Privacy Policy

Last update: 13 Apr 2025
Effective: 13 Apr 2025

1. Introduction
At Listen Health Pty Ltd (“Listen Health”, “we”, “our”, or “us”), your privacy is our priority. This Privacy Policy outlines how we collect, store, use and disclose your personal and health information when you access our digital health platform and related services (the “Services”).

We are committed to complying with the Privacy Act 1988 (Cth), including the Australian Privacy Principles (APPs).

2. Who This Policy Applies To
This Privacy Policy applies to all users of our Services in Australia. Users must be 18 years or older to create an account or use Listen Health.

3. What Personal Information We Collect
We may collect the following types of information:

A. Identifiable Information
- Full name
- Email address
- Phone number
- Date of birth
- Residential address
- Device or account login credentials
- IP address and geolocation data (general)

B. Sensitive Information
- Pathology test results and lab data
- Self-reported health concerns
- Uploaded medical records
- Health data from wearables (if linked)

C. Financial Information
- Payment information (processed via Stripe)

D. Usage and Device Data
- Pages visited, time spent on site, and clickstream data
- Browser, device, and OS information (if analytics tools are used)

4. How We Collect Information
We may collect information from:
- Forms submitted via our website or app
- Purchases or pathology test bookings
- Partner pathology labs (with your consent)
- Optional self-report forms and questionnaires
- Device usage (cookies, pixels, or analytics tools)
- Communication with our support team

5. Why We Collect and Use Your Information
We collect and use your information to:
- Verify your identity and set up your account
- Provide access to biomarker testing and test results
- Communicate health insights, explanations, and recommendations
- Facilitate payments and service delivery
- Enhance our platform, user experience, and services
- Meet legal and regulatory obligations (e.g. medical data retention)
- We do not use your sensitive health information for direct marketing purposes.

6. Where and How Your Data Is Stored
Your data is stored in:
- Secure internal systems managed by Listen Health, and
- Third-party Australian pathology providers (e.g. Clinipath, ACL, Healius) under strict data access protocols.

We implement industry-standard encryption and access controls to protect your information.

7. Disclosure of Your Information
We may share your information with:
- Pathology partners for biomarker testing
- Payment processors, such as Stripe
- Healthcare professionals you nominate to receive results
- Third-party technology providers (e.g. cloud storage, support services)
- Legal or regulatory authorities, where required by law
- We do not sell your personal information or health data.

8. Cookies and Analytics
Our website may use cookies and similar technologies to:
- Analyse site performance
- Understand user behaviour
- Enhance the functionality and security of the platform

You can manage cookies through your browser settings. In the future, we may use tools like Google Analytics or Meta Pixel to better understand how users engage with our Services. Any third-party tracking will be compliant with privacy regulations and user consent preferences.

9. Overseas Disclosure
While most data is stored in Australia, we may use overseas third-party service providers (e.g. for payment processing or secure cloud infrastructure). In such cases, we ensure these services comply with APP 8 by implementing appropriate contractual and technical safeguards.

10. Access, Correction, and Deletion
You may:
- Request access to your personal dataAsk for corrections if your data is inaccurate
- Request deletion of your account (where permitted by law)

Email [Insert privacy@listenhealth.com.au] to make a request. We’ll verify your identity before proceeding.

11. Data Retention
We retain your personal information:
- For as long as your account is active
- For legal and medical compliance purposes (e.g. pathology retention requirements)
- For internal analytics and product improvement (de-identified where applicable)

We regularly review and securely destroy data when no longer needed.

12. Children's Privacy
Our Services are not available to users under 18 years of age. We do not knowingly collect information from minors. If we become aware of such collection, we will delete the data promptly.

13. Changes to This Policy
We may update this Privacy Policy from time to time. Changes will be communicated via email or posted on our website with an updated effective date. Continued use of the Services constitutes acceptance of any changes.

14. Contact Us
For any questions, complaints, or privacy requests, please contact:
Email: privacy@listenhealth.com.au
Website:
www.listenhealth.com.au
You may also contact the Office of the Australian Information Commissioner (OAIC) if you are unsatisfied with our response:
https://www.oaic.gov.au/