Sf
Synerflo Pty Ltd
Legal

Privacy policy.

This policy explains what personal information Synerflo collects, why we collect it, where it is stored and what you can do about it. It applies to our website and to every app in the Synerflo suite.

Last updated: 5 August 2026 · SYNERFLO PTY LTD · ABN 99 104 567 133

1. Who we are

SYNERFLO PTY LTD (ABN 99 104 567 133, ACN 104 567 133) is an Australian private company based in Western Australia. We build and operate the Synerflo suite of business software — InSpec, InSpecPDF, DropPin, Workflow, Program and the free Subby worker app — together with the Synerflo ID sign-in service and this website.

In this policy, “we”, “us” and “our” mean Synerflo Pty Ltd. “You” means anyone whose personal information we handle, including account holders, people who use our apps through an organisation, and visitors to this website.

We handle personal information in accordance with the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs).

2. Our role: customer and controller

Most information in our apps is entered by a business customer that subscribes to Synerflo. Where an organisation invites you to use Synerflo, that organisation decides what records it keeps about you and how it uses them; we hold and process that information on its behalf under our agreement with it. We handle your information directly — as the responsible entity — for your Synerflo ID account, your dealings with us, our billing, and this website.

If you use Synerflo through your employer, a builder, a client or another organisation and you want a record changed or removed, contact that organisation first. You can always contact us as well and we will help.

3. What information we collect

Account details

Your name, email address, phone number, the organisation you belong to, your role or permissions, and the settings and preferences attached to your Synerflo ID.

Records you or your organisation enter

The business records created in the apps — companies, contacts, sites and locations, jobs, tasks, inspections, checklists, pins and issues, notes, schedules and reports. These may contain personal information about your staff, your customers or your subcontractors, because you chose to put it there.

Files you upload

Photos, drawings, plans, PDFs, certificates, tickets, licences, inductions and other documents you or your organisation upload. Uploaded files are stored in Azure Blob Storage; our databases hold only a reference to the file, never the file contents.

Device location

We collect a device location only when a user deliberately performs an action that needs it — capturing a site photo, or checking in to a site. The location is attached to that photo or check-in so the record can be tied to the right place on the right job. We do not track location in the background, and we do not build movement profiles. You can refuse or withdraw the location permission in your device settings; those features will then work without a location.

Technical and server logs

Standard server logs recorded when you use our services: IP address, date and time, the pages or endpoints requested, browser or app version, and error diagnostics. We use these to keep the service running, to investigate faults and to detect abuse.

4. How we collect it

  • Directly from you — when you create an account, use the apps, upload a file, email us or fill in a form.
  • From an organisation you work with — when a customer invites you to their account or records your details as a worker, contact or subcontractor.
  • Automatically — from your device or browser when you use the apps or this website, as described under technical and server logs above.

5. Why we use it

  • To provide, operate and support the apps and the Synerflo ID sign-in service.
  • To authenticate you and control what you can see and do.
  • To keep records connected — for example, linking a photo to the site it was taken at.
  • To respond to your questions and provide customer support.
  • To administer subscriptions, billing and account communications.
  • To keep the platform secure, prevent misuse and diagnose faults.
  • To improve our products and plan new features.
  • To meet our legal and regulatory obligations.

We do not sell personal information. We do not use your data or your uploaded files to sell you third-party advertising.

6. Where your data is stored

Customer data is hosted in Microsoft Azure, Australia region. Uploaded files are held in Azure Blob Storage; structured records are held in managed Azure databases. Data is encrypted in transit using industry-standard TLS.

Sign-in is handled by our shared Synerflo ID identity service. Passwords are never stored in plain text.

7. Who we share it with

We share personal information only where it is necessary:

  • With your organisation — other authorised users of the account you belong to can see the records you contribute, according to the permissions your organisation sets.
  • With our service providers (sub-processors)Microsoft Azure for hosting and storage, and Microsoft 365 for our email. These are the only third parties that host or process customer data on our behalf.
  • Where the law requires it — to comply with a law, court order, subpoena or lawful request from a regulator or law-enforcement body, or to protect the safety, rights or property of a person.
  • In a business transfer — if our business or assets are sold or restructured, information may pass to the acquirer, subject to this policy.

8. Overseas disclosure

We host customer data in Australia and we do not routinely disclose it overseas. Our service providers are global organisations and, in limited cases — for example, technical support escalated within Microsoft — their personnel outside Australia may access systems that hold your information. Where that happens we rely on the contractual protections in our agreements with those providers.

9. How long we keep it

We keep personal information for as long as the relevant account is active, and for a reasonable period afterwards so that records can be restored, disputes resolved and legal or tax obligations met. After that, or earlier on request, the data is deleted.

If you or your organisation ask us to delete an account and its data, email brett@synerflo.com. We will confirm the request, action it, and remove the data from our live systems. Copies held in backups are removed as those backups expire.

10. Security

We take reasonable steps to protect personal information from misuse, interference, loss and unauthorised access, modification or disclosure. Those steps include encrypted connections, hashed credentials, role-based access controls inside the apps, restricted administrative access, and hosting on Microsoft Azure’s managed infrastructure.

No system is perfectly secure. If a data breach occurs that is likely to result in serious harm, we will respond in line with the Notifiable Data Breaches scheme under the Privacy Act, including notifying affected individuals and the Office of the Australian Information Commissioner (OAIC) where required.

11. Cookies and this website

Our apps use cookies and similar browser storage that are strictly necessary to sign you in and keep your session and display preferences. This marketing website does not run advertising or cross-site tracking cookies.

This website loads typefaces and some photography from third-party content delivery networks. Those providers receive your IP address as part of serving those files. You can block them at the browser level; the site will still work.

12. Access, correction and choice

You can ask us for access to the personal information we hold about you, and ask us to correct it if it is wrong, out of date or incomplete. Email brett@synerflo.com. We will verify your identity, respond within a reasonable time, and tell you in writing if we cannot give you access or make a correction and why.

Much of your information can be viewed and edited directly in the apps. Where the information sits inside an organisation’s account, we may need to refer your request to that organisation.

13. Complaints

If you believe we have mishandled your personal information or breached the Australian Privacy Principles, email brett@synerflo.com with the details. We will acknowledge your complaint, investigate it and respond to you.

If you are not satisfied with our response, you can complain to the Office of the Australian Information Commissioner (OAIC) at oaic.gov.au.

14. Children

The Synerflo apps are business tools intended for use by adults in a workplace. They are not directed at children, and we do not knowingly collect personal information from a child. If you believe a child has provided us with personal information, contact us and we will delete it.

15. Changes to this policy

We may update this policy as our services change or our legal obligations change. The current version is always published at synerflo.com/privacy.html with the “last updated” date at the top. If a change materially affects how we handle your personal information, we will take reasonable steps to notify account holders.

16. Contact us

SYNERFLO PTY LTD
ABN 99 104 567 133 · ACN 104 567 133
Western Australia, Australia
Email: brett@synerflo.com


Last updated: 5 August 2026. See also our Terms of Service.