This Privacy Policy describes how Performance Solutions Australia Pty Ltd (ABN 51 676 127 272) ("PSA") collects, uses, and discloses personal information in connection with the codereview.au service. We comply with the Australian Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs).
1. What we collect
- Account: name, email, business details, ABN.
- Billing: handled by Stripe — we never store full card details, only the last 4 digits and brand for display.
- Plans uploaded: PDFs and metadata extracted (addresses, project numbers, client names appearing on plans).
- Usage: pages visited, actions taken, IP addresses, browser fingerprints (used for free-check rate limiting).
- Communications: emails to and from us.
- Lead handoff data: when a project's report is forwarded to PSA for a Performance Solution quote, project metadata, identified PS findings, and contact details are pushed to PSA's Odoo CRM.
2. How we use it
- Provide the service.
- Bill and process payments (via Stripe).
- Communicate about your Account and the service.
- Improve the service (de-identified data only).
- Detect abuse and prevent fraud.
- Comply with legal obligations.
- With your explicit consent: marketing communications.
3. Plans containing third-party information
Plans may contain client names and addresses. You warrant that you have authority to upload plans containing such information. We treat this information as confidential and use it only for analysis. Geocoding is performed against the project address only (not client name) for state-regulation lookup.
4. Sharing
- Stripe (payment processing).
- Anthropic (compliance review processing — under their commercial API terms; no training on customer data).
- SendGrid (email delivery).
- Google Maps (geocoding addresses for state determination).
- Odoo / Performance Solutions Australia (when a project is forwarded for a PS quote).
We do not sell personal information.
5. Data retention
- Account data: while account active, plus 7 years post-cancellation (tax records).
- Plans uploaded: retained while account active; deleted within 90 days of cancellation unless you request earlier deletion.
- Logs and analytics: 24 months.
- Free-check anonymous data: 90 days.
6. Your rights
You have the right to access, correct, or request deletion of your personal information. You may also lodge a complaint with the Office of the Australian Information Commissioner (OAIC). Contact: info@psaust.au.
7. Security
TLS in transit, encryption at rest, role-based access internally. Annual review of security practices. Stripe handles all payment data — PCI-DSS compliance is managed by Stripe.
8. Cookies
We use essential session cookies (always on). With your consent, we also use analytics cookies (consented at first visit via banner).
9. Children
The service is for business use and is not directed at persons under 18.
10. Contact
Performance Solutions Australia Pty Ltd · ABN 51 676 127 272 · info@psaust.au