BiziOps Pty Ltd | ABN 83 690 607 839
Effective Date: 10 December 2025 | Last Updated: 2 September 2026
BiziOps Pty Ltd ("we," "us," or "our") is committed to protecting the privacy of individuals who visit our website at biziops.ai, use our platform, use our mobile application for Android and iOS, or otherwise engage with our services. This Privacy Policy explains how we collect, use, disclose, and safeguard your personal information in accordance with the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs).
Data collected by the BiziOps mobile application — including location data, camera, photos, microphone and device information — is described in Section 3.
This Privacy Policy forms part of our Services Agreement with enterprise customers and should be read in conjunction with that agreement where applicable.
By accessing our website or using our services, you acknowledge that you have read and understood this Privacy Policy.
We may collect personal information that you voluntarily provide, including:
When you or your organisation uses the BiziOps platform, we may collect User Data and Raw Input Data, including:
When you visit our website, we may automatically collect:
Information collected automatically by our mobile application, including location data, is described separately in Section 3.
This Privacy Policy also covers the BiziOps mobile application for Android and iOS ("the App", Google Play package com.biziops.mobile). The App is supplied to workers by their employer as part of that organisation's BiziOps subscription. This section describes the data the App accesses or collects on your device, why it is accessed, who it is shared with, and how you can control it. It applies in addition to the rest of this Privacy Policy.
The App accesses and collects location data, including background location. With your permission, the App collects precise location (GPS / fine location) and approximate location (coarse location) from your device. Each location capture may include latitude and longitude, the accuracy radius of the reading, heading and speed at the moment of capture, the date and time of capture, and whether the reading was current or a last-known position.
Why the App collects location. Location is collected only to deliver workforce safety, compliance and site-verification features requested by you or configured by your employer:
Location (including background location). BiziOps collects precise (GPS) and approximate location. Standard features collect location only while the App is open. If your employer uses the Lone Worker safety feature and you start a monitored shift, the App also collects and shares your precise location in the background — including while your phone is locked or the App is closed — for the duration of that monitored session, so your employer's safety team can locate you in an emergency or if you become unresponsive. Background tracking begins only when you start a monitored session, is indicated by a persistent notification, and stops when the session ends. Location collected during a session is stored in your employer's BiziOps account, may be viewed by authorised safety contacts, supervisors and administrators, and is retained with the session or alert records it relates to, then deleted or de-identified.
When location is captured. Outside a monitored Lone Worker session, location is captured only while the App is open — at the moment you perform an action (such as clocking on, submitting a report, scanning a checkpoint or sending a panic alert) and, during an active shift with the App open, at intervals for the geofence check described above. The App uses the Android background location permission (ACCESS_BACKGROUND_LOCATION) and the iOS "Always" location permission solely to deliver Lone Worker monitored sessions; background location is not used for any other feature and is never used for advertising or profiling.
Your control over location. The App asks for location permission the first time a feature needs it, and you may decline. Background location is requested separately, and only in connection with the Lone Worker safety feature; you may decline it and still use the rest of the App. You can grant or revoke either permission at any time in your device settings (Android: Settings > Apps > BiziOps > Permissions > Location, choosing "Allow only while using the app" or "Don't allow" to stop background collection; iOS: Settings > BiziOps > Location, choosing "While Using the App" or "Never"), and you may choose to share approximate rather than precise location where your device supports it. If permission is declined or revoked, the App continues to work and records are still submitted — they are simply saved without location information, geofence status is unavailable, and monitored Lone Worker sessions cannot report your position. Safety features such as panic alerts still operate without location, but your position cannot be sent to your supervisor.
Who location data is shared with. Location captured through the App is stored with the record it relates to in your employer's BiziOps account and may be viewed by authorised supervisors, managers and administrators of your employing organisation. It is processed on our behalf by our cloud hosting and infrastructure providers, and may form part of the operational records processed by our AI Agent for risk and compliance analytics as described in Section 7. Where the App displays a map, mapping tiles are provided by Google Maps Platform. For the weather feature only, approximate coordinates are sent to third-party weather and place-name services (Open-Meteo, wttr.in and OpenStreetMap Nominatim) solely to return current conditions and a place name; no account, name or device identifier is sent with those requests.
We do not sell location data. We do not sell or rent location data, and we do not use it for advertising, ad targeting, marketing profiling, or any purpose unrelated to the safety, compliance and workforce features described above.
