Privacy Policy
Last updated: 20 February 2026
1. Who we are
BIDShielder is a compliance assistant that helps Australian mortgage brokers write Best Interests Duty (BID) advice packs. When we say "we", "us", or "our", we mean the operators of BIDShielder.
2. What data we collect
We collect the following information when you use BIDShielder:
- Account information: your name, email address, and organisation name when you sign up.
- Client file data: the client details, lender options, and loan information you enter into advice packs. This data is stored securely in your account.
- Usage data: how you interact with the service, including generation counts and feature usage, to improve the product.
- Technical data: browser type, IP address, and device information collected automatically.
3. How we use your data
- To provide and maintain the BIDShielder service
- To generate advice pack content on your behalf
- To calculate BID compliance scores
- To send you service-related communications
- To improve and develop new features
4. Content generation processing
When you generate an advice pack, your client file data is sent to a secure third-party service to produce the content. This data is processed in accordance with strict usage policies and is not used to train models. We do not store prompts or responses beyond what is saved in your file versions.
5. Data storage and security
Your data is stored in Supabase-hosted infrastructure with encryption at rest and in transit (TLS 1.2+). Access to your data is restricted by row-level security policies scoped to your organisation. We do not sell, rent, or share your client data with third parties.
6. Data retention
Your data is retained for as long as your account is active. If you delete your account, your data will be permanently removed within 30 days. Exported PDF files stored in our system are retained for 90 days after export.
7. Your rights
Under the Australian Privacy Act 1988, you have the right to:
- Access your personal information
- Request correction of inaccurate data
- Request deletion of your data
- Withdraw consent for data processing
To exercise these rights, contact us at the email below.
8. Cookies
We use essential cookies for authentication and session management. We do not use third-party tracking cookies or advertising cookies.
9. Changes to this policy
We may update this privacy policy from time to time. We will notify you of significant changes by email or through the application.
10. Contact
If you have questions about this privacy policy or your data, please contact us at support@bidshielder.com.