to record.
- Attendance: when the organiser turns attendance tracking on, when you joined and how long you watched. This is used for attendance reports and continuing professional development (CPD) records.
- Formal meetings (for example AGMs and members’ meetings), using the register the organiser provides:
- members’ names, member numbers, email addresses and voting entitlements;
- proxies, attendance and check-in;
- a record that each member voted;
- questions submitted for the meeting.
- Technical information: IP address, browser and device details, which our hosting uses for security, abuse prevention and fault-finding.
We don’t ask for government identifiers, payment card details or health information. If an organiser asks a registration question that collects sensitive information (such as an access need), it’s used only for that event.
How we use it
- To run events: sign-in, access control, registration, reminders, interaction, voting and replays.
- To give organisers the records they need: registrations, attendance reports, questions and answers, and formal meeting results and records.
- To answer enquiries and provide quotes.
- To keep the platform secure, prevent abuse and fix problems.
- To understand, in aggregate, how people use our marketing pages.
We don’t sell personal information, use attendee information for our own marketing, or use it to train AI models. Invitation and reminder emails include a one-click unsubscribe. Sign-in codes and confirmations are always sent, because the service needs them.
Overseas disclosure
Our records and files are stored in Australia’s region (Cloudflare Oceania, Sydney primary).
Some information is disclosed overseas:
- United States: email addresses and names (to send emails, through Resend) and enquiry details (our customer records).
- Global networks: Cloudflare and Castr deliver the site and video through networks around the world, so a request may be handled outside Australia on its way to you.
We choose providers with strong security practices and contractual commitments to protect personal information.
How we protect it
- All connections are encrypted (TLS 1.2 or later, with HSTS), and stored data is encrypted.
- Every request is checked on our servers against who you are and which event you belong to, so one organiser’s event can’t see another’s.
- Sign-in codes and session tokens are stored only as one-way hashes.
- A web application firewall blocks common attacks.
- Changes to the platform are checked automatically for security issues before they go live.
More detail is in our security information, available to clients on request.
How long we keep it
- Attendance records: deleted automatically after the period the organiser chooses, 1 to 365 days (90 by default).
- Sign-in sessions, codes and expired invitation links: deleted when they expire.
- Website chats: deleted after two years without activity.
- Registrations, interaction and formal meeting records: kept until the organiser asks us to delete the event, because some are statutory records the organiser must keep. Deleting an event removes its records and files.
- Email opt-outs: kept, so the opt-out keeps working.
Access, correction and questions
You can ask for access to the personal information we hold about you, or ask us to correct it. Contact us at production@jasperpictures.com.au.
- Information we hold for an event: we may refer you to the organiser, or work with them to answer you.
- Formal meeting records: some can’t be deleted while the organiser must keep them by law.
We’ll respond within 30 days.
Complaints
If you’re concerned about how we’ve handled your information, email production@jasperpictures.com.au and we’ll look into it and reply within 30 days. If you’re not satisfied with our response, you can complain to the Office of the Australian Information Commissioner at oaic.gov.au or on 1300 363 992.
If a data breach is likely to cause you serious harm, we’ll notify you and the OAIC under the Notifiable Data Breaches scheme.
Changes to this policy
We’ll update this page when our practices change, and change the date at the top. Our parent company’s general privacy policy is at jasperpictures.com.au. For this website and its events, this page applies.
Questions? production@jasperpictures.com.au · Accessibility