Effective Date: 13th September 2024
Last Updated: 13th September 2024
1. Purpose
This policy outlines the principles and procedures that Belinda Diggins (Company) applies in managing personal information and client data in compliance with the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs).
2. Scope
This policy applies to all employees, contractors, and service providers who handle personal information within Belinda Diggins (Company). It covers the collection, storage, use, disclosure, and management of all client and business data.
3. Definitions
- Personal Information: Information or an opinion about an identified individual or an individual who is reasonably identifiable, as per the Privacy Act 1988.
- Sensitive Information: Includes health information, racial or ethnic origin, and other sensitive personal details as defined by the Privacy Act.
- Data Breach: An incident where personal information is accessed, disclosed, or lost without authorization.
4. Collection of Personal Information
- Belinda Diggins (Company) will only collect personal information that is necessary for the provision of life coaching services.
- We will collect information by lawful and fair means, and where possible, directly from the individual or with their consent.
- Sensitive information (e.g., health or medical data) will only be collected with explicit consent from the client.
5. Use and Disclosure of Personal Information
- Personal information collected will only be used for the primary purpose for which it was collected, such as to provide life coaching services.
- Personal information will not be disclosed to third parties unless:
- The individual has given consent.
- It is required or authorized by law.
- It is necessary to prevent serious harm or in emergency situations.
- Where third-party service providers are involved (e.g., cloud storage, payment processors), Belinda Diggins (Company) ensures these providers comply with Australian data management laws and maintain appropriate security measures.
6. Data Security and Storage
- All personal information will be stored securely in both physical and digital formats.
- Digital information will be encrypted and stored in secure cloud storage services that comply with Australian data storage standards.
- Physical information, such as printed documents, will be kept in locked storage and only accessible by authorised personnel.
- Personal information will be retained only for as long as necessary to fulfill the purpose it was collected for and as required by law.
- Regular backups of all important business and client data will be maintained.
7. Access to Personal Information
- Clients have the right to access their personal information held by Belinda Diggins (Company). Requests for access must be made in writing, and we will respond within a reasonable timeframe.
- Clients can request corrections or updates to their personal information at any time. If any information is found to be inaccurate, we will update it promptly.
8. Data Breach Response Plan
In the event of a data breach, Belinda Diggins (Company) will:
- Assess the situation immediately to determine the nature and scope of the breach.
- Take prompt action to contain the breach and prevent further unauthorised access.
- Notify affected individuals and the Office of the Australian Information Commissioner (OAIC) where required by law, particularly when there is a risk of serious harm.
9. Regular Review and Updates
- This policy will be reviewed annually, or when required due to changes in Australian privacy laws or data management practices.
- Any updates to the policy will be communicated to all staff and made available to clients upon request.
10. Contact Information
For any questions or concerns about this policy or the handling of personal information, please contact:
Belinda Diggins
Email: [email protected]
Phone: +61 411062599