Humanico Data Privacy Policy

Effective Date: 27.05.2025

1. Introduction

Humanico (“we,” “us,” “our”) is committed to protecting the privacy and security of your personal information. This Privacy Policy describes how we collect, use, disclose, store, and protect your information when you use our platform, website, and related services (the “Service”).
By accessing or using our Service, you agree to the terms outlined here. If you do not agree, please do not use the Service.

2. Information We Collect

We collect personal information as reasonably necessary for our business functions and activities:

2.1 Information You Provide

  • Name, contact details (including email address and phone number)

  • Date of birth, occupation, citizenship, and residency/visa status

  • Employment history, current employer, qualifications, skills, and abilities

  • Work preferences, aspirations, and core values

  • Feedback, communications, and engagement with our platform

  • Any additional information you provide via forms, surveys, or support requests

2.2 Information We Collect Automatically

  • Device data (IP address, device type, browser, OS, access times)

  • Usage data (log data, feature use, navigation paths, access logs)

  • Cookies and similar technologies for authentication, analytics, and personalisation

2.3 Information from Third Parties

  • Integrations with your employer or third-party applications (e.g., SSO, HRIS, communication tools)

  • Data from public sources or external databases as permitted by law

3. How We Use Your Information

We may use your personal information to:

  • Provide, operate, and improve our Service

  • Personalise your experience and deliver tailored content

  • Facilitate collaboration within your organisation

  • Communicate with you regarding updates, features, and support

  • Conduct analytics and monitor usage for security, research, and product development

  • Comply with legal obligations and resolve disputes

  • Detect and prevent security incidents and misuse of the Service

4. How We Share Your Information

We do not sell your personal information. We may share it with:

  • Your manager or development lead: For professional development and team insights

  • Other authorised users in your organisation: Where required for collaboration, visibility, or administration

  • Yourself: So you can view, update, or correct your information

  • Service providers: Who help us with hosting, analytics, customer support, or security (under strict confidentiality agreements)

  • Regulatory and legal authorities: As required by law or to enforce our rights

  • Prospective buyers: In the event of a merger, acquisition, or asset sale (with notice to you)

5. Data Security and Storage

We take security seriously and implement industry best practices to protect your data, including:

  • Encryption: All data is encrypted in transit (TLS/SSL) and at rest

  • Access controls: Strict role-based access and multi-factor authentication for privileged accounts

  • Security audits: Regular internal and third-party security reviews, penetration testing, and vulnerability assessments

  • Cloud infrastructure: Data is stored in secure, industry-leading cloud providers (e.g., AWS, Azure) in regions selected for compliance

  • Monitoring: 24/7 monitoring for suspicious activity and incident response protocols

  • Staff training: All staff receive ongoing security and privacy training

6. Data Retention

We retain personal information only as long as required for its intended purpose, for legal and contractual obligations, or as required by law. When no longer needed, we securely delete or anonymise personal data in accordance with our data retention policy.

7. Your Rights

Depending on your location, you may have rights to:

  • Access, update, or correct your personal information

  • Request deletion or anonymisation of your data (subject to legal and contractual requirements)

  • Withdraw consent for specific uses

  • Restrict or object to certain data processing

  • Request a copy of your data (data portability, where applicable)

  • Lodge a complaint with a supervisory authority (see below)

To exercise these rights, contact us at hello@humanico.co. We may need to verify your identity before processing certain requests.

8. Cookies and Tracking Technologies

We use cookies and similar technologies to enhance your experience, enable core functionality, and for analytics.
You may control or disable cookies in your browser settings, but some features may not function as intended.

9. Notifiable Data Breaches

In the event of a data breach that is likely to result in serious harm, we will notify affected individuals and the Office of the Australian Information Commissioner (OAIC) in accordance with the Notifiable Data Breaches (NDB) scheme and other relevant data protection laws.

10. Cross-Border Data Transfers and International Users

Your personal data may be processed and stored in countries outside your own, including Australia, the United States, the European Union, and other locations where our service providers operate.
If you are located in the European Economic Area (EEA) or UK:
We comply with the General Data Protection Regulation (GDPR) and ensure your data receives an adequate level of protection (e.g., via Standard Contractual Clauses, adequacy decisions, or other approved mechanisms).

11. Updates to This Privacy Policy

We may update this Privacy Policy from time to time. Any changes will be posted on this page, with an updated “Effective Date.” Your continued use of the Service after changes are posted constitutes your acceptance of those changes.

12. Contact Us

If you have any questions or concerns about this Privacy Policy or our data practices, please contact:

Humanico Pty Ltd
Email: hello@humanico.co
Address: Tower 1, Level 27, International Towers, Barangaroo, NSW 2000, Australia

13. Complaints

If you believe we have breached the Australian Privacy Principles or other relevant data protection laws:

  • Please contact us first so we can address your concerns

  • If you are not satisfied, you may lodge a complaint with the OAIC (https://www.oaic.gov.au) or your local data protection authority