INTRODUCTION
This Privacy Policy sets out the basis on which we will process any Personal Data that we may collect about you as a visitor to our website at www.habifyapp.com. This policy further sets out how we protect your privacy and your rights in respect of our use of your Personal Data.


WHO IS THE DATA CONTROLLER?
A “data controller” is a person or organisation who alone or jointly determines the purposes for which, and the manner in which, any personal data is, or is likely to be, processed. In this sense, HabifyApp with ABN 88 715 022 018 of Adelaide, Australia (“HabifyApp”, “we”, “us”, “our”) is the data controller. If you have any questions about cookies or about data protection at HabifyApp in general, you can reach us by email using admin@habifyapp.com.


WHAT IS PERSONAL DATA?
Personal data is any information that relates to an identified or identifiable living individual. Different pieces of information, which collected together can lead to the identification of a particular person, also constitute Personal Data.


WHY DO WE HAVE A PRIVACY POLICY?
Australia’s Privacy Act and the 13 Privacy Principles (“APA”) and the EU’s General Data Protection Regulation (“GDPR”) control how your Personal Data is used by us. In accordance with both we are required to explain which Personal Data we collect from you via our website, what we use it for, the third parties we share it with, when we delete it an how your data is protected.


WHAT ARE THE LEGAL BASES FOR PROCESSING PERSONAL DATA
All Personal Data that we obtain from you via our website will only be processed for the purposes described in more detail below. This is done within the framework of the APA and the GDPR and only if at least one of the following applies: a) you have given your consent, b) the data is necessary for the fulfilment of a contract / pre-contractual measures, c) the data is necessary for the fulfilment of a legal obligation, or d) the data is necessary to protect the legitimate interests of our company, provided that your interests are not overridden.


WHAT PERSONAL DATA DO WE COLLECT FROM YOU?
We may collect and process the following Personal Data about you:


a) Personal Data that you give us:
This is information about you that you give to us by filling in forms on our website (or other forms that we ask you to complete) or correspond with us. It may include, for example, your name, address, email address and telephone number; information about you and information about your requirements and interests.


If you are interested in or want to listen to our podcast, our web host GoDaddy.com will become aware of your IP address when you are clicking on the play button on any of our podcasts. This is a mere technical process and required to make the podcast depending on your browser, available for download to your device or available for listening via stream. The legal basis is the provision of a contract and our legitimate interest.


If you subscribe to our newsletter, we will use your email address to send you information about us, our app, promotions, news etc. To activate your subscription, you are required to verify your subscription via email. The services used for the purpose of operating our newsletter is GoDaddy Email Marketing. You can find an unsubscribe link at the end of each newsletter. The legal basis is your consent. In accordance with the Spam Act 2003 (Cth), if would like to unsubscribe from receiving future emails, you can email us and we will promptly remove you from ALL correspondence.

If you apply for a role as a Beta Tester, we process the information we receive from you as part of the application process. In addition to your contact details, information about your education, qualifications, and skills is particularly relevant to us. Your data will initially be processed solely for the purpose of carrying out the application process. As a rule, we do not require any special categories of Personal Data for the application process. We ask you not to provide us with any such information from the outset. If such information is relevant to the application process, we process it together with your other data. The legal basis is the initiation of a contract and your consent.


b) Personal Data that our website and other systems collect about you:
If you visit our website it will automatically collect some information about you and your visit, including the Internet protocol (IP) address used to connect your device to the Internet and some other information such as the pages on our site that you visit. This is used to monitor the performance of the website and improve the experience of visitors to the website. We use so-called cookies on our website. Cookies are pieces of information that are transmitted from our web server or third-party web servers to your web browser and stored there for later retrieval. Cookies may be small files or other types of information storage. As set out in the APA and the EU`s Privacy and Electronic Communications Directive (“PECD”), we need to obtain consent for the use of Non-essential Cookies. For further information on the cookies we use, please refer to our Cookie Policy.


For business reasons, we analyse the data we have on web and server traffic patterns, website interactions, browsing behaviour etc. The analyses serve us alone and are not disclosed externally and processed using anonymous analyses with summarised and or anonymized values. For this purpose we use Google Analytics. The legal basis is our legitimate interest and your consent. For further information, on our use of Google Analytics, please refer to our Cookie Policy.


We also use Google’s reCAPTCHA from Google to check whether data input is made by a human being or by an automated program. For this purpose, reCAPTCHA analyses the behaviour of the website visitor on the basis of various characteristics. This analysis begins automatically as soon as the website visitor enters the website. The legal basis for using reCAPTCHA is our legitimate interest.


