Privacy Policy
Last updated: 6 March 2026
Fifteen54 Pty Ltd (ABN pending) ("we", "us", "our") operates the Fifteen54 platform. This policy describes how we collect, use, and protect your personal information in accordance with the Australian Privacy Act 1988 and the Australian Privacy Principles (APPs).
1. Information We Collect
We collect the following types of information:
- Account information: name, email address, company name, and role when you create an account or are invited by a team administrator.
- Usage data: actions performed within the platform (e.g. documents uploaded, inspections recorded) for audit trail and quality assurance purposes.
- Communications: emails sent and received through the platform's integrated email system.
- Documents: files you upload including compliance certificates, shop drawings, inspection reports, and related metadata.
- Device information: browser type, operating system, and IP address for security monitoring.
2. How We Use Your Information
We use your information to:
- Provide and operate the Fifteen54 platform.
- Authenticate your identity and manage access permissions.
- Maintain audit trails for compliance and traceability purposes.
- Send transactional emails (e.g. document notifications, account invitations).
- Monitor and improve platform security and performance.
- Respond to support requests.
We do not sell your personal information. We do not use your data for advertising.
3. Data Storage and Security
Your data is stored in Amazon Web Services (AWS) infrastructure located in the Asia Pacific (Sydney) region (ap-southeast-2). We implement industry-standard security measures including:
- Encryption in transit (TLS 1.2+) and at rest (AES-256).
- Authentication via AWS Cognito with secure token management.
- Tenant isolation ensuring your data is separated from other organisations.
- Regular security monitoring and access logging.
4. Data Sharing
We only share your information with:
- Your organisation: team administrators can view activity within their tenant.
- Infrastructure providers: AWS (hosting), MongoDB Atlas (database), Anthropic (AI assistant) — all bound by their own privacy obligations.
- Third-party services: DocuSign (e-signatures) and Amazon SES (email delivery) when you use those features.
We will disclose information if required by Australian law or a court order.
5. Data Retention
We retain your data for as long as your account is active or as needed to provide services. Compliance documents and audit trails are retained for the duration required by applicable Australian standards and regulations. You may request deletion of your account and personal data by contacting us.
6. Your Rights
Under the Australian Privacy Principles, you have the right to:
- Access the personal information we hold about you.
- Request correction of inaccurate information.
- Request deletion of your personal information.
- Lodge a complaint about our handling of your information.
7. Cookies
We use essential cookies for authentication and session management only. We do not use tracking cookies or third-party analytics.
8. Changes to This Policy
We may update this policy from time to time. Material changes will be communicated via the platform or email. Continued use of the platform after changes constitutes acceptance.
9. Contact
For privacy enquiries or to exercise your rights, contact us at:
andrew@fifteen54.com.au