Privacy Policy - Attera
Effective date: 3/05/2026
Business name: Attera
Website: attera.au
ABN: 13 203 167 857
Contact: paul@attera.au
1. Overview
This Privacy Policy explains how Attera collects, uses, and handles your personal information.Attera is a small Australian business. While we may not be legally required to comply with the Privacy Act 1988 (Cth) due to our size, we aim to operate in line with the Australian Privacy Principles (APPs).We keep things simple: we only collect what we need to deliver the product, and we don’t sell or trade your information.
2. What information we collect
Account information
Email address (used for login and communication)
Intake information (provided by you)
Your first name
The older person’s first name and approximate age
State and general locality
Living situation and current services
Assessment status (e.g. ACAT)
Family decision-making context
High-level financial situation (e.g. own home / renting)
Perceived urgency
What we do NOT collect
Surnames
Full street addresses
Medicare numbers
Bank or credit card details
Detailed medical records
3. How we collect information
We collect information:Directly from you via our website formsWhen you create an account or make a purchaseThrough basic website functionality (e.g. login sessions)
4. How we use your information
We use your information to:
Create and deliver your orientation document
Allow you to access your accountProcess payments (via Stripe)
Provide updates or support
Improve the clarity and usefulness of the productWe do not use your information for profiling, advertising resale, or unrelated marketing.
5. Who we share information with
We only share information with service providers necessary to run the business:
Supabase – database hosting (Australia, Sydney region)
Stripe – payment processing (card details handled directly by Stripe)
Resend – email delivery
Anthropic (Claude API) – used to generate your orientation document
When we send information to Anthropic, it is used solely to generate your document. According to their published policy, API data is not used to train their models.
We do not sell or rent your personal information.
6. Where your data is stored
Primary storage:
Supabase (Postgres database)
Region: ap-southeast-2 (Sydney, Australia)
Some service providers may process data outside Australia as part of their infrastructure, but only for the purposes described above.
7. Data retention
We retain your data:
For at least 90 days (to provide your access period)
After that, for a reasonable period for record-keeping, support, and service improvement
You can request deletion at any time (see Section 10).
8. Cookies and tracking
We use minimal cookies:
Session cookies for login and authentication
Basic functionality cookies
We do not use aggressive tracking or behavioural advertising tools.
9. Security
We take reasonable steps to protect your information, including:
Secure hostingControlled access to systems
Avoiding collection of sensitive identifiers
No system is completely secure, but we aim to minimise risk by limiting what we collect.
10. Your rights
You can:
Request access to your personal information
Request correction of inaccurate information
Request deletion of your data
To do so, contact: paul@attera.au
We will respond within a reasonable timeframe.
11. Complaints
If you have a concern about how your information is handled, contact us first.
If unresolved, you may contact the Office of the Australian Information Commissioner (OAIC).
12. Changes to this policy
We may update this policy occasionally. Updates will be published on this page with a revised effective date.
13. Governing law
This policy is governed by the laws of Australia.