Privacy policy

Purpose and Scope
At B-HART, we are committed to protecting your privacy and ensuring your personal information is handled safely, securely, and in accordance with the Privacy Act 1988 (Cth) and Australian Privacy Principles (APPs).

This policy outlines how B-HART collects, stores, uses, and protects personal and sensitive information. It applies to all staff, contractors, subcontractors, and partners who handle data related to participants, employees, subcontractors, and any associated individuals or organisations.

Guiding Principles
Respect for Privacy: All individuals have the right to control how their personal information is handled.
Transparency: B-HART is clear about how and why information is collected, used, and disclosed.
Security: B-HART implements strong safeguards to protect data from unauthorised access, alteration, or loss.
Purpose-Limitation: Information is used only for purposes it was collected for, or as required by law.

Responsibilities
Leadership Team: Oversees compliance with the Privacy Policy and ensures staff are trained.
Staff and Contractors: Must follow data handling protocols and confidentiality requirements.
IT and Admin Roles: Maintain security infrastructure and data storage systems.

Information We Collect
When you visit our website, we may collect:
- Basic device information (IP address, browser type, operating system)
- Pages viewed and time spent
- Cookies and analytics data

This information helps us improve user experience and website performance. You can disable cookies in your browser settings.

When you use our services, we may collect:
- Your name, contact details, and demographic information
- Service usage information
- Consent and feedback

Why We Collect Data
We collect data to:
- Provide services and support to clients
- Comply with legal obligations, including reporting to government bodies such as Department of Social Services (DSS)
- Improve and evaluate our programs
- Ensure client safety and service quality

Client Data and DSS Data Exchange (DEX)
As a funded service provider, B-HART submits anonymised or de-identified client data to the DEX portal managed by DSS. This helps evaluate and improve social services nationally.
- B-HART collects client data in line with DEX protocols and DSS requirements.
- Only necessary data is shared.
- Data is de-identified, meaning it cannot be used to identify you personally.
- Clients are informed about what data is collected and why and consent is sought.
- You may opt out of having your information included in DEX reports. Please speak with our team for more information.
- Click here to access further information about our privacy obligations to DEX.

Data Handling and Security Procedures
- All data must be collected with informed consent.
- Use of secure systems for storing physical and digital records.
- Access limited to only those with appropriate authority.
- Information shared with third parties only with consent or legal obligation.
- We use industry best practices to prevent data loss, misuse, or unauthorised access.
- Data breaches must be reported immediately and managed as per response protocol.

Your Rights
You have the right to:
- Access the personal information we hold about you.
- Request corrections to your information.
- Withdraw consent for data collection (where applicable).

To exercise these rights, contact us at: info@b-hart.com.au

Third Parties & Disclosure
We do not sell or rent your personal information. We only share it:
- With government bodies where required (e.g., DSS).
- With third parties who assist in delivering services (under strict privacy agreements).
- If required by law.

Contact Us
For any questions or concerns about this Privacy Policy, please contact:
B-HART Privacy Officer
Email: info@b-hart.com.au
Telephone: 08 7077 4838
Address: 2/59 Pennington Terrace, North Adelaide SA 5006

Policy reviewed July 2025