Privacy Policy

Last Updated: December 8, 2024

Introduction

Welcome to Casho ("we," "our," or "us"). We understand the importance of your personal information and are committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website (casho.com.au) and use our application (my.casho.com.au).

By accessing or using Casho's services, you agree to this Privacy Policy. If you disagree with any part of this policy, please do not use our services.

Information We Collect

Personal Information

We collect information that you provide directly to us, including:

  • Name and contact information (email address, phone number)
  • Financial information (income sources, expenses, subscription details)
  • Account credentials (encrypted)
  • User preferences and settings
  • Profile information
  • Communication history with our support team
  • Device and browser information
  • Location data (country and timezone)

Automatically Collected Information

When you use our services, we automatically collect:

  • Log data (IP address, browser type, pages visited, access times)
  • Device information (operating system, unique device identifiers)
  • Usage patterns and preferences
  • Performance and error data
  • Cookies and similar tracking technologies

Financial Data

We collect financial information necessary for the functioning of our service:

  • Transaction details
  • Income source information
  • Expense records
  • Subscription data
  • Merchant information
  • Payment method details (encrypted)
  • Tax-related information

How We Use Your Information

Core Service Functionality

  • Providing and maintaining our financial management services
  • Processing and analyzing your financial data
  • Generating insights and recommendations
  • Managing your account and preferences
  • Facilitating transactions and records
  • Providing customer support

Service Improvement

  • Analyzing usage patterns to improve our services
  • Developing new features and functionality
  • Testing and debugging
  • Conducting research and analysis
  • Optimizing performance and user experience

Communication

  • Sending service updates and notifications
  • Providing technical and customer support
  • Sending marketing communications (with consent)
  • Responding to your inquiries
  • Sending security alerts

Legal and Security

  • Preventing fraud and abuse
  • Ensuring platform security
  • Complying with legal obligations
  • Enforcing our terms of service
  • Protecting our rights and interests

Data Storage and Security

Storage Location

  • Primary data storage in Australia
  • Backup systems in secure, certified data centers
  • Content delivery networks for performance optimization

Security Measures

We implement comprehensive security measures including:

  • End-to-end encryption for sensitive data
  • SSL/TLS encryption for data transmission
  • Regular security audits and penetration testing
  • Access controls and authentication
  • Regular security updates and patches
  • Employee security training
  • Incident response procedures

Data Retention

  • Active account data: Retained while account is active
  • Deleted account data: Removed within 30 days of account deletion
  • Backup data: Retained for 90 days
  • Analytics data: Retained for 12 months
  • Legal compliance data: Retained as required by law

Information Sharing and Disclosure

Third-Party Service Providers

We may share information with trusted service providers for:

  • Cloud hosting and storage
  • Analytics services
  • Customer support systems
  • Payment processing
  • Email delivery
  • Security services

All service providers are contractually obligated to protect your information and use it only for specified purposes.

Legal Requirements

We may disclose information if required by law:

  • In response to legal requests
  • To protect our rights and property
  • To prevent fraud or abuse
  • To comply with court orders
  • To protect user safety

Business Transfers

If Casho is involved in a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction. We will notify you of any change in ownership or uses of your information.

Your Rights and Choices

Access and Control

You have the right to:

  • Access your personal information
  • Correct inaccurate data
  • Request data deletion
  • Export your data
  • Opt-out of marketing communications
  • Manage cookie preferences
  • Close your account

Data Export and Deletion

  • You can export your data in standard formats
  • Account deletion will remove personal information within 30 days
  • Some information may be retained for legal compliance

Cookie Policy

Types of Cookies We Use

  • Essential cookies: Required for basic functionality
  • Functional cookies: Remember your preferences
  • Analytics cookies: Help us understand usage
  • Performance cookies: Optimize service delivery

Cookie Management

  • You can manage cookie preferences through your browser
  • Essential cookies cannot be disabled
  • Opting out may impact functionality

Children's Privacy

Our services are not intended for children under 13. We do not knowingly collect information from children. Parents can request deletion of children's information.

International Data Transfers

Data may be processed in multiple countries. We ensure appropriate safeguards for international transfers. We comply with international data protection laws.

Changes to This Policy

We may update this policy periodically. Significant changes will be notified via email. Continued use after changes implies acceptance.

Contact Information

For privacy-related inquiries:

Compliance

Legal Framework

We comply with:

  • Privacy Act 1988 (Cth)
  • Australian Privacy Principles (APPs)
  • General Data Protection Regulation (GDPR)
  • Other applicable privacy laws

Data Breach Notification

We maintain a data breach response plan. Affected users will be notified of breaches. Relevant authorities will be informed as required.

Additional Rights for Australian Users

Under Australian privacy law, you have the right to:

  • Request access to your personal information
  • Correct inaccurate personal information
  • Make a privacy complaint
  • Opt-out of direct marketing
  • Be informed about overseas disclosure

Governing Law

This Privacy Policy is governed by Australian law. Any disputes shall be subject to the exclusive jurisdiction of Australian courts.

Definitions

  • "Personal Information": Information that identifies or can identify an individual
  • "Financial Data": Information related to financial transactions and records
  • "Cookies": Small data files stored on your device
  • "Service Providers": Third-party companies assisting our operations
  • "User": Any person accessing or using our services

Acknowledgment

By using Casho's services, you acknowledge that you have read and understood this Privacy Policy and agree to its terms.