Privacy Policy
Ziven understands that your privacy is important to you and that you care about how your personal data is used. We respect and value the privacy of everyone who visits this website, ziven.io ("Our Site"), and only collect and use personal data as described in this Privacy Policy. Any personal data We collect will only be used as permitted by law.
This Privacy Policy was last updated on 3 July 2026.
Please read this Privacy Policy carefully and ensure that you understand it.
Information About Us
Our Site is operated by Ziven (ziven.io) from Australia.
Privacy Contact
Email address: [email protected]
What Does This Policy Cover?
This Privacy Policy applies to your use of Our Site and Our Services, including member accounts, paid subscriptions, our newsletters, and the API. Our Site may contain links to other websites. Please note that We have no control over how your data is collected, stored, or used by other websites and We advise you to check the privacy policies of any such websites before providing any data to them.
What Is Personal Data?
Personal data is any information relating to an identifiable person who can be directly or indirectly identified from it. This definition reflects both the Australian Privacy Act 1988 (Cth) and the European GDPR (together, "the Data Protection Legislation"). Personal data covers obvious information such as your name and contact details, but it also covers less obvious information such as identification numbers, electronic location data, and other online identifiers.
What Personal Data Do You Collect and How?
We collect personal data from the following categories of sources:
- Directly from you: when you create an account (name and email address), subscribe to a paid plan, set your email and newsletter preferences, build a watchlist, submit a listing to the directory, or contact Us.
- Automatically: when you use Our Site, We collect your IP address, browser type, operating system, and the pages you visit, through our server logs and our analytics service (Google Analytics). If you use the API, We log usage against your API key (endpoints called and request volumes) to enforce rate limits and plan allowances.
- From our service providers: for example, our payment processor tells Us whether your payment succeeded, and our email delivery provider reports delivery and engagement events (such as opens and unsubscribes) for the emails We send.
Payments are handled by our payment processor, Stripe. Your card details are provided directly to Stripe and are not stored on our servers; We retain only subscription status and billing metadata (such as your plan, renewal date, and the last digits of your card).
Legal Bases for Processing
We process personal data for, or based on, one or more of the following legal bases:
- Performance of a contract. By creating an account or subscribing, you have contracted with Us through our Terms of Use, and We process personal data (such as your email address and subscription status) to provide the Services under that contract.
- Consent. Where We rely on your consent (for example, for newsletters and other marketing email) you can withdraw it at any time via the unsubscribe link in every email or your account's email preferences.
- Legitimate interests. We may process personal data for our legitimate interests, including understanding how Our Site is used so We can improve it; enforcing our Terms of Use (including rate limits and anti-scraping protections); protecting our, our users', or others' rights, property, and safety; and detecting and resolving fraud or security concerns.
- Legal obligations. We may process personal data to comply with our legal obligations, including as required by valid legal process or governmental request.
Who We Share Your Personal Data With
We do not sell personal data. We share personal data with the following categories of third parties, only to the extent needed to operate Our Site and Our Services:
- Service providers: payment processing (Stripe), membership and email delivery, website hosting and content delivery/security, and analytics (Google Analytics). These providers process personal data to provide their services to Us; some (such as our payment processor) also process it under their own privacy policies for purposes like fraud prevention and legal compliance.
- Government agencies or regulators: when permitted or required to do so by law; in response to a request from a law enforcement agency or authority or any regulatory authority; and/or to protect the integrity of Our Site or our interests, rights, property, or safety, and/or that of our users and others.
Cookies
Our Site uses a small number of cookies and similar technologies (such as browser local storage for your light/dark theme choice). A cookie is a small file placed on your computer or device when you visit certain parts of Our Site or use certain features. We do not currently use advertising or cross-site tracking cookies.
- Essential cookies: used to keep you signed in to your account and to secure Our Site. These are required for member features to work.
- Preference cookies: used to remember choices you make, such as the company category you last viewed and whether you have dismissed a site announcement.
- Analytics cookies: set by Google Analytics to help Us understand how Our Site is used (pages visited, approximate location at a city level, and how you arrived). This information is pseudonymous and is not used by Us to identify you.
Cookies on Our Site are not permanent and expire after a set period: session cookies are deleted when you close your browser, and persistent cookies (such as preferences and analytics) expire after a predetermined period of up to about two years.
You can control and delete cookies in your browser settings. Most browsers let you refuse all cookies or only third-party cookies. Consult your browser's help documentation. If you block essential cookies, member features such as signing in may not work.
How Long Do We Keep Personal Data?
We keep personal data only for as long as We need it for the purposes described above: account data for as long as your account exists (and for a short period afterwards for backup and audit purposes), billing records for as long as tax and accounting law requires, and server logs and analytics data for shorter operational retention periods. When personal data is no longer needed, it is deleted or de-identified.
International Transfers
Our service providers (including our hosting, payment, email, and analytics providers) may store and process personal data in countries other than your own, including the United States. Where they do, We rely on those providers' compliance with the Data Protection Legislation and their standard data protection safeguards.
How Do We Protect Personal Data?
We take reasonable technical and organisational steps to protect personal data, including encryption of data in transit (HTTPS), access controls, and reliance on reputable infrastructure providers. No method of transmission or storage is completely secure, and We cannot guarantee absolute security.
Your Rights
Under the Data Protection Legislation, you have rights to:
- access the personal data We hold about you and receive a copy of it (a "subject access request");
- ask Us to correct personal data that is inaccurate or out of date;
- ask Us to delete your personal data, or to restrict or object to its processing, where the law gives you that right;
- receive the personal data you provided to Us in a structured, commonly used, machine-readable format (data portability), where the law gives you that right;
- withdraw consent to marketing at any time; and
- complain to a supervisory authority (see below).
To exercise any of these rights, contact Us in writing at the email shown above. There is not normally any charge for a subject access request. If your request is manifestly unfounded or excessive (for example, if you make repetitive requests) a fee may be charged to cover our administrative costs in responding.
If you are not satisfied with how We handle your personal data or a request, you may complain to the Office of the Australian Information Commissioner (OAIC) or, if you are in the EU or UK, to your local data protection authority.
Children
Our Site is not directed at children and We do not knowingly collect personal data from anyone under 16 years of age.
How Do I Contact You?
To contact Us about anything to do with your personal data and data protection, including to make a subject access request, please email:
Email address: [email protected]
Changes to this Privacy Policy
We may change this Privacy Policy from time to time. This may be necessary, for example, if the law changes, or if We change our business in a way that affects personal data protection. When We do, We will update the "last updated" date at the top of this page.
Any changes will be immediately posted on Our Site and you will be deemed to have accepted the terms of the Privacy Policy on your first use of Our Site following the alterations.