Home/Legal & Trust Centre/Australian Privacy Principles

Privacy & data protection

Australian Privacy Principles (APP) Statement

How we comply with each of the 13 Australian Privacy Principles

Effective date1 January 2026
Document versionVersion 1.0
Product websitehivenox.com
Operated byAI Solution Technologies Pty Ltd
Registered officeSuite 6, 191 Church Street, Parramatta, Sydney NSW 2150, Australia

This document is published in English. The English text is the governing version.

How we meet each of the thirteen APPs, from open management through to correction.

Introduction

This Statement sets out how AI Solution Technologies Pty Ltd (“AI Solution Technologies”, “we”, “us” or “our”), operator of the Hivenox platform, complies with each of the thirteen Australian Privacy Principles (“APPs”) in Schedule 1 to the Privacy Act 1988 (Cth). It supplements our Privacy Policy. Where we process Customer Data on behalf of a Customer, the Customer is generally the controller and our obligations are set out in our Data Processing Agreement.

APP 1 — Open and transparent management of personal information

We manage personal information openly and transparently, maintain an up-to-date Privacy Policy available free of charge, and implement practices, procedures and systems to comply with the APPs and to handle enquiries and complaints.

APP 2 — Anonymity and pseudonymity

Where lawful and practicable we allow individuals to deal with us anonymously or by pseudonym. As a business platform, however, we generally cannot provide the Service or support without identifying information.

APP 3 — Collection of solicited personal information

We collect only personal information reasonably necessary for operating and providing the Service, by lawful and fair means, and generally directly from the individual. We collect sensitive information only with consent or as otherwise permitted by law.

APP 4 — Dealing with unsolicited personal information

If we receive unsolicited personal information we could not have collected under APP 3, and it is not part of a Commonwealth record, we destroy or de-identify it as soon as practicable, where lawful and reasonable.

APP 5 — Notification of collection

At or before collection (or as soon as practicable after), we take reasonable steps to notify individuals of our identity and contact details, the purposes of collection, the consequences if information is not provided, likely disclosures, and how to access, correct or complain.

APP 6 — Use or disclosure

We use or disclose personal information only for the primary purpose of collection, a related secondary purpose the individual would reasonably expect, or where consent is given or another exception applies.

APP 7 — Direct marketing

We use personal information for direct marketing only where permitted under the Privacy Act and the Spam Act 2003 (Cth), and we provide a simple, promptly honoured opt-out.

APP 8 — Cross-border disclosure

Before disclosing personal information to an overseas recipient (including our cloud, AI and support providers), we take reasonable steps to ensure APP-consistent handling, unless an exception such as informed consent applies.

We do not adopt a government related identifier as our own identifier of an individual, and use or disclose such identifiers only where permitted under the Privacy Act.

APP 10 — Quality of personal information

We take reasonable steps to ensure the personal information we collect, use and disclose is accurate, up to date, complete and relevant, having regard to the purpose.

APP 11 — Security

We take reasonable steps to protect personal information from misuse, interference, loss and unauthorised access, modification or disclosure, using technical, physical and organisational controls aligned with ISO/IEC 27001 and ISO/IEC 42001, and we destroy or de-identify information no longer needed.

APP 12 — Access

On request we give individuals access to their personal information, subject to permitted exceptions, within a reasonable period and without excessive charge, providing written reasons where access is refused.

APP 13 — Correction

We take reasonable steps to correct personal information to keep it accurate, up to date, complete, relevant and not misleading, and where we refuse, we give written reasons and can note a statement of disagreement.

Exercising your rights and complaints

To exercise your rights or make a complaint, contact our Privacy Officer using the details below. If unsatisfied, you may contact the OAIC at www.oaic.gov.au or on 1300 363 992. This Statement is effective from 1 January 2026.

Contact Us

If you have any questions about this document, or wish to exercise any of your rights, please contact us using the details below.

Hivenox — operated by AI Solution Technologies Pty Ltd

Also in the Trust Centre

The other documents

Talk to HIVENOX

Questions about how we would run it for you?

The policies set out the rules. The team can walk you through how they apply to your data, your contracts and your markets.