What we collect
We collect only the information needed to deliver the platform and meet legal and NDIS obligations — including account details, support delivery records, and uploaded evidence such as notes, images and voice captures. Participant data is collected and held by the registered NDIS provider; SFG processes it on their behalf.
How we use it
Personal information is used to operate the platform, generate audit-ready evidence, support quality and safeguarding, and meet contractual and regulatory obligations. We do not use participant data to train general-purpose AI models.
Where it is stored
Customer data is hosted in Microsoft Azure Australian regions (Australia East / Australia Southeast). Backups remain within Australia.
Who can access it
Access is least-privilege and role-based. Provider staff see only what their role requires. SFG personnel access customer data only when required for support, change or incident response, and every access is logged.
AI processing
AI assists with drafting summaries and checking completeness. Drafts are clearly labelled and a human supervisor reviews, edits and approves before any evidence becomes official. This aligns with the Australian Voluntary AI Safety Standard.
Your rights
Under the Australian Privacy Principles you can request access to and correction of personal information SFG holds about you. Contact us using the details below.
Notifiable data breaches
Where a breach is likely to result in serious harm, SFG complies with the Notifiable Data Breaches scheme under the Privacy Act 1988 and notifies affected individuals and the OAIC.
Contact us
Privacy enquiries: admin@sfgtechsolutions.com. Postal: Floor 1, 240 Waterworks Road, Ashgrove QLD 4060.
This statement is a summary intended to help readers understand our approach. The full Privacy Policy is available on request.
