← Back to home

Privacy Policy

DigiMod AI Pty Ltd (ABN 65 695 742 306 | ACN 695 742 306)

Effective date: 25 February 2026
Last updated: 25 February 2026

DigiMod AI Pty Ltd (“we”, “us”, “our”) is committed to protecting the privacy of your personal information. This Privacy Policy explains how we collect, hold, use and disclose your personal information in accordance with the Australian Privacy Principles (“APPs”) contained in the Privacy Act 1988 (Cth) (“Privacy Act”).

By using our products and services, you acknowledge that you have read and understood this Privacy Policy.


1. Personal Information We Collect and Hold

We may collect and hold the following kinds of personal information:

Account information: your name, email address, phone number, business name, ABN or ACN, and professional role.

Payment information: billing address and payment method details. Payment processing is handled by Stripe, Inc. We do not store your credit card number or bank account details on our servers.

Compliance data: information you enter into the AML/CTF compliance toolkit as part of your compliance program, which may include business operations data, risk assessment inputs, and compliance documentation you choose to create using our guided workflows.

Usage data: information about how you interact with our platform, including pages visited, features used, session duration, and device and browser type.

Communications: correspondence between you and us, including support requests and feedback.

Sensitive information: We do not intentionally collect sensitive information as defined under the Privacy Act (such as health information, racial or ethnic origin, or criminal records). If our compliance toolkit requires you to enter information about your customers as part of AML/CTF procedures, that data is controlled by you as part of your compliance obligations and is processed only as directed by you.


2. How We Collect Personal Information

We collect personal information:

  • Directly from you: when you create an account, purchase a product, complete compliance workflows, contact our support, or communicate with us.
  • From third parties: from our payment processor (Stripe) regarding transaction status, and from analytics services regarding usage patterns.
  • Automatically: through cookies and similar technologies when you use our website and platform. We use these to improve functionality and understand usage patterns.

We will only collect personal information by lawful and fair means. Where it is reasonable and practical to do so, we will collect personal information directly from you.


3. Purposes for Collection, Use and Disclosure

We collect, hold, use and disclose your personal information for the following purposes:

  • To provide, maintain and improve our AML/CTF compliance toolkit and related services.
  • To process your payments and manage your account.
  • To communicate with you about your account, purchases, and any changes to our services.
  • To provide customer support and respond to your enquiries.
  • To comply with our legal obligations, including under the AML/CTF Act 2006 (Cth), the Privacy Act, and the Australian Consumer Law.
  • To protect the rights, property and safety of our users and the public.
  • To analyse usage patterns and improve user experience on our platform.
  • To send you information about products or services that may be relevant to you, where you have consented to receiving such communications or where permitted by law.

We will not use or disclose your personal information for a purpose other than those set out above, unless we have your consent or are required or authorised by law.


4. Disclosure of Personal Information

We may disclose your personal information to the following categories of recipients:

  • Payment processors: Stripe, Inc. processes payments on our behalf.
  • Hosting and infrastructure providers: our platform is hosted on third-party cloud services (Vercel, Cloudflare) that may store data on servers located in the United States.
  • Professional advisors: our lawyers, accountants and auditors as required for business operations.
  • Regulatory bodies: where required by law, including AUSTRAC, the OAIC, or other Australian regulatory authorities.

We will not sell, rent or trade your personal information to third parties for marketing purposes.


5. Overseas Disclosure

We are likely to disclose personal information to overseas recipients. Our platform infrastructure uses services with servers located in the United States, including:

  • Stripe, Inc. (payment processing) — United States
  • Vercel, Inc. (hosting) — United States
  • Cloudflare, Inc. (content delivery and security) — United States

Before disclosing personal information to an overseas recipient, we take reasonable steps to ensure that the recipient does not breach the APPs in relation to the information.


6. Data Security

We take reasonable steps to protect the personal information we hold from misuse, interference and loss, and from unauthorised access, modification or disclosure. Our security measures include:

  • Encryption in transit (TLS 1.2+) and at rest.
  • Access controls and authentication mechanisms.
  • Regular review of our information collection, storage and processing practices.

When we no longer need your personal information for the purposes outlined in this policy, we will take reasonable steps to destroy or de-identify the information.


7. Access and Correction

You have the right to request access to the personal information we hold about you, and to request that we correct any information that is inaccurate, out of date, incomplete, irrelevant or misleading.

To request access to or correction of your personal information, please contact us using the details in Section 10 below. We will respond to your request within 30 days.

We will not charge you for making a request for access or correction. However, we may charge a reasonable fee for providing access if your request requires substantial effort on our part, and we will notify you of any fee in advance.

We may refuse to provide access or make a correction in certain circumstances permitted by the Privacy Act, and if we do so, we will provide you with written reasons for the refusal.


8. Complaints

If you believe we have breached the APPs or a registered APP code, you may lodge a complaint with us.

To make a complaint:

  1. Contact us using the details in Section 10 below.
  2. Provide details of your complaint, including the specific APP or conduct you believe has been breached.
  3. We will acknowledge your complaint within 7 business days.
  4. We will investigate your complaint and respond to you within 30 days.

If you are not satisfied with our response, you may lodge a complaint with the Office of the Australian Information Commissioner (OAIC):

  • Online: www.oaic.gov.au/privacy/privacy-complaints
  • Phone: 1300 363 992
  • Post: GPO Box 5288, Sydney NSW 2001

9. Automated Decision-Making

Our AML/CTF compliance toolkit provides guided compliance workflows to assist you in meeting your regulatory obligations. The platform does not use automated decision-making processes that make decisions in place of, or on behalf of, individuals.

Compliance outputs generated by our toolkit are based on your inputs and are intended as guidance to assist your own decision-making. You retain full control over all compliance decisions.

Note: From 10 December 2026, additional APP 1.7–1.9 obligations will apply to entities that arrange for computer programs to use personal information to make decisions that could reasonably be expected to significantly affect the rights or interests of individuals. We will update this policy as required to reflect those obligations.


10. How to Contact Us

If you have questions about this Privacy Policy, wish to make an access or correction request, or wish to lodge a complaint, please contact us:

DigiMod AI Pty Ltd
ABN 65 695 742 306 | ACN 695 742 306

Email: support@digimodai.com.au
Location: Perth, Western Australia


11. Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes to our information handling practices or legal obligations. We will publish any updates on our website. We encourage you to review this policy periodically.

Where we make material changes, we will take reasonable steps to notify you, such as by placing a notice on our website or by email.


Document ID: DMA-LEGAL-2026-PRIVACY-001 · Version 1.0 · Classification: PUBLIC · Review date: 25 August 2026