ComplianceIntel Pty Ltd (referred to as "ComplianceIntel", "we", "us", or "our") is an Australian company that provides a purpose-built compliance management software-as-a-service (SaaS) platform for Australian local government organisations.
Our platform is accessible at app.complianceintel.ai and our marketing website at complianceintel.ai.
We collect personal information you provide when you:
When you access our website or platform, we may automatically collect:
We may receive information about you from your organisation's administrator when they set up your account. This may include your name, work email address, and role within the organisation.
We do not intentionally collect sensitive information as defined by the Privacy Act (including health information, racial or ethnic origin, political opinions, religious beliefs, sexual orientation, or criminal history). If you believe you have submitted sensitive information to us, please contact us at the details in Section 12 so we can address this promptly.
We collect and use personal information only for purposes that are directly related to our functions and activities. These include:
We will not use your personal information for any secondary purpose unless you have consented, or it is required or permitted by the Privacy Act.
We do not sell, rent, or trade your personal information to third parties. We may disclose your information in the following limited circumstances:
We engage trusted third-party service providers to assist in operating our platform. These providers are bound by contractual obligations to handle your information securely and only in accordance with our instructions. Current service providers include:
If you access ComplianceIntel through your organisation's account, your organisation's administrators may have access to information associated with your account, including your profile information and activity within the platform.
We may disclose your information where required by law, court order, or government authority — including in response to a valid subpoena, search warrant, or other legal process. Where permitted, we will notify you before making such disclosure.
In the event of a merger, acquisition, or sale of all or part of our business, your personal information may be transferred to the acquiring entity. We will notify you prior to any such transfer and will require the recipient to handle your information consistently with this Privacy Policy.
Some of our service providers are located outside Australia. In particular, Cloudflare Inc. and GitHub Inc. are headquartered in the United States.
Before disclosing your personal information to an overseas recipient, we take reasonable steps to ensure that the overseas recipient does not breach the Australian Privacy Principles in relation to that information, in accordance with APP 8.
By using our platform and services, you acknowledge that your information may be processed outside Australia in connection with the services provided by the third parties described in Section 4.1. We require all such third parties to implement appropriate data protection safeguards.
Our primary database infrastructure is hosted in Supabase's Sydney region (ap-southeast-2), meaning your core compliance data resides in Australia.
We take the security of your personal information seriously. We implement appropriate technical and organisational measures to protect your information from unauthorised access, disclosure, alteration, or destruction, including:
While we take all reasonable precautions, no method of transmission over the internet or electronic storage is 100% secure. We cannot guarantee absolute security. In the event of a data breach that is likely to result in serious harm, we will comply with our notifiable data breach obligations under the Privacy Act.
We retain your personal information only for as long as is necessary to fulfil the purposes for which it was collected, or as required by applicable law. Specifically:
When personal information is no longer required, we will take reasonable steps to destroy or de-identify it in accordance with APP 11.2.
Under the Privacy Act and Australian Privacy Principles, you have the following rights in relation to your personal information:
You have the right to request access to the personal information we hold about you. We will respond to access requests within 30 days. In some circumstances, we may be required by law to withhold certain information. If we refuse access, we will provide reasons in writing.
If you believe that any personal information we hold about you is inaccurate, out of date, incomplete, or misleading, you have the right to request that we correct it. We will respond to correction requests within 30 days.
If you believe we have handled your personal information in breach of the Australian Privacy Principles, you may make a complaint to us in the first instance (see Section 12). If you are not satisfied with our response, you may lodge a complaint with the Office of the Australian Information Commissioner (OAIC) at oaic.gov.au.
You may opt out of receiving marketing communications from us at any time by using the unsubscribe link in any email we send, or by contacting us directly. Note that you may still receive transactional or account-related communications even after opting out of marketing.
Our website and platform use cookies and similar tracking technologies to enhance your experience and collect usage information.
You can control cookies through your browser settings. Note that disabling certain cookies may impact the functionality of the platform. For more information on managing cookies, refer to your browser's help documentation.
ComplianceIntel is designed for use by professional organisations and their authorised employees. Our platform is not intended for use by individuals under the age of 18. We do not knowingly collect personal information from children. If you believe we have inadvertently collected information from a child, please contact us immediately.
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. We will notify existing users of material changes by email or prominent notice within the platform at least 30 days before the change takes effect.
The current version of this policy will always be available at complianceintel.ai/privacy.html. Continued use of our platform following any update constitutes your acceptance of the revised policy.
If you have any questions, concerns, or requests relating to this Privacy Policy or our handling of your personal information, please contact us:
ComplianceIntel Pty Ltd
Privacy enquiries: privacy@complianceintel.au
General contact: hello@complianceintel.au
We will acknowledge your request within 5 business days and endeavour to resolve all enquiries within 30 days. If you are not satisfied with our response, you may contact the Office of the Australian Information Commissioner (OAIC) at oaic.gov.au or on 1300 363 992.