Privacy Policy

Last updated: 1 December 2025

1. Introduction

PsychoSafe Pty Ltd ("we", "us", "our") operates the PsychoSafe platform (the "Service"). This Privacy Policy explains how we collect, use, store, and protect your personal information in accordance with the Australian Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs).

2. Information we collect

Account information: When you register, we collect your name, email address, organisation name, ABN, industry, and state.

Usage data: We log actions taken within the platform (audit trail) for compliance purposes. This includes which risk items were created, edited, or deleted.

Payment information: Payment details are processed by Stripe. We do not store credit card numbers. We store your Stripe Customer ID and subscription status.

Survey responses: Employee survey responses are strictly anonymous. We do not collect or store any personally identifying information from survey respondents. Session tokens are random and not linked to any user account.

3. How we use your information

We use collected information to: provide and improve the Service; send transactional emails (invitations, alerts, reports); process payments; comply with legal obligations; and provide customer support.

4. Data storage and security

Data is stored in Australian-region cloud infrastructure (Supabase on AWS Sydney). We use row-level security, encrypted connections, and access controls to protect your data. The audit trail is append-only and cannot be altered.

5. Third-party service providers

We use: Supabase (database and authentication); Stripe (payments); Resend (transactional email); Vercel (hosting); and Anthropic Claude API (AI analysis). Each provider has their own privacy policy and we encourage you to review them.

6. Data retention

We retain your data for as long as your account is active and for 7 years after account closure (to meet Australian record-keeping requirements for WHS compliance evidence). You may request deletion of your account data, subject to legal retention obligations.

7. Your rights

Under the Privacy Act, you have the right to access your personal information, request corrections, and make a complaint. Contact us at privacy@psychosafe.com.au.

8. Contact us

Privacy Officer, PsychoSafe Pty Ltd
Email: privacy@psychosafe.com.au