Privacy Policy
Effective Date: October 20, 2025
Last Updated: October 20, 2025
1. INTRODUCTION
Tatra Training (“we,” “us,” “our,” or “Company”) is committed to protecting your privacy and personal information. This Privacy Policy applies to all services provided by Tatra Training, including our website (www.grey-lion-885470.hostingersite.com), online courses, in-house training services, newsletters, and mobile communications.
This policy complies with the Australian Privacy Principles under the Privacy Act 1988 (Cth) as amended by the Privacy Legislation Amendment Act 2024, and the New Zealand Privacy Act 2020. It also addresses SMS marketing compliance requirements under Australian Communications and Media Authority (ACMA) regulations.
2. INFORMATION WE COLLECT
2.1 Personal Information
We collect personal information that is necessary for our business functions, including:
- Contact Information: Name, email address, phone number, mailing address
- Professional Information: Job title, organisation, professional registration numbers, CPD requirements
- Account Information: Username, password, course preferences, learning progress
- Payment Information: Credit card details, billing address, transaction history
- Technical Information: IP address, browser type, device information, cookies data
- Communication Records: Email correspondence, customer service interactions, feedback
- Marketing Preferences: Newsletter subscriptions, training interests, communication preferences
2.2 Sensitive Information
We may collect sensitive information only with your explicit consent, including:
- Professional membership details
- Health practitioner registration information
- CPD compliance requirements
2.3 SMS and Mobile Marketing Information
When you opt-in to our SMS services, we collect:
- Mobile phone number
- Consent records and timestamps
- SMS delivery and engagement data
- Location data (only if explicitly consented for location-based services)
3. HOW WE COLLECT INFORMATION
3.1 Direct Collection
- Website registration and course enrollment
- Newsletter subscriptions and marketing opt-ins
- Contact forms and customer service interactions
- SMS opt-in through website forms
- In-person training registrations
- Corporate training inquiries
3.2 Automated Collection
- Website cookies and tracking technologies
- Course completion tracking and learning analytics
- Email engagement metrics
- SMS delivery confirmations and responses
3.3 Third-Party Sources
- Professional registration verification (with consent)
- Payment processing partners
- Learning management system integrations
- Social media platforms (with explicit consent)
4. PURPOSE OF COLLECTION AND USE
We collect and use personal information for the following purposes:
4.1 Primary Purposes
- Providing online courses and training services
- Processing course enrollments and payments
- Delivering certificates and CPD records
- Customer support and technical assistance
- Account management and authentication
4.2 Secondary Purposes (with consent)
- Marketing and promotional communications
- Newsletter distribution
- SMS marketing and course reminders
- Market research and feedback collection
- Website analytics and improvement
- Personalised course recommendations
4.3 SMS Marketing Specific Uses
- Course enrollment confirmations
- Training reminders and updates
- Promotional offers and new course announcements
- Abandoned cart recovery messages
- Certification deadline reminders
5. SMS MARKETING COMPLIANCE
5.1 Consent Requirements
- Express Consent: We obtain clear, explicit consent before sending marketing SMS
- Opt-in Records: We maintain records of consent including date, time, and method
- Double Opt-in: For marketing messages, we may require confirmation of subscription
5.2 SMS Best Practices
- Clear Identification: All SMS messages identify Tatra Training as the sender
- Frequency Disclosure: We inform subscribers of expected message frequency
- Easy Unsubscribe: Every SMS includes simple opt-out instructions (Reply STOP)
- Immediate Processing: Opt-out requests are processed immediately
- Message Timing: SMS sent only during reasonable hours (8 AM – 8 PM local time)
5.3 SMS Abandoned Cart Recovery
- Sent only to users who provided phone numbers during checkout
- Limited to 3 messages within 30 days
- Clear opt-out instructions included
- Does not include personal checkout details via SMS
5.4 Location-Based Services
- Location data collected only with explicit consent
- Used solely for relevant training location notifications
- Can be disabled at any time through account settings
- Not shared with third parties for marketing purposes
6. DISCLOSURE OF INFORMATION
6.1 Third-Party Service Providers
We may share your information with trusted service providers, including:
- Payment Processors: For secure transaction processing
- Email Service Providers: For newsletter and course communications
- SMS Gateway Providers: For mobile messaging services
- Learning Management Systems: For course delivery and tracking
- Cloud Storage Providers: For secure data storage
- Analytics Providers: For website performance analysis
6.2 Third-Party Data Sharing Protections
- All third-party providers must comply with Australian and New Zealand privacy laws
- Data processing agreements include privacy and security requirements
- We conduct due diligence on all service providers
- Data sharing is limited to the minimum necessary for service provision
- We regularly review and audit third-party compliance
6.3 Legal Disclosures
We may disclose information when required by law or to:
- Comply with legal obligations or court orders
- Protect our rights, property, or safety
- Investigate suspected fraud or illegal activities
- Respond to government or regulatory requests
6.4 Business Transfers
In the event of a merger, acquisition, or sale, personal information may be transferred as part of business assets, subject to privacy law requirements.
