1. Who we are
[Insert verified website operating entity, registration details, address and privacy contact.]
2. Information we handle
Website interactions, enquiry forms, account and support information, technical logs, customer content, AI inputs and outputs, connector data, and recruitment information where applicable.
3. Why we handle it
To respond to enquiries, provide and secure services, support deployments, evaluate authorised workflows, improve agreed services and meet legal obligations.
4. AI and automated processing
Describe where AI is used, what information may be generated or inferred, limits, human oversight, correction and dispute channels. Identify any use that may materially affect an individual.
5. Providers and overseas disclosure
[List verified providers and countries, including relevant processing in Australia, Singapore and model or cloud provider regions. Explain APP 8 assessment and contractual safeguards where applicable.]
6. Customer content
Customer Content is not used to train general-purpose models or models for other customers unless this is expressly agreed in writing and technically enforced across the full approved service.
7. Retention, access and correction
[Insert retention by data class, deletion and backup process, identity verification, access/correction channels and applicable limitations.]
8. Security and data breaches
Describe verified controls and the process for assessing and notifying eligible data breaches under the Notifiable Data Breaches scheme.
9. Cookies and analytics
[List necessary, analytics and marketing technologies, consent controls and retention. Sensitive form content must not be sent to analytics.]
10. Contact and complaints
[Insert verified privacy contact, complaint handling timeframe and escalation information.]