Privacy Policy

Last updated: 14 May 2026

This Privacy Policy explains how FocusGP, ABN 36 366 236 945, operating FocusGP (“we”, “us”) collects, uses, stores, and discloses personal information. We are bound by the Australian Privacy Principles (APPs) under the Privacy Act 1988 (Cth).

1. What we collect

We collect the following personal information:

  • Account information: your email address, name (optional), and password (stored as a hash, not in plain text).
  • Payment information: when you purchase access, payment is processed by Stripe. We receive a confirmation and a customer reference; we do not receive or store your card number, expiry, or CVC.
  • Usage data: practice question attempts, answers, scores, time spent, and which questions you have viewed. This is used to power your performance dashboard and to improve the question bank.
  • Technical data: IP address, browser type, device type, and pages visited. This is collected via standard server logs and analytics.
  • Communications: emails you send us, including feedback and support requests.

2. How we collect it

Most information is collected directly from you when you create an account, purchase access, attempt questions, or contact us. Technical data is collected automatically when you use the Service.

3. Why we collect it

We use your personal information to:

  • provide and operate the Service, including your account, performance tracking, and support;
  • process payments and manage access;
  • send transactional emails (account confirmation, receipts, password resets);
  • send service updates and, with your consent, occasional product news (you can unsubscribe at any time);
  • improve the Service, including identifying and correcting errors in question content;
  • comply with legal obligations.

We do not sell your personal information.

4. Where it’s stored

Your personal information is stored using Supabase, our database and authentication provider. Payment data is held by Stripe under their own privacy policy. Both providers maintain industry-standard security controls.

Some data may therefore be stored or processed outside Australia. By using the Service you consent to this cross-border storage. We take reasonable steps to ensure overseas recipients handle your information consistently with the APPs.

5. Who we share it with

We share personal information only with:

  • service providers who help us operate the Service (Stripe for payments, Supabase for hosting and authentication, Resend for transactional email);
  • law enforcement or regulatory bodies where required by law.

We do not share your information with marketing third parties.

6. Cookies

We use essential cookies to keep you logged in and to remember your preferences. We may also use analytics cookies to understand how the Service is used in aggregate. You can disable cookies in your browser, but parts of the Service will not work without them.

7. Your rights

Under the APPs you have the right to:

  • access the personal information we hold about you;
  • ask us to correct information that is inaccurate or out of date;
  • ask us to delete your account and associated personal information (subject to any legal record-keeping obligations);
  • complain about how we have handled your information.

To exercise any of these rights, email support@focusgp.com.au. We will respond within 30 days.

If you are not satisfied with our response, you may complain to the Office of the Australian Information Commissioner at www.oaic.gov.au.

8. Data retention

We retain account and usage data for as long as your account is active and for 12 months after closure, after which it is deleted or anonymised. Transactional records (invoices, payments) are kept for 7 years to comply with ATO requirements.

9. Security

We use HTTPS for all traffic, hash passwords, and restrict internal access to personal information. No system is perfectly secure; we will notify you in accordance with the Notifiable Data Breaches scheme if your data is materially affected by a breach.

10. Children

The Service is not intended for users under 18. We do not knowingly collect personal information from children.

11. Changes to this policy

We may update this Policy from time to time. The “last updated” date at the top reflects the most recent change. Material changes will be notified by email.

12. Contact

Privacy queries: support@focusgp.com.au