Retention. Location data is retained as part of the shift, incident, checklist, log or alert record it belongs to, for as long as that record is retained under Section 11, and is then deleted or de-identified. Your employer determines which location-based features are enabled and how long records are kept.
Where your employer enables the Lone Worker safety feature, the App can run monitored sessions. During a monitored session we collect and store: the start and end time of the session; the times of your check-ins and whether an expected check-in was missed; your location, including background location as described in Section 3.1; and the details of any duress or panic alert you raise, including the time and location at which it was raised.
Automated welfare calls and voice recordings. Where your employer enables this option, if you do not check in as expected the App may place an automated welfare call to your telephone number and ask you to speak a pre-agreed safe word to confirm you are safe. If this feature is enabled we collect and store: your telephone number; your safe word; a recording of the call, including your spoken response, which is retained as evidence of the welfare check; and the outcome of the call (for example, safe word confirmed, safe word not confirmed, no answer, no response, or voicemail). An unanswered or unconfirmed call causes the matter to be escalated to your employer's contacts. Your employer decides whether to enable automated welfare calls and is responsible for notifying you and obtaining any consent required before calls are placed or recorded, including under State and Territory surveillance devices and call-recording laws.
Who receives this information. Check-ins, missed check-in escalations and duress alerts are delivered to the safety contacts, supervisors, managers or distribution lists that your employer configures in its BiziOps account. Your employer may configure tiered escalation, so that if there is no response, successive tiers of contacts are notified after further periods. Depending on your employer's configuration and the channels each contact has enabled, notifications may be sent by email, SMS and push notification. Session and alert records are stored in your employer's BiziOps account and may be viewed by its authorised safety contacts, supervisors and administrators.
BiziOps does not monitor sessions or alerts. We do not operate a monitoring centre, control room or alarm receiving centre. We do not watch monitored sessions, we do not review or triage alerts, we do not verify anyone's wellbeing, and we do not contact emergency services, security providers or next of kin on your behalf or on your employer's behalf. Monitoring of, and response to, alerts is performed entirely by your employer's nominated contacts. The Lone Worker feature is not an emergency service — in an emergency, contact emergency services directly (000 in Australia). These limitations are set out in full in our Terms and Conditions.
Workplace surveillance and your employer's obligations. Lone worker monitoring involves the collection of location information about identifiable workers and may constitute workplace surveillance under laws such as the Workplace Surveillance Act 2005 (NSW) and State and Territory surveillance devices legislation. Your employer, not BiziOps, is responsible for deciding to enable the feature, for giving you any notice required before monitoring begins, for obtaining any required consent, and for maintaining any required surveillance policy. If you have questions about why you are being monitored, how the results are used, or how to opt out, please contact your employer in the first instance.
Your control. A monitored session begins only when you start one (or when your employer's configuration starts one on clock-in), is indicated by a persistent notification while it is running, and ends when the session ends. You can revoke location permission at any time as described in Section 3.1, in which case monitored sessions cannot report your position.
Retention. Monitored session, check-in and alert records — including the location associated with them — are retained as part of your employer's safety records under Section 11, and are then deleted or de-identified.
With your permission, the App uses your device camera to scan QR codes at site checkpoints (images used for scanning are processed on the device and are not stored or transmitted), and to take photographs that you choose to attach to incident reports, audits and checklists. With your permission, the App can also access photos you select from your device library to attach to records or to set your profile picture. The App only accesses the images you select; it does not scan or upload your photo library.
With your permission, the App uses your device microphone so that you can speak to the AI assistant instead of typing. Audio is converted to text using your device's speech recognition service, and the resulting text is processed as a User Input under Section 2.2 and Section 7. Recordings are not retained by the App after transcription.
The App uses your device's NFC reader to read site checkpoint tags. We record the tag identifier, the time of the scan and, where permitted, the scan location, in order to evidence patrols and site attendance.
The App collects device model, operating system version and App version, a push notification token used to deliver alerts and messages to your device, and diagnostic and crash information used to keep the App secure and reliable. Authentication tokens are held in the secure storage provided by your device operating system.
The App is a workplace tool intended for use by employees, contractors and administrators of our business customers. It is not directed to, or intended for use by, children.
App accounts are created and administered by your employer. To request deletion of your account and the personal information associated with it, contact your employer's BiziOps administrator, or email us at privacy@biziops.ai and we will action or refer the request in accordance with Section 11 and Section 14. Some records must be retained where required by workplace health and safety, employment or other applicable laws.
