Privacy Policy

Last updated: March 15, 2025

At qexiralon, we understand that managing your financial information requires absolute trust. This privacy policy explains how we collect, use, and protect your personal data when you use our budget consolidation services.

We've written this in plain English because privacy shouldn't be complicated. If you have questions after reading this, just reach out to us directly.

Information We Collect

When you use qexiralon's budget consolidation tools, we collect different types of information to provide you with accurate financial insights and recommendations.

Account Information

Your name, email address, phone number, and account preferences. We also store your login credentials securely using industry-standard encryption.

Financial Data

Transaction history, account balances, and spending patterns from connected financial institutions. This data helps us create your consolidated budget view.

Usage Information

How you interact with our platform, including features used, time spent, and preferences selected. This helps us improve your experience.

Technical Data

Device information, IP address, browser type, and operating system. We use this for security monitoring and platform optimization.

How We Collect Information

  • Directly from you when you create an account or use our services
  • From your connected financial institutions through secure API connections
  • Automatically through your use of our platform and mobile application
  • From third-party services that help us verify your identity and prevent fraud

How We Use Your Information

We use your information solely to provide and improve our budget consolidation services. Here's exactly what we do with your data:

Primary Service Functions

  • Consolidate transactions from multiple accounts into unified budget views
  • Categorize spending and identify patterns in your financial behavior
  • Generate personalized insights and budget recommendations
  • Send account notifications and budget alerts you've requested
  • Provide customer support and respond to your inquiries

Platform Improvement

  • Analyze aggregated, anonymized usage data to enhance our features
  • Conduct research to develop new budget management tools
  • Test platform performance and identify technical improvements
  • Ensure system security and prevent unauthorized access

Legal and Compliance

  • Comply with Australian financial services regulations and reporting requirements
  • Respond to legal requests from Australian authorities when required by law
  • Protect against fraud and maintain the security of our platform
  • Enforce our terms of service and resolve disputes

Information Sharing and Disclosure

We don't sell your personal information to anyone. Ever. We only share your data in specific, limited circumstances:

Service Providers

We work with trusted third-party companies that help us operate our platform. These include:

  • Cloud hosting providers for secure data storage (AWS Australia)
  • Payment processors for subscription billing
  • Customer support tools to respond to your questions
  • Security services for fraud detection and prevention

All service providers sign strict data protection agreements and can only use your information as we direct them.

Financial Institutions

We connect with banks and financial institutions you authorize to access your account data. These connections use read-only access through secure, encrypted APIs. We never store your banking login credentials.

Legal Requirements

We may disclose information if required by Australian law, court order, or to protect the rights and safety of our users and platform.

Business Transfers

If qexiralon is acquired or merged with another company, your information may be transferred as part of that transaction. You would be notified of any such change in ownership or control.

Your Privacy Rights Under Australian Law

The Australian Privacy Principles give you specific rights regarding your personal information. Here's what you can do:

Access Your Data

Request a copy of all personal information we hold about you. We'll provide this within 30 days at no charge.

Correct Information

Ask us to fix any inaccurate or incomplete personal information in your account.

Delete Your Account

Request deletion of your account and associated data. Some information may be retained for legal compliance.

Data Portability

Export your financial data in a standard format to use with other services.

Restrict Processing

Limit how we use your information while we investigate a concern you've raised.

Lodge Complaints

Contact us directly or file a complaint with the Office of the Australian Information Commissioner (OAIC).

Data Security and Protection

Protecting your financial information is our highest priority. We implement multiple layers of security:

Encryption and Storage

  • All data is encrypted both in transit and at rest using AES-256 encryption
  • Financial data is stored in secure, geographically distributed data centers within Australia
  • We use bank-level security protocols for all data transmissions
  • Access to your information is strictly limited to authorized personnel

Access Controls

  • Two-factor authentication required for all staff accessing user data
  • Regular access reviews and immediate revocation when employees leave
  • Comprehensive audit logs of all data access and modifications
  • Automated monitoring for unusual access patterns or potential breaches

Third-Party Security

  • All service providers undergo rigorous security assessments
  • Regular penetration testing and vulnerability assessments
  • Compliance with ISO 27001 and SOC 2 Type II standards
  • Immediate notification protocols in case of any security incidents

Data Retention and Deletion

We keep your information only as long as necessary to provide our services and comply with legal requirements.

Retention Periods

30d
Account Deactivation

If you deactivate your account, we keep your data for 30 days in case you want to reactivate. After that, deletion begins automatically.

7y
Transaction Records

Financial transaction data is retained for seven years as required by Australian financial services regulations.

3y
Support Communications

Customer support interactions and communications are kept for three years to maintain service quality.

1y
Usage Analytics

Anonymized usage data for platform improvement is retained for one year, then automatically purged.

Data Deletion Process

When we delete your data, we use secure deletion methods that make recovery impossible. This includes:

  • Multiple-pass overwriting of storage media
  • Cryptographic erasure of encrypted data
  • Physical destruction of decommissioned storage devices
  • Verification that all copies and backups are completely removed

International Data Transfers

qexiralon primarily operates within Australia, but some of our service providers may process data internationally. When this happens:

  • We ensure the destination country has adequate privacy protections
  • Service providers must contractually guarantee equivalent protection to Australian standards
  • All international transfers use encrypted connections and secure protocols
  • We regularly audit international partners for compliance with our privacy requirements

Countries where your data may be processed include New Zealand, Singapore, and members of the European Union, all of which have been recognized by the OAIC as providing adequate privacy protection.

Children's Privacy

qexiralon's services are designed for adults and we don't knowingly collect personal information from children under 13 years of age. If we become aware that we've collected information from a child under 13, we'll delete it immediately.

For users between 13 and 18 years old in Australia, we require parental consent before creating an account. Parents can request access to their child's information or ask for its deletion at any time.

Changes to This Privacy Policy

We review and update this privacy policy regularly to reflect changes in our services, technology, or legal requirements. When we make significant changes:

  • We'll notify you via email at least 30 days before changes take effect
  • We'll post a notice on our platform highlighting key changes
  • The updated policy will include a new "last updated" date
  • We'll maintain an archive of previous policy versions for your reference

Minor updates for clarity or legal compliance may be made without advance notice, but we'll always update the "last modified" date.

Contact Us About Privacy

Have questions about this privacy policy or how we handle your information? We're here to help.

Privacy Officer

qexiralon Australia Pty Ltd

7/12 Punch Street, Mosman NSW 2088

Phone: +61 2 6257 2681

Email: contact@qexiralon.com

Privacy inquiries: privacy@qexiralon.com

We respond to all privacy requests within 30 days. For urgent matters, call us directly during business hours (Monday to Friday, 9 AM to 5 PM AEST).