Legal

Privacy Policy

Last Updated: March 21, 2026

Beta Program Notice

EasyKeeper is currently in beta. During the beta period, data handling practices described in this policy apply. We may collect additional usage data and feedback to improve the platform. Beta participants may be contacted for feedback and product improvement purposes.

1. Introduction

EasyKeeper ("we", "our", "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our business and accounting software platform.

This policy complies with the Australian Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs).

2. Information We Collect

2.1 Personal Information

  • Name and contact details
  • Email address and phone number
  • Business name and ABN
  • Accounting firm details
  • Payment information (processed securely through Stripe)

2.2 Financial Information

  • Financial statements and reports
  • Transaction records
  • Tax documents
  • Bank statements
  • Receipts and invoices

2.3 Technical Information

  • IP address and location data
  • Browser type and version
  • Device information
  • Cookies and usage data

3. How We Use Your Information

We use your information to:

  • Provide accounting software and financial management services
  • Process payments and manage subscriptions
  • Send service notifications and updates
  • Improve our services and user experience
  • Comply with legal obligations
  • Detect and prevent fraud and security threats
  • Train and improve our AI categorisation models using anonymised transaction patterns (your data is never shared with other users or third parties in identifiable form)

4. Data Storage and Security

  • Data is stored on secure cloud servers (Neon Database)
  • We use encryption (SSL/TLS) for all data transmission
  • Access is restricted to authorised personnel only
  • Regular security audits and monitoring
  • Automated backup systems in place
  • Multi-factor authentication for admin access

5. Data Retention

We retain your data for:

  • Active accounts: Duration of service plus 7 years (Australian tax law requirement)
  • Closed accounts: 7 years from closure date
  • Financial records: 7 years (ATO requirement)

6. Your Rights

Under Australian Privacy Law, you have the right to:

  • Access your personal information
  • Correct inaccurate or incomplete information
  • Request deletion of your data (subject to legal requirements)
  • Opt-out of marketing communications
  • Lodge a complaint with the Office of the Australian Information Commissioner (OAIC)
  • Export your data in a portable format

7. Third-Party Services

We use the following third-party services:

  • Neon Database: Secure data storage (AWS infrastructure, Asia-Pacific region)
  • Vercel: Application hosting and CDN (global)
  • Stripe: Payment processing (PCI DSS Level 1 compliant)
  • Resend: Transactional email notifications
  • Anthropic (Claude AI): AI-powered transaction categorisation and analysis (your data is processed but not stored by Anthropic)
  • Basiq: CDR-accredited bank feed connections (Consumer Data Right compliant)
  • Sentry: Error tracking and performance monitoring (no personal data transmitted)

8. Cookies

We use cookies for:

  • Authentication and security (essential)
  • Remembering your preferences and settings
  • Analytics to improve our service (with your consent)

You can disable cookies in your browser settings, but this may affect functionality.

9. Data Breaches

In the event of a data breach:

  • We will notify affected users within 72 hours
  • We will notify the OAIC if required by law
  • We will take immediate steps to secure systems and prevent further breaches
  • We will provide guidance on protective measures you can take

10. International Data Transfers

Your data is primarily stored in Australia and the Asia-Pacific region. Some data may be processed by service providers in other countries (e.g., USA for payment processing via Stripe). We ensure adequate protection through contractual safeguards and compliance with Australian standards.

11. Children's Privacy

Our services are not intended for users under 18 years of age. We do not knowingly collect information from children.

12. Changes to This Policy

We may update this policy from time to time. We will notify you of significant changes via email or in-app notification at least 30 days before they take effect.

13. Contact Us

For privacy-related inquiries:

  • Email: privacy@easykeeper.com.au
  • Mail: Melbourne, Victoria, Australia

To lodge a complaint:

  • Office of the Australian Information Commissioner (OAIC)
  • Website: www.oaic.gov.au
  • Phone: 1300 363 992