Privacy Policy

Last Updated: 01/04/2025

Verifiabl (“we,” “our,” or “us”) is committed to protecting your privacy. This Privacy Policy describes how we collect, use, and safeguard personal information when providing our encryption and decryption services for payslips and related information (the “Services”). It also outlines your rights and choices regarding your personal information.

1. Scope and Applicability

This Privacy Policy applies to:

  • Our website, including any subdomains or pages (“Site”).
  • The Services we provide to payroll providers and financial institutions.
  • Any other interactions you may have with Verifiabl in connection with the Services.

We comply with all relevant privacy laws and regulations, including Australian and New Zealand laws.

2. Who We Are

Verifiabl does not permanently store any personal information. We only process personal information briefly to perform decryption services and do not retain that data in a personally identifiable form.

For privacy-related inquiries, you can contact us at contact@verifiabl.io or use the contact form on our website.

3. Personal Information We Process

Payslip Information: We process payslip data, which may include names and identifiers, and sensitive information such as Tax File Numbers, earnings, and superannuation details. This data is processed in volatile memory only. The data is automatically purged the moment the decryption result is delivered and is never written to persistent storage.

Logs and Performance Data: We store logs and anonymised information for performance monitoring. We employ automated sanitisation tools to ensure that no personal information enters our logging systems. In the event that personal information is inadvertently captured, it is treated as such and subjected to automated redaction and permanent erasure at the point of discovery. This ensures the personal information is removed from the record while preserving the non-identifiable diagnostic data.

We do not retain or store personal information; once the decryption process is complete, no identifiable information remains in our systems.

4. How We Use Personal Information

We process personal information strictly for the following primary purpose:

  • Service Delivery & Verification: We provide instant verification of payslip information for accredited institutions (such as banks and licensed lenders). This processing is limited to the moment of verification.

We do not use your information for profiling, marketing, or any secondary purposes.

5. Data Sharing and Disclosure

Third Parties: We do not share or disclose personal information to third parties for marketing or any other purposes.

Legal Obligations: We may disclose anonymised or aggregated data if required to comply with legal obligations, enforce agreements, or protect our rights.

6. Cookies and Tracking Technologies

We may from time to time use cookies on our Website. Cookies are very small files which a website uses to identify you when you come back to the site and to store details about your use of the site. Cookies are not malicious programs that access or damage your computer. Most web browsers automatically accept cookies but you can choose to reject cookies by changing your browser settings. However, this may prevent you from taking full advantage of our Website. Our Website may from time to time use cookies to analyse website traffic and help us provide a better visitor experience.

7. Data Retention

Payslip Data: We do not store any payslip data after the encryption or decryption process.

Logs & Anonymised Data: We store anonymised logs and performance data for as long as reasonably necessary to maintain and improve our Services, and to comply with legal or regulatory requirements. Logs never contain personally identifiable information and are typically archived for up to 7 years.

8. International Data Transfers

All data (including anonymised logs) is processed on servers located in Australia and New Zealand. We do not transfer or process data in other regions.

9. Your Rights

Due to our 'zero-storage' architecture, we do not hold personal information after your session ends. If you believe we hold your data, you may submit an access request to contact@verifiabl.io. If no data is found, we will provide a certificate of destruction or a statement confirming no records exist.

10. Data Security

We maintain industry-standard security measures and practices to protect personal information from unauthorised access, alteration, disclosure, or destruction. Our processes ensure that personal information exists in an identifiable state only during the encryption or decryption process.

11. Updates to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or for legal, technical, or regulatory reasons. We encourage you to review this Policy periodically.

12. Contact Us

If you have any questions or concerns about this Privacy Policy or our data practices, please contact us at contact@verifiabl.io.

You may also reach us through the contact form on our website.