This is the group-wide privacy policy for Actually Good IT Pty Ltd and every brand it operates. It explains what personal information we collect, why, and how you can access or correct it.
"Actually Good IT," "we," "us" and "our" refer to Actually Good IT Pty Ltd (ABN 71 701 163 608, ACN 701 163 608). Our registered address is Actually Good IT Pty Ltd, Level 1, 63-73 Ann Street, Surry Hills, NSW 2010, Australia.
Actually Good IT Pty Ltd is the single legal entity operating trading under the following brands:
Wherever you deal with one of these brands, you are dealing with Actually Good IT Pty Ltd, and this policy applies. We are committed to handling personal information in accordance with the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs).
This policy covers personal information we collect through any of our brands' websites, in the course of marketing and sales, from job applicants, and from clients and their staff when we manage the commercial relationship (billing, contracts, account contacts, support tickets, etc.).
Managed services and platform data is different. For our managed IT and telco brands (Trustworthy IT, Trustworthy Telco, Trustworthy Solutions, Trustworthy MSP Consulting), we may be incidentally exposed to personal information stored within a client's own systems, networks or data while delivering services — that data belongs to the client and is handled under our services agreement with them, not this policy. For our MSP-facing platforms (Better MSP Club, MSP Central), personal information that subscribers upload about their own end-customers is handled under those platforms' own terms of service and any applicable data processing terms, not this policy. If you are an individual whose information is held within a client's or subscriber's systems, please contact that organisation directly.
The personal information we collect depends on how you interact with us, and may include:
We do not intentionally collect sensitive information (such as health information) unless it is volunteered to us or is strictly necessary and you have consented, or the collection is otherwise permitted by law.
We collect personal information directly from you where practicable — for example, when you fill in a form on one of our websites, email or call us, sign a services agreement, sign up for a platform, or apply for a job. We may also collect information from third parties, such as referral partners, publicly available sources, or software tools we use to deliver services (e.g. remote monitoring and ticketing platforms).
We collect, hold, use and disclose personal information to:
We do not sell personal information. We may disclose it to:
Some of the third-party platforms we use to run our business and deliver services (for example, cloud productivity, security, telephony and IT management tools) may store or process data on servers located outside Australia, including in the United States. Where this occurs, we take reasonable steps to ensure these providers apply data handling practices consistent with the Australian Privacy Principles, including reviewing their security and privacy commitments before engaging them.
We take reasonable steps to keep the personal information we hold accurate, up to date and secure, and to protect it from misuse, interference, loss, and unauthorised access, modification or disclosure. As a group built around cybersecurity and IT operations, we apply the same security discipline to our own systems that we recommend to our clients, including access controls, encryption where appropriate, and staff training.
No method of transmission or storage is 100% secure, and we cannot guarantee absolute security of information transmitted to us.
You may request access to the personal information we hold about you, and ask us to correct it if it is inaccurate, out of date, incomplete, irrelevant or misleading. To make a request, contact us using the details below. We will respond within a reasonable period and may need to verify your identity first. In some circumstances permitted by law, we may decline a request for access or correction, and if so we will explain why.
We have processes in place to identify, contain and assess any data breach. If we experience a data breach that is likely to result in serious harm to affected individuals, we will notify those individuals and the Office of the Australian Information Commissioner (OAIC) in accordance with the Notifiable Data Breaches (NDB) scheme under the Privacy Act.
We may use your contact details to send you information about our brands and services that we think may be of interest. You can opt out of marketing communications at any time by using the unsubscribe link in the communication or by contacting us directly. Opting out of marketing will not affect service-related communications about an active engagement.
Our websites and services are directed at businesses and are not intended for children. We do not knowingly collect personal information from children.
We may update this policy from time to time to reflect changes in our practices or legal obligations. The "last updated" date at the top of this page shows when it was last revised. We encourage you to review this page periodically.
If you believe we have breached the Australian Privacy Principles or mishandled your personal information, please contact us first using the details below so we can investigate and try to resolve the matter. If you are not satisfied with our response, you can lodge a complaint with the Office of the Australian Information Commissioner (OAIC):
For any questions about this policy, or to make an access, correction or complaint request, please contact us:
Actually Good IT Pty Ltd
Email: hello@actuallygoodit.com.au
Address: Actually Good IT Pty Ltd, Level 1, 63-73 Ann Street, Surry Hills, NSW 2010, Australia