PRIVACY POLICY - REACH 360

Last Updated: January 2, 2025

1. DATA COLLECTION AND USAGE

1.1 Personal Information We Collect

- Contact information (name, email address, phone number, business address)

- Business information (ABN, business name, industry type)

- Payment information (processed through secure payment gateways)

- Usage data (login times, feature usage, system interactions)

- Communication records (support tickets, chat logs, email correspondence)

- Technical data (IP addresses, browser type, device information)

1.2 Collection Methods

- Direct submission through forms

- Website and application usage

- Cookies and tracking technologies

- Third-party integrations

- Customer support interactions

- Marketing and sales communications

1.3 Purpose of Collection

- Service delivery and account management

- Technical support and customer service

- Product improvement and development

- Marketing and communications (with consent)

- Legal and regulatory compliance

- Business analytics and reporting

1.4 Australian Privacy Principles (APPs) Compliance

- Open and transparent management of personal information

- Anonymous transactions where possible

- Consent-based collection of sensitive information

- Regular privacy impact assessments

- Staff training on privacy obligations

2. WHITE LABEL SPECIFIC ELEMENTS

2.1 Service Provider Relationship

- Reach 360 operates as a white-label provider of third-party services

- Clear delineation of responsibilities between Reach 360 and third parties

- Transparent disclosure of service provider relationships

2.2 Data Processing Agreements

- Detailed terms of data handling between parties

- Subprocessor agreements and obligations

- Data transfer and storage protocols

- Service Level Agreements (SLAs)

2.3 Third-Party Service Providers

- List of authorised third-party service providers

- Purpose and scope of data sharing

- Security and confidentiality requirements

- Compliance obligations of service providers

3. AUSTRALIAN LEGAL REQUIREMENTS

3.1 Privacy Act 1988 Compliance

- Adherence to Australian Privacy Principles

- Regular privacy impact assessments

- Employee training and awareness

- Documentation of compliance measures

3.2 Data Storage and International Transfers

- Primary data storage location (Australian servers)

- International data transfer protocols

- Safeguards for overseas data processing

- Data sovereignty considerations

3.3 Mandatory Data Breach Notification

- Breach detection and assessment procedures

- Notification timeline and requirements

- Response team and responsibilities

- Documentation and reporting protocols

4. USER RIGHTS

4.1 Access to Personal Information


- Process for requesting personal information

- Timeline for information provision

- Format of information delivery

- Verification requirements

4.2 Information Correction

- Process for updating personal information

- Timeline for corrections

- Notification of changes

- Record-keeping requirements

4.3 Complaint Handling

- Step-by-step complaint process

- Response timelines

- Escalation procedures

- External dispute resolution options

4.4 Opt-Out Procedures

- Marketing communications opt-out

- Data collection limitations

- Consequences of opting out

- Process for implementing opt-out requests

5.1 Data Protection Methods

- Encryption standards (minimum 256-bit encryption)

- Access control systems

- Regular security audits

- Incident response procedures

5.2 Security Protocols

- Password policies

- Multi-factor authentication

- Session management

- Regular security updates

5.3 Data Retention

- Retention periods for different data types

- Data disposal procedures

- Archiving protocols

- Backup procedures

6.1 Privacy Officer

Privacy Officer: Paul Burkett Email: [email protected]

Address: 3 Carlton Street Chippendale, NSW 2008

6.2 Business Details

Reach 360 ABN: 35 672 693 248

Trading Address:3 Carlton Street Chippendale, NSW 2008

Website: www.reach360.com.au

7.1 Policy Reviews

- Annual review schedule

- Update procedures

- Notification of changes

- Version control

7.2 Communication of Changes

- How changes will be communicated

- Notice period for significant changes

- User acknowledgment requirements

- Historical version access

8. Phone Number

No mobile information will be shared with third parties

DISCLAIMER: This privacy policy should be reviewed by a legal professional before implementation to ensure full compliance with current Australian privacy laws and regulations.

For any privacy-related inquiries or concerns, please contact our Privacy Officer using the details provided in Section 6.