Privacy Policy

This page is a draft, not legal advice. It’s a reasonable starting structure aligned to the Australian Privacy Principles (APPs) under the Privacy Act 1988 (Cth), but every business is different: please have it reviewed by a solicitor or a reputable legal-documents service before you publish it, and fill in every [bracketed] placeholder with your real details. Note: some small businesses (under $3 million annual turnover) are exempt from parts of the Privacy Act, but exemptions have exceptions, for example, if you handle health information, an exemption is unlikely to apply. Confirm your own position rather than assuming.

Last updated: [date]

Who we are

PD Bites (“we”, “us”, “our”) provides online professional development modules and related training services. Our contact details are on our Contact page. Our ABN is [ABN, to be added once registered].

What personal information we collect

Depending on how you interact with us, we may collect: your name, email address, phone number, employer/organisation name and sector; payment-related details processed by a third-party payment provider (we do not store full card numbers ourselves); details you provide in enquiry, customised training, or contact forms; and records of which modules you have completed, for the purpose of issuing certificates.

Your account

Free modules need no account and no email address. To buy a paid module you create an account, and we hold your name, your email address, the modules you have bought and completed, your certificates with their dates and CPD hours, your progress through anything you have started, and a record of your purchases for tax and refund purposes.

We ask for an account for three reasons: so you can leave a module part-finished and come back to it, so your certificates stay in one place when you need to evidence your CPD, and so that if a payment fails or a module will not open we can find your record and fix it.

Our online learning platform and our payment provider are third parties who process this information on our behalf. Full card numbers are handled by the payment provider and are never stored by us. We do not sell personal information to anyone.

You can ask for a copy of what we hold, ask us to correct it, or ask us to close your account and delete it. Closing your account ends your access to modules you have bought, so download your certificates first. Some purchase records are kept for the period required by tax and consumer law even after an account is closed.

How we use it

  • To provide and deliver purchased modules and issue certificates.
  • To respond to enquiries, quotes, and customised training requests.
  • To send you information about a module or order you’ve engaged with.
  • With your separate consent, to send marketing about new modules. You can opt out at any time.
  • To meet our own legal, accounting and record-keeping obligations.

Disclosure to third parties

We may share limited information with service providers who help us run PD Bites, for example, payment processors, email/form providers, and website hosting, only to the extent needed to provide our services. We do not sell personal information.

Storage and security

[Describe where data is stored, e.g. “in Australia” or naming your specific software providers, and what reasonable steps you take to protect it, such as access controls and secure hosting.]

Access and correction

You can ask us what personal information we hold about you, and ask us to correct it, by contacting us via the Contact page. We’ll respond within a reasonable time.

Complaints

If you have a concern about how we’ve handled your personal information, contact us first via the details above. If you’re not satisfied with our response, you can contact the Office of the Australian Information Commissioner (OAIC) at oaic.gov.au.

Changes to this policy

We may update this policy from time to time. The “last updated” date above will reflect the most recent change.