Privacy & Data Security Statement

Effective Date: 23-May-2025
Last Updated: 20-July-2025

At ComplyIQ360, we are committed to protecting your data privacy and maintaining robust data security standards. This statement outlines how we collect, process, store, and protect your data when you use our services, including the handling of files submitted for compliance checking and analysis.


📂What Data We Collect

We do not access or store any personal or sensitive information beyond what is submitted explicitly via file uploads or user inputs. We recommend not loading any personal information into the app unless it is strictly required for your own compliance objectives.


🔐How We Protect Your Data


🤖Third-Party AI Processing (OpenAI, Google Gemini & Anthropic Claude)

To check and validate files against compliance standards we may (depending on the selected workflow) transmit the raw file content (or faithful textual representations thereof) to the paid APIs of OpenAI, Google Gemini and Anthropic Claude for inference. Interactions with these generative AI platforms are transient: we do not persist full prompt/response transcripts beyond what is necessary to assemble and present your compliance result.

If a provider’s legal obligations (e.g., litigation preservation orders) temporarily extend their retention timelines, those changes do not alter our own deletion schedule for data we control.


🌍Data Location

Persistent storage: All customer-uploaded files and generated compliance outputs are stored exclusively in AWS Sydney (ap-southeast-2).
Transient processing: Raw file content provided for AI inference may be processed temporarily by OpenAI, Gemini and Anthropic systems in other regions strictly for model inference, abuse detection, and required logging; it is not persisted by us outside Australia.


⏱️Retention & Deletion


📜Your Rights and Choices

You may request:

Please contact chris.thompson@fcthree.com.au for any privacy-related concerns or to exercise your rights.