Privacy Policy
Last updated: 28 June 2026
1. Who We Are
SynapseHR Pty Ltd ("SynapseHR", "we", "us") operates synapsehr.com.au. We are subject to the Australian Privacy Act 1988 and the Australian Privacy Principles (APPs). This Policy explains how we collect, use, disclose, and protect personal information.
2. Information We Collect
We collect information you provide directly: account registration details (name, email, company name), billing information (processed securely by Stripe — we never see your full card number), job listings you post, and candidate data uploaded to your account. We also collect usage data such as log files, IP addresses, and feature interactions to improve the product.
3. Candidate Data
When candidates apply for roles through your SynapseHR job page, their personal information (name, email, phone, resume) is stored in your account. You are the data controller for this information. SynapseHR processes it only on your instructions as a data processor. You are responsible for obtaining any consents required by applicable law before collecting candidate data.
4. How We Use Information
We use your information to: provide and improve the Service; process payments; send transactional emails (interview confirmations, application receipts); respond to support requests; and send product updates (you may opt out at any time).
5. Data Sharing
We do not sell your personal information. We share data only with trusted sub-processors that help us operate the Service: Supabase (database hosting, USA), Stripe (payments, USA), and Resend (transactional email, USA). All sub-processors are bound by data processing agreements and are required to maintain appropriate security.
6. Security
We implement industry-standard security measures including encryption in transit (TLS), encryption at rest, and row-level security so each account can only access its own data. However, no transmission over the internet is 100% secure.
7. Data Retention
We retain your account data for as long as your account is active, plus 90 days after cancellation to allow for reactivation. After that period data is deleted. You may request earlier deletion by contacting us.
8. Your Rights
Under Australian privacy law you have the right to access, correct, or request deletion of your personal information. To exercise these rights, email privacy@synapsehr.com.au. We will respond within 30 days.
9. Cookies
We use essential cookies to maintain your login session. We do not use advertising or tracking cookies. You may disable cookies in your browser settings, but this will prevent you from logging in.
10. International Transfers
Some sub-processors are located in the United States. By using SynapseHR you consent to the transfer of your data to the USA, where privacy laws may differ from Australia. We ensure appropriate safeguards are in place.
11. Changes to This Policy
We may update this Policy from time to time. We will notify you by email at least 14 days before material changes take effect.
12. Contact Us
Privacy enquiries: privacy@synapsehr.com.au. General: hello@synapsehr.com.au.