Skip to content
Howitt
Legal

Privacy Policy

This policy explains what personal information is collected when you use this site, how it is used, and who it may be shared with. Your privacy matters and the data held is kept to what is strictly necessary.

Who this applies to

This policy applies to all visitors to howitt.io and its subdomains (clients.howitt.io), including people who submit contact forms, purchase fine art prints, or access a private client gallery. The site is operated by Owen Howitt, based in Sydney, Australia, and is subject to the Australian Privacy Act 1988.

What is collected and when

Contact form. Name, email address, project type, budget range, and message. This information is used to respond to your inquiry and is stored in a private database.

Print purchases. Name, email address, shipping address, and order details. Payment card information is processed entirely by Stripe and is never stored on this site.

Print inquiries. Name, email address, phone number (optional), and any notes you provide about the print you are interested in.

Client galleries. Email address used to authenticate access. Favourites and print requests made within a gallery are stored against your account.

Analytics. Two analytics systems are used to understand how the site is used. Cloudflare Web Analytics collects aggregate page view data with no cookies and no personally identifiable information. A custom event log also records anonymised interaction events (such as pages viewed, prints browsed, and checkout steps) against a session identifier that resets each visit and cannot be linked back to you. No name, email address, or device fingerprint is stored in the event log.

Third-party services

The following services are used to operate the site. Each has its own privacy policy governing how they handle data.

  • Stripe. Payment processing. Card details are handled entirely by Stripe.
  • Supabase. Database and authentication infrastructure. Data is stored in Australian/US regions.
  • Cloudflare. CDN, image delivery, DNS, and privacy-first analytics.
  • Resend. Transactional email (order confirmations, gallery invites). Emails are not used for marketing.

How your information is used

Personal information is used only to:

  • Respond to inquiries and contact form submissions
  • Fulfil and ship print orders
  • Send transactional emails (order confirmations, shipping updates)
  • Grant and manage access to private client galleries
  • Understand how the site is used via anonymised, session-based analytics events

Your information is never sold, rented, or shared with third parties for marketing purposes.

Data retention

Order records are retained for seven years to comply with Australian Tax Office requirements. Contact form submissions and inquiry records are retained for up to three years or until you request deletion, whichever comes first.

Client gallery access records are retained for as long as the gallery exists. You may request deletion of your account data at any time.

Your rights

Under the Australian Privacy Act, you have the right to access, correct, or request deletion of the personal information held about you. To make a request, or if you have any questions about this policy, contact hello@howitt.io.

Changes to this policy

This policy may be updated from time to time. Material changes will be noted with a revised date at the bottom of this page.

Last updated May 2026 — updated to disclose custom analytics event logging