Privacy Policy

Effective Date: January 26, 2026 • Last Updated: January 26, 2026

1. Introduction

This Privacy Policy explains how Simply Steps ("we", "us", "our") collects, uses, stores, and protects personal information in accordance with the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs).

We are committed to safeguarding user privacy and ensuring that personal information is handled in a secure, lawful, and transparent manner. This policy applies to all users of our website, mobile applications, and related services (collectively, the "Services").

2. Scope and Jurisdiction

  • All servers and data infrastructure used by our Services are located in Australia.
  • Personal information is stored and processed within Australia only.
  • We do not transfer personal data overseas.

3. Personal Information We Collect

We only collect personal information that is reasonably necessary for the Services:

  • Email address
  • Account and authentication details
  • User-generated content (including messages, images, or files you choose to upload)
  • Usage and technical data (such as device type, app version, and error logs)

We do not collect unnecessary or excessive personal information.

4. How We Use Personal Information

Your personal information is used solely to:

  • Provide, operate, and improve the Services
  • Authenticate users and manage accounts
  • Enable secure communication and functionality
  • Respond to support requests
  • Meet legal and regulatory obligations

We do not use your personal information for advertising, profiling, or unrelated purposes.

5. Email Address Use

  • Your email address is used only for account-related purposes.
  • We do not use your email address for marketing without your explicit consent.
  • We do not sell, rent, trade, or share email addresses with any third party.

6. End-to-End Encrypted Communication (E2EE)

Where applicable, chat and messaging features within the Services use end-to-end encryption:

  • Messages are encrypted on the sender's device and decrypted only on the recipient's device.
  • We do not have access to message content in readable form.
  • Message content cannot be accessed by unauthorised parties, including us.

Metadata (such as timestamps or delivery status) may still be processed for system functionality and security purposes.

7. Data Storage and Security

We take reasonable and appropriate measures to protect personal information from:

  • Unauthorised access
  • Loss or misuse
  • Interference or disclosure

Security measures include, but are not limited to:

  • Secure Australian-based servers
  • Encryption in transit and at rest where appropriate
  • Access controls and authentication mechanisms
  • Regular system monitoring and updates

8. Data Access and User Control

Each user can access only their own personal data. We implement strict access controls to ensure:

  • Users cannot view or retrieve other users' information
  • Administrative access is limited and auditable

9. Data Deletion Requests

Users have the right to request deletion of their personal data. To delete your data:

  • Click "Delete My Data" on the website or within the app
  • Enter your registered email address
  • Confirm your request via the required confirmation checkbox or verification step

Once confirmed, your personal data will be permanently deleted unless retention is required by law. Deletion will occur within a reasonable timeframe.

10. Disclosure of Information

We do not sell, trade, or provide personal information to third parties. We may disclose data only:

  • Where required or authorised by Australian law
  • To comply with a lawful request from a regulatory or law enforcement authority
  • To protect the rights, safety, or security of users or the Service

11. Data Retention

We retain personal information only for as long as it is necessary to provide the Services or meet legal and regulatory obligations. When information is no longer required, it is securely deleted or de-identified.

12. Your Rights Under Australian Law

Under the Privacy Act 1988 (Cth), you have the right to:

  • Access your personal information
  • Request correction of inaccurate or outdated information
  • Request deletion of your data
  • Make a privacy complaint

Requests can be made by contacting us using the details below.

13. Changes to This Policy

We may update this Privacy Policy from time to time. Any changes will be published on this page with an updated effective date. Continued use of the Services after changes indicates acceptance of the updated policy.