Privacy Policy
Wealthra Pty Ltd is committed to protecting your privacy in accordance with Australian law and the Consumer Data Right framework.
Effective Date: 17 January 2026 | Last Updated: 20 January 2026
Wealthra Pty Ltd (ACN 693 425 393, "we", "us", or "our") operates a website and personal financial management application ("the Service") that assists users in managing their finances. We are committed to protecting your privacy and handling your personal information in accordance with Australian laws, including the Privacy Act 1988 (Cth) and the Australian Privacy Principles (APPs), as well as the Consumer Data Right (CDR) framework where applicable.
This Privacy Policy explains how we collect, use, disclose, store, and protect your personal information, including any CDR data (such as banking information) obtained under Australia's open banking regime. We are an Accredited Data Recipient (ADR) under the CDR framework.
By using our Service, you consent to the practices described in this Policy.
1. What Personal Information Do We Collect?
We collect personal information that is reasonably necessary for our functions and activities. Types of information we may collect include:
- Identification and Contact Details: Name, date of birth, address, email, phone number.
- Financial and Banking Information: Account details, balances, transaction history, payment details, income, expenses, and credit information. This may include CDR data such as product details, account information, and transaction data.
- Device and Usage Data: IP address, browser type, device identifiers, location data (if enabled), and interaction data.
- Other Information: Preferences, feedback, or information you provide voluntarily.
We do not collect sensitive information (e.g., health data, racial origin) unless it is necessary and you consent, or as permitted by law.
2. How Do We Collect Your Personal Information?
We collect information:
- Directly from You: When you register, use the Service, provide consent for data sharing, or contact us.
- Via Open Banking (CDR): With your explicit consent, we collect CDR data from your accredited data holder (e.g., bank) through secure APIs.
- From Third Parties: Such as credit reporting bodies (with your consent), service providers, or publicly available sources.
- Automatically: Through cookies, analytics tools, or device tracking. You can manage cookie preferences via your browser settings.
3. Purposes for Which We Use Your Information
We use and disclose your personal information only for the primary purposes for which it was collected, or for related secondary purposes you would reasonably expect, or with your consent, or as required/permitted by law.
Primary purposes include providing and improving the Service (e.g., budgeting tools, financial insights), managing your account and responding to queries, and using CDR data to deliver personalised financial management features.
We will not use CDR data for direct marketing unless you explicitly consent. We will not sell your data.
4. Consent Under CDR (Open Banking)
If you choose to share CDR data:
- We will seek your explicit, informed, voluntary, and time-limited consent.
- The consent process will clearly state: what data is shared, how it will be used, who will access it, and the duration (up to 12 months).
- You can view, amend, or withdraw consents at any time via our dashboard.
- Withdrawal will stop further collection/use, but we may retain data as required by law.
5. Storage and Security
We take reasonable steps to protect your information from misuse, interference, loss, unauthorised access, modification, or disclosure.
- Storage: Data is stored on secure servers in Australia.
- Security Measures: Encryption (AES-256 for data at rest/transit), access controls, firewalls, regular audits, and staff training.
- Retention: We retain information only as long as necessary or as required by law (e.g., 7 years for financial records).
- Data Breaches: If a data breach occurs that is likely to cause serious harm, we will notify you and the OAIC.
6. Access, Correction and Complaints
You have the right to access and correct your personal information we hold. Requests can be made via the contact details below. We will respond within 30 days.
If you believe we have breached your privacy or the CDR Rules, please contact us first at info@wealthra.io. If unsatisfied, you can complain to:
- OAIC: www.oaic.gov.au or 1300 363 992
- ACCC (CDR matters): www.accc.gov.au
7. Changes to This Policy
We may update this Policy to reflect changes in our practices or laws. Changes will be posted on our website with the updated effective date. Continued use of the Service constitutes acceptance.
For questions or requests: info@wealthra.io
For CDR-specific enquiries, visit our CDR dashboard in the app or contact us as above.