Data Security & Privacy

More information about our system data and security

Bairave Jeyasothy avatar
Written by Bairave Jeyasothy
Updated over a week ago

Thousands of Australians trust Managed with their data, and we take protecting it seriously. This article explains how we handle customer data, protect it's integrity and your privacy.

Privacy Policy

The Managed App privacy policy stipulates how we collect, use, store, and share personally identifiable information. You can find our Privacy Policy here:

Data Storage

All of your data is stored on servers provided to Managed App by Amazon Web Services (AWS). These servers are located in Australia and operated by AWS and Managed App. AWS provides hosting services to Managed App but does not have access to your data.

Billing data

Our application does not store any credit card or billing information. We process payments using ZAI Payments, which is a secure, PCI Level 1 and ISO 27K compliant payments facilitator. 

You can view Zai’s information here:

When a user enters billing information such as Bank account or Credit Card details, this information is processed directly by ZAI where it is tokenized and stored. Managed App only ever uses this token reference to conduct transactions. We never store your payment details in our systems.

Personally Identifiable Information (PII)

Our application does store PII data where we need to do so in order to provide our customers with the Managed App service, and to comply with regulatory obligations. We do so in accordance with our Privacy Policy above.

GDPR and Privacy Act

The European Union General Data Protection Regulation (the GDPR) contains new data protection requirements that will apply from 25 May 2018. GDPR and the Australian Privacy Act 1988 share many common requirements, including:

  • implement a privacy by design approach to compliance

  • be able to demonstrate compliance with privacy principles and obligations

  • adopt transparent information handling practices

There are also some notable differences, including certain rights of individuals which do not have an equivalent right under the Privacy Act. More information on the differences can be found here.

ManagedApp follows best practices described in GDPR legislation and complies with the Australian Privacy Act.

Did this answer your question?