Our website uses a cookie consent tool to obtain your consent to the storage of cookies and to document this consent. When you enter our website, the following Personal Data is transferred to us: i) Your consent(s) or revocation of your consent(s); ii) Your IP address; iii) Information about your browser; iv) Information about your device; v) Time of your visit to our website.


c) Other information:
We may also process aggregated data such as statistical or demographic data for any purpose including improving our website and services. Aggregated data could be derived from your Personal Data but is not considered Personal Data in law as this data will not directly or indirectly reveal your identity. However, if we combine or connect aggregated data with your Personal Data so that it can directly or indirectly identify you, we treat the combined data as Personal Data which will be used in accordance with this Privacy Policy.


DATA PROCESSING THROUGH THIRD-PARTY SERVICES
We use content or service offers of third-party providers on the basis of our legitimate interests in order to integrate their content and services (“content”). This always requires that the third-party providers of this content are aware of the IP address of the user, as without the IP address they would not be able to send the content to their browser. The IP address is therefore necessary for the display of this content. The following provides an overview of third-party providers and their content, together with links to their privacy policies, which contain further information on the processing of data and so-called opt-out measures, if any: a) Hosting and Content Management System: GoDaddy.com; b) Analytics: Google Analytics by Google; c) Spam Protection: Google
reCAPTCHA;


HOW WILL WE USE YOUR PERSONAL DATA?
We may collect, store and use your Personal Data for the following purposes:

We will only process your Personal Data as necessary so that we can pursue the purposes described above and where we have a legal basis for such processing. Where our lawful basis for processing is that such processing is necessary to pursue our legitimate interests, we will only process your Personal Data where we have concluded that our processing does not prejudice you or your privacy in a way that would override our legitimate interest. In exceptional circumstances we may also be required by law to disclose or otherwise process your Personal Data.


CHANGE OF PURPOSE
We will only use your Personal Data for the purposes for which we collected it as detailed above, unless we reasonably consider that we need to use it for another reason and that reason is compatible with the original purpose. If we need to use your Personal Data for an unrelated purpose, we will notify you and we will explain the legal basis which allows us to do so.


DISCLOSURES OF YOUR PERSONAL DATA

Your Personal Data will be shared internally to ensure the efficient operation of our business (for instance, by sourcing our shared services in the most cost-effective way) and to provide the highest quality of client services. Where required, we will (subject to applicable laws, our professional obligations and any
terms of business which we may enter into with you) disclose your Personal Data to:

We require any person or entity to whom we disclose Personal Data to respect the confidentiality and security of your Personal Data and to treat it in accordance with applicable laws and regulations. We do not allow such recipients of your Personal Data to use it for their own purposes, and we only permit them to process your Personal Data for specified purposes and in accordance with our instructions.


International transfers
We may transfer your Personal Data to other companies as necessary for the purposes described in this Privacy Policy. In order to provide adequate protection for your Personal Data when it is transferred, we have contractual arrangements regarding such transfers. We take all reasonable technical and organisational measures to protect the Personal Data we transfer.


ADVERTISING
We would like to show you interesting advertising on our website and use Google AdSense for this purpose. Google AdSense places certain cookies and these collect and process information about your activities on our website. For further information, please refer to our Cookie Policy.


HOW LONG DO WE KEEP YOUR PERSONAL DATA?
We will delete your Personal Data when we no longer need such Personal Data, for instance where:

Sometimes, however there are legal or regulatory requirements which may require us to retain your Personal Data for a specified period, and in such cases we will retain your Personal Data for such specified period; and we may need to retain your Personal Data for certain longer periods in relation to legal disputes, and in such cases we will retain it for such longer periods to the extent required.

HOW WE SECURE YOUR PERSONAL DATA
We take appropriate organisational, technical, and physical measures to help safeguard against accidental or unlawful destruction, loss, alteration, and unauthorised disclosure of, or access to, the Personal Data we collect and process. However, no method of collection, storage, or transmission is 100% secure. You are solely responsible for protecting your password, limiting access to your devices, and signing out of websites after your sessions.


LINKED SITES
For your convenience, there may be hyperlinks on our website that link to other websites. We are not responsible for, and this Privacy Policy does not apply to the privacy practices of any linked websites or of any companies that we do not own or control. The website links may collect information in addition to the information we collect.


We do not endorse any of these linked websites, their products, services, or any of the content on their websites. We encourage you to seek and read the Privacy Policy of each linked website that you visit to understand how the information that is collected about you is used and protected.


YOUR RIGHTS AND PRIVILEGES
a) Privacy rights
You can exercise the following rights:

b) Updating your information and withdrawing your consent

c) Access Request

In the event you want to make a Data Subject Access Request, please contact us.

We will;

d) Complaint to a supervisory authority

e) What we do not do


HELP AND COMPLAINTS
If you have any questions about this policy or the information we hold about you please contact us by email using admin@habifyapp.com.

CHANGES
The first version of this policy was issued on Monday 29th of July 2024 and is the current version. Any prior versions are invalid and if we make changes to this policy, we will revise the effective date.