The Australian Privacy Principles classify certain categories of personal information as "sensitive information," which attracts additional protections. This includes health information, biometric data, and information about racial or ethnic origin.
In the course of providing our services, we may collect or process sensitive information including:
We only collect sensitive information where it is reasonably necessary for our functions, and where we have obtained your consent or are otherwise permitted or required by law to do so. We apply enhanced security measures to protect sensitive information.
BiziOps provides services to childcare centres and early learning providers. In this capacity, our platform may process information that relates to children, including:
Our approach to children's data:
We use the information we collect to:
BiziOps uses artificial intelligence and machine learning technologies (our "AI Agent") to deliver our Outcome AI platform capabilities. This section explains how we use these technologies and the safeguards we have in place.
Our AI Agent processes Raw Input Data to generate outputs, which may include:
We operate a closed AI infrastructure. This means:
We may use Raw Input Data that has been anonymised, de-identified, and aggregated to improve outputs from our AI Agent. This data cannot be used to identify any individual.
While our AI systems provide predictions, recommendations, and automated alerts:
You acknowledge that outputs generated by our AI Agent:
You remain solely responsible for decisions or actions taken based on or influenced by any outputs from our AI Agent.
We may incorporate third party AI tools into our AI Agent. Where we do so:
We do not sell your personal information. We may share your information with:
Third-party vendors who assist us in operating our platform, including cloud hosting providers, payment processors, analytics services, credential verification services, and third party AI tool providers (subject to Section 7.6).
Government agencies and authorised bodies for the purpose of verifying credentials, including the Document Verification Service (DVS) and state-based Working with Children Check authorities.
If you access BiziOps through an enterprise account, your organisation's administrators may have access to your platform usage and related data.
When required by law, regulation, legal process, or governmental request, or to protect the rights, property, or safety of BiziOps, our users, or others.
In connection with a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction.
BiziOps operates in two capacities depending on the context:
We act as the data controller for:
For enterprise clients, we primarily act as a data processor. This means:
If you have questions about how your employer or service provider uses BiziOps to process your information, please contact them directly.
We implement appropriate technical and organisational measures to protect your personal information against unauthorised access, alteration, disclosure, or destruction. These measures include:
We use commercially reasonable endeavours to ensure that Raw Input Data is not corrupted or deleted and that no errors are introduced to Raw Input Data.
While we strive to protect your information, no method of transmission over the internet or electronic storage is completely secure. We cannot guarantee absolute security.
In accordance with the Privacy Act 1988 (Cth), if we experience an eligible data breach that is likely to result in serious harm to any individuals whose information is involved, we will:
We maintain incident response procedures to ensure prompt identification, containment, and notification of data breaches.
We retain personal information for as long as necessary to fulfil the purposes for which it was collected, including to satisfy legal, regulatory, accounting, or reporting requirements. Retention periods vary based on the type of information and applicable obligations.
At any time during your use of our Services, and for 30 days following the expiry or termination of your agreement with us, you may request in writing that we:
Upon written request, we will within 21 days:
When personal information is no longer required, we will securely delete or de-identify it.
Our website uses cookies and similar technologies to enhance your experience, analyse usage patterns, and deliver relevant content.
You can manage cookie preferences through your browser settings. Disabling certain cookies may affect website functionality.
By using our Services, you grant us:
This anonymised data cannot be used to identify any individual and helps us improve our Services for all customers.
Under the Australian Privacy Principles, you have the right to:
To exercise these rights, please contact us using the details in Section 17.
You may opt out of marketing communications at any time by clicking the "unsubscribe" link in our emails or contacting us directly.
BiziOps may transfer personal information to recipients located outside Australia, including to cloud service providers, technology partners, and third party AI tool providers. Where we do so, we take reasonable steps to ensure that overseas recipients handle your information in accordance with the APPs.
We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. We will notify you of material changes by posting the updated policy on our website with a revised "Last Updated" date.
We encourage you to review this Privacy Policy periodically.
If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
For complaints that are not resolved to your satisfaction, you may contact the Office of the Australian Information Commissioner (OAIC) at www.oaic.gov.au.
This Privacy Policy applies to biziops.ai, biziops.co, the BiziOps mobile application for Android and iOS (com.biziops.mobile), and related BiziOps services.