Beyond compliance with the Privacy Act 2998 (Cth), there are other reasons you may need a Privacy Policy. They include:
- Your customers probably expect you to have one.
- You may hold information about European Union citizens and residents, and must therefore comply with the General Data Protection Regulation (GDPR). The GDPR requires you to have a Privacy Policy.
- By being transparent you protect your business reputation if a data breach occurs.
- You may be contractually bound to comply with the Australian Privacy principles. For example, Apple iStore requires mobile app developers to have a Privacy Policy and so does Google if you develop apps for Google Home.
- If you contract with the Commonwealth Government you are required to comply with the Privacy Act. Similarly state government contracts often bind you to state privacy law.
- You may just accept privacy is important and therefore take it seriously.
Typically, the information contained in a Privacy Policy includes:
- Information about the types of personal and sensitive information held.
- How that information is collected.
- The purpose of collecting that information.
- Details of how that information can be accessed or corrected.
- To whom information is disclosed and include details of any offshore processing.
- How an individual can make a complaint.
They include:
- We draft dozens of them and can probably do it a lot quicker than you.
- Having us draft one lets you focus on growing your business.
- Regularly dealing with data breaches and privacy complaints we can pre-empt likely issues.
- We have deep knowledge of data flows throughout businesses and can help you identify the sources and use of personal information within your business.