Clear boundaries for personal information.
This notice is not launch-ready until the legal operator, jurisdictions, vendors, lawful bases and contacts are confirmed.
Information in this website build
The core app may process account identity and role, security-session metadata, enquiry details, consent choices and audit metadata. It does not presently store Academy learning records, payroll or bank data, compliance evidence, clinical notes, detailed screening results, passport scans or navigation-sensitive information.
Purposes
We use information to respond to requests, provide authorized access, secure the service, administer accounts, preserve accountability and—only with a valid basis—send selected communications. Optional analytics is disabled until configured and permitted by your choice.
Access and sharing
Access is limited by job responsibility and assigned scope. Approved infrastructure and communications providers may process information under contract. Clinical, Academy, screening, payroll, compliance and similar specialist systems require separate selection, notices, retention and governance.
Retention and rights
Proposed retention is 90 days after an enquiry closes and 30 days after a session expires; account, learning, payroll, compliance, consent and audit periods need operator and counsel approval. Depending on location, rights may include access, correction, deletion, portability, restriction, objection, withdrawal and appeal.
Contact and complaints
The operator name, postal address, privacy email, representative/DPO details and relevant regulator routes must be inserted before production. For now, use the contact form without sending sensitive details.
Draft version 0.2 · 1 October 2026.