7. INTERNATIONAL TRANSFERS
7.1 Cross-Border Transfers
Some of our service providers may be located outside Australia and New Zealand. When we transfer personal information internationally, we ensure:
- Adequate privacy protections are in place
- Compliance with Australian Privacy Principles and New Zealand IPPs
- Contractual safeguards with overseas providers
- Your rights remain protected
7.2 Countries of Transfer
Personal information may be transferred to providers in:
- United States (cloud storage, email services and payment processing)
- Other countries with adequate privacy protections
8. DATA SECURITY AND RETENTION
8.1 Security Measures
We implement comprehensive security measures including:
- Technical Measures: Encryption, multi-factor authentication, secure servers, regular security updates
- Organisational Measures: Access controls, employee training, privacy policies, incident response procedures
- Physical Security: Secure facilities, restricted access, environmental controls
8.2 Data Retention
- Course Records: Retained for 7 years for CPD compliance purposes
- Payment Information: Retained per legal requirements (typically 7 years)
- Marketing Data: Retained until consent is withdrawn or account closure
- SMS Data: Opt-in records retained for compliance verification
- Technical Data: Server logs retained for 12 months for security purposes
8.3 Data Breach Response
In the event of a data breach that may cause serious harm:
- We will notify the relevant privacy commissioner within 72 hours
- Affected individuals will be notified without unreasonable delay
- We will take immediate steps to contain and investigate the breach
- Remedial actions will be implemented to prevent future breaches
9. YOUR PRIVACY RIGHTS
9.1 Access and Correction
You have the right to:
- Request access to your personal information
- Request correction of inaccurate or incomplete information
- Receive information about how your data is used
- Obtain a copy of your personal information
9.2 Consent Withdrawal
You can withdraw consent at any time for:
- Marketing communications (email and SMS)
- Non-essential data collection
- Third-party data sharing
- Location tracking services
9.3 SMS Specific Rights
- Opt-out: Reply STOP to any SMS to unsubscribe immediately
- Opt-in Verification: Request confirmation of your SMS consent
- Frequency Changes: Request modification of message frequency
- Data Deletion: Request deletion of SMS marketing data
9.4 Complaints Process
If you have privacy concerns:
- Contact our Privacy Officer directly
- We will investigate and respond within 30 days
- If unsatisfied, you may contact:
- Australia: Office of the Australian Information Commissioner (OAIC)
- New Zealand: Office of the Privacy Commissioner
- If unsatisfied, you may contact:
10. COOKIES AND TRACKING TECHNOLOGIES
10.1 Cookie Usage
We use cookies to:
- Maintain user sessions and login status
- Remember course progress and preferences
- Provide personalised content recommendations
- Analyse website performance and user behavior
- Enable social media integration features
10.2 Cookie Management
You can control cookies through:
- Browser settings to block or delete cookies
- Our cookie preference center on the website
- Opt-out tools for advertising cookies
- Third-party opt-out mechanisms
11. SOCIAL MEDIA AND EXTERNAL LINKS
Our website may contain links to social media platforms and external websites. This privacy policy does not apply to third-party sites. We encourage you to review the privacy policies of any external sites you visit.
12. CHILDREN’S PRIVACY
Our services are designed for adult mental health professionals. We do not knowingly collect personal information from individuals under 18 years without parental consent.
13. UPDATES TO THIS POLICY
We may update this privacy policy to reflect:
- Changes in privacy laws or regulations
- New services or features
- Feedback from privacy authorities
- Business practice improvements
We will notify you of material changes through:
- Email notification to registered users
- Prominent notice on our website
- SMS notification (for opted-in users)
14. CONTACT INFORMATION
Privacy Officer:
Email: privacy@tatratraining.com
Phone: 1300 792 029
Mail: Tatra Training Privacy Officer,
14 Jacksonia Place Noosaville QLD 4566
General Inquiries
Email: info@tatratraining.com
Phone: 1300 792 029
SMS Opt-out: Reply STOP to any SMS message or email sms-optout@tatratraining.com
15. REGULATORY AUTHORITY CONTACTS
Australia
Office of the Australian Information Commissioner (OAIC)
Website: oaic.gov.au
Phone: 1300 363 992
Email: enquiries@oaic.gov.au
New Zealand
Office of the Privacy Commissioner
Website: privacy.org.nz
Phone: 0800 803 909
Email: enquiries@privacy.org.nz
This Privacy Policy demonstrates our commitment to protecting your personal information and complying with applicable privacy laws in Australia and New Zealand. If you have any questions or concerns about this policy or our privacy practices, please don’t hesitate to contact us.