Legal · Minimal data by design

Privacy policy.

This policy explains what information Viremont Archive may process, why we process it, how long it may be retained, and the choices and rights available to you.

1. Scope and responsible agency

This policy applies to personal information handled through the Viremont Archive website and the editorial email addresses published on it. For the purposes of the New Zealand Privacy Act 2020, Viremont Archive is the agency responsible for the personal information it holds. “Personal information” generally means information about an identifiable individual.

The Privacy Act 2020 contains information privacy principles governing collection, notice, storage, access, correction, retention, use, disclosure, overseas disclosure and unique identifiers. Information Privacy Principle 3A, effective from 1 May 2026, adds notification requirements for certain personal information collected indirectly. We do not intentionally build profiles from third-party or indirectly sourced personal information.

2. Information we may process

Technical request and security data

When you request a page, the web server or hosting provider may automatically create a log entry. Depending on hosting configuration, that entry may include an IP address, date and time, requested URL, response status, referring URL, browser type, device or operating-system information, and limited diagnostic data. This information is generated by normal internet delivery rather than a form you complete.

Server logs may be used to deliver files, investigate errors, protect the website against malicious traffic, maintain availability and understand aggregate demand. Viremont Archive does not use this release of the site to create advertising profiles or to follow individuals across unrelated websites.

Age-confirmation preference

After you select “Yes, enter the archive” on the 18+ notice, the value viremont-age-confirmed=true is stored in your browser’s local storage. It records a confirmation, not your name, date of birth or identity document. The site’s JavaScript reads that value on future visits from the same browser. It is not designed to transmit the value to us.

Editorial and privacy correspondence

If you email us, we receive the email address, display name, message content, attachments and technical header information you choose to send. We may also create internal notes about the request and our response. Please do not send gambling-account credentials, bank details, identity documents, medical records or other sensitive information.

In-browser search

Archive searches are matched against a small page index in your browser. Search terms entered in the site dialog are not submitted to a Viremont Archive database. A query included in a URL may, like any requested URL, appear in server logs and browser history; avoid placing personal information in it.

3. Information we do not request

The current website does not provide registration, public comments, purchases, gambling, deposits, withdrawals, operator referrals or personalised recommendations. We therefore do not intentionally collect:

  • player account names, wagering histories or gambling balances;
  • payment-card, bank-account or cryptocurrency-wallet details;
  • government identity documents or biometric information;
  • precise location data;
  • contact lists or social-media profiles;
  • health information about gambling harm;
  • information for targeted advertising, cross-site tracking or data brokerage.

If functionality changes, this policy and the Cookie Policy will be updated before or when new collection begins, and any notice or choice required by law will be provided at the point of collection.

4. Why information may be used

We use limited information only where it is reasonably necessary for purposes connected with the archive:

  • serving requested pages and assets;
  • remembering the local 18+ confirmation;
  • detecting attacks, excessive automated traffic and technical faults;
  • maintaining backups, availability and website integrity;
  • responding to correction requests, privacy enquiries and accessibility feedback;
  • documenting significant editorial decisions and corrections;
  • complying with applicable law or a valid legal requirement;
  • establishing, exercising or defending legal rights where reasonably necessary.

We do not sell personal information. We do not use correspondence or request logs to advertise gambling products.

5. Disclosure and service providers

Information may be accessible to a hosting provider, email provider, security or backup provider only to the extent needed to provide its service. Providers should be selected and configured with appropriate privacy, confidentiality and security protections. Access within Viremont Archive is limited to people who need it for editorial, administrative, security or legal work.

Information may also be disclosed where you authorise it, where disclosure is one of the purposes for which it was collected, where the information is publicly available in circumstances permitted by law, or where disclosure is required or authorised by New Zealand law. We do not publish the identity of a person requesting a correction unless there is a lawful and necessary reason to do so.

6. Processing outside New Zealand

Website hosting, content-delivery, email or backup services may use infrastructure outside New Zealand. If personal information is disclosed to an overseas person or organisation, Information Privacy Principle 12 may require safeguards ensuring comparable protection, an approved basis for disclosure, or your informed authorisation. A provider that stores or processes information solely on our behalf may be treated differently from an overseas recipient using it for its own purposes.

Because infrastructure can change independently of page content, you may contact us for the current high-level location of providers processing information on our behalf.

7. Retention and deletion

We aim not to retain personal information longer than it is required for a lawful purpose. Typical retention considerations are:

InformationTypical approach
Local age confirmationRemains in your browser until you clear site data; we do not maintain a server copy.
Routine server logsKept for a limited operational and security period determined by hosting configuration, then rotated or deleted unless an incident requires longer preservation.
General enquiriesRetained only while needed to respond and manage follow-up.
Material correction recordsMay be retained longer to document why published material changed and preserve editorial accountability.
Security or legal recordsMay be preserved while an investigation, dispute, legal obligation or enforcement process remains active.

8. Security and privacy breaches

Reasonable safeguards may include restricted administrative access, strong authentication, encrypted transport through HTTPS, software updates, backups, access logging and minimisation of collected data. No internet system is completely immune from error, unauthorised access or disruption, and no absolute security guarantee is given.

If a privacy breach occurs, we will assess the likely harm. Where a breach has caused or is likely to cause serious harm, the Privacy Act 2020 generally requires notification to the Office of the Privacy Commissioner and affected individuals unless a lawful exception applies. We may take immediate containment steps before all facts are known.

9. Access, correction and other choices

Subject to the Privacy Act, you may ask whether we hold personal information about you, request access to it and ask for correction. If a requested correction is not made, you may ask for a statement of correction to be attached where the Act provides. We may need enough information to verify identity and locate the relevant record, but we will not request more than reasonably necessary.

You may clear the age-confirmation value through your browser’s site-data controls. You can browse without sending an email or creating an account. You may also object to information being used outside the stated purpose and raise concerns about retention, security or overseas processing.

Some access requests can lawfully be refused or limited—for example, to protect another person’s privacy, legal privilege or security. If that occurs, we will explain the decision where permitted.

10. Adults-only editorial boundary

The archive is intended for people aged 18 and over because it discusses an age-restricted industry. We do not knowingly solicit personal information from children and do not use age confirmation to identify an individual. A parent or guardian concerned that a minor has emailed personal information can contact us to request review and appropriate deletion.

11. External websites

Articles link to museums, government agencies, universities and support organisations. A third party receives technical information when you choose to follow its link and applies its own privacy policy. External websites are not controlled by Viremont Archive. We avoid embedding third-party advertising, videos or social widgets that would automatically load trackers on our pages.

12. Policy changes

We may update this policy when site functionality, providers, legal requirements or editorial practices change. The effective date and version number at the top will be revised. Material changes affecting existing information will be communicated in a proportionate way and will not be used to justify a materially incompatible new purpose without the notice or authority required by law.

13. Contact and complaints

Privacy enquiries and requests can be sent to privacy@viremontara.com. Include the relevant page or interaction, the nature of your request and a safe way to reply. Please do not send copies of identity documents unless specifically and securely requested.

If you believe a privacy concern has not been resolved, you may contact the Office of the Privacy Commissioner. Information about the Privacy Act and its principles is available directly from that independent regulator.