1. About this Privacy Policy
This Privacy Policy explains how AusLanka (we, us, our) collects, uses, stores, and discloses personal information when you use the AusLanka website, accounts, and hub services (Service).
AusLanka operates multiple community services. This policy covers the main AusLanka site and the central account experience, and it is intended to align with the Australian Privacy Principles (APPs) under the Privacy Act 1988 (Cth).
Some services have additional, service-specific privacy policies. Where those apply, they supplement this policy.
2. Service-specific privacy policies
For services with their own policies, please review the relevant documents:
- AusLanka Marketplace: Privacy Policy and Terms of Service.
- Business Directory: Privacy Policy and Terms of Service.
Other services on AusLanka currently follow this Privacy Policy unless a separate policy is published.
3. Personal information we collect
Depending on how you use the Service, we may collect:
- Account information: name, email address, contact preferences, authentication identifiers, and profile photo (if provided).
- Profile and community content: information you add to your profile, comments, reviews, or other content you choose to publish.
- Communications: messages you send to us (for example support requests), feedback, and survey responses.
- Usage and device data: pages viewed, clicks, referrer URL, approximate location inferred from IP (where available), device and browser information, and session identifiers.
- Cookies and similar technologies: used to operate the Service and for analytics (see section 11).
4. How we collect personal information
- Directly from you when you create an account, edit your profile, or contact us.
- Automatically when you browse the Service (for example via cookies, analytics tools, server logs, and in-product event tracking).
- From third parties where you choose to use third-party sign-in or integrations.
5. How we use personal information
We may use personal information to:
- Provide, maintain, and improve the AusLanka platform and community services.
- Authenticate users, secure accounts, and prevent misuse.
- Respond to support requests and send service-related notices.
- Personalise content and provide relevant recommendations.
- Comply with legal obligations and respond to lawful requests.
6. Google user data we access (Data Accessed)
If you choose Google Sign-In, we access specific Google account data through Firebase Authentication. This typically includes:
- Basic profile data: your Google account name, email address, and profile photo URL.
- Authentication identifiers: unique account identifiers and token claims needed to verify your identity and keep your session active.
- Account status metadata: data such as whether your email is verified and which sign-in provider was used.
We do not request Google API scopes for Gmail, Drive, Calendar, Contacts, or other restricted Google user data for this sign-in flow.
7. How we use Google user data (Data Usage)
When accessed through Google Sign-In, we use Google user data to:
- Authenticate your account and allow secure sign-in.
- Create or update your AusLanka account record (for example email, display name, and profile photo).
- Issue and validate secure sessions, including cross-service single sign-on where applicable.
- Protect accounts, detect abuse, and troubleshoot authentication issues.
We do not sell Google user data, and we do not use Google user data obtained via Google APIs for advertising purposes or AI/ML model training.
8. How we store and protect Google user data
Google Sign-In data is stored and processed in services we use to run the platform, including Firebase Authentication and our databases.
- Account records: fields such as UID, email, display name, profile photo URL, provider ID, and account timestamps.
- Session management: secure HTTP-only session cookies used to keep you logged in for a limited period.
We apply access controls and security measures designed to limit access to authorised personnel and systems only. You can request account deletion by contacting us at contact us.
9. Public information
Some information you publish, such as public profile details or reviews, may be visible to other users. You control what you share publicly.
10. Disclosures and service providers
We may disclose personal information to third parties where necessary to provide the Service, including:
- Infrastructure and hosting: cloud hosting and storage providers.
- Authentication and database: providers such as Firebase (Google) used for authentication and data storage.
- Analytics: tools such as Google Analytics, and internal analytics used to understand platform usage.
- Professional advisers: legal, accounting, or other advisers where required.
- Authorities: regulators or law enforcement where required or permitted by law.
We require service providers to handle information in a manner consistent with this policy and applicable law.
We do not sell personal information, including Google user data accessed through Google Sign-In.
12. Overseas disclosure
Some of our service providers may process or store information outside Australia. Where we disclose information overseas, we take reasonable steps to ensure it is handled in a manner consistent with the APPs and this policy.
13. Security and retention
We take reasonable steps to protect personal information from misuse, interference, loss, and unauthorised access, modification, or disclosure. No method of transmission or storage is completely secure.
We retain personal information only for as long as needed for the purposes described in this policy (unless a longer retention period is required or permitted by law), and then delete or de-identify it where reasonable.
Where we become aware of an eligible data breach, we will act in accordance with the Notifiable Data Breaches scheme under the Privacy Act 1988 (Cth).
14. Access and correction
You may request access to, or correction of, personal information we hold about you. We may need to verify your identity before responding.
If you need help, contact us at contact us.
15. Complaints
If you have a complaint about how we handle personal information, please contact us with as much detail as possible so we can investigate.
If you are not satisfied with our response, you may be able to contact the Office of the Australian Information Commissioner (OAIC).
16. Changes to this policy
We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated revision date.
17. Contact us
For privacy questions, requests, or complaints, contact us at contact us.
Website: auslanka.com.au
