Our Commitment to Privacy

Ecaret Solutions Pty Ltd (ABN-35 163 352 541) operating Centrim Life (“we”, “us”, “our”) is committed to protecting the privacy of individuals whose personal information we handle.

This Privacy Policy outlines how we collect, use, disclose, and protect personal data in accordance with the Privacy Act 1988 (Cth), the Australian Privacy Principles (APPs).

Who This Policy Applies To

This Policy applies to personal information we handle in our role as a provider of digital platforms for the aged care and retirement living sectors, including information related to:

  • Residents and their representatives
  • Staff members of client facilities
  • Family members and visitors
  • Prospective clients and contacts
  • Users of our web portals and mobile applications
  • Website and device users interacting with our software

What Information We Collect

Depending on the service module and your interaction, we may collect:

  • Identity, profile & contact information
  • Location data and IP address (with user consent)
  • Employment data for authorised staff
  • Sensitive information (with consent)
  • Transaction and financial information ( through our third party processor)
  • Booking, activity, and feedback records
  • Device and usage data
  • Marketing and communications data

How We Collect It

We may collect personal information via:

  • Direct provision by you or an authorised representative
  • Automated collection when you use our software
  • Integration with third-party platforms
  • Forms, surveys, support channels
  • Cookies and analytics tools

Why We Collect It

We collect personal information to:

  • Provide and manage access to the Centrim Life platform
  • Support staff and resident engagement and workflow
  • Facilitate service delivery
  • Comply with legal obligations
  • Improve services

Lawful Basis for Processing

Our legal basis for processing includes:

  • Consent
  • Performance of a contract
  • Legal obligations
  • Legitimate interests
  • Improve services

Children and Vulnerable Individuals

We may process information of individuals who are legally represented. Where required, consent is obtained from an authorised representative.

Automated Decision-Making

Centrim Life does not rely on automated decision-making that has a legal or significant impact. Any AI features support—not replace—human decision-making.

Disclosure of Personal Information

We may share personal information with:

  • Affiliated providers
  • Integration partners
  • Sub-processors
  • Regulatory authorities
  • Professional advisors

We do not sell personal information.

Cross-Border Transfers

Cross-border processing is conducted under legal safeguards including Standard Contractual Clauses to ensure adequate protection.

Use of De-Identified and Aggregated Data

We may use de-identified data for analytics, benchmarking, or internal reporting. This data cannot identify individuals.

Data Security

Security measures include:

  • AES-256 and TLS encryption
  • Role-based access
  • Secure coding practices
  • Penetration testing and logging
  • Staff training

Retention and Disposal

We retain data only as necessary or required by law. Upon contract expiry or request, data is returned or securely deleted.

Your Rights

You may:

  • Access or correct your information
  • Withdraw consent
  • Request deletion

Cookies and External Links

Cookies and analytics tools help optimise performance. Our services may include external links not governed by this policy.

Complaints Handling

We aim to resolve complaints within 30 calendar days. Please address all queries and complaints to the privacy officer as mentioned below.

Privacy Officer

Centrim Life

Email: privacy@centrimlife.com.au

Website: www.centrimlife.com.au


This policy is reviewed annually or when significant changes occur. Updates will be published on our portal and notified to clients where appropriate.

Overview

Centrim Life is committed to upholding the highest standards of data governance, ensuring that all personal and operational data entrusted to us is handled lawfully, securely, and transparently. This summary outlines how we manage, protect, and respect your data as a client of our platform.

Data Ownership

All data entered into the Centrim Life platform by our clients, including resident, staff, and operational data, remains the property of the client organisation. We act as a data processor on your behalf.

Data Collection & Purpose

We collect data strictly to:

  • Support operational modules
  • Improve resident engagement, service delivery, and workflow efficiency
  • Ensure compliance with legal, clinical, and sector-specific obligations

Data Security Measures

Centrim Life employs robust, industry-aligned data security practices including:

  • AES-256 encryption for data at rest
  • TLS encryption for data in transit
  • Role-based access controls and multi-factor authentication
  • Secure hosting in Australian ISO 27001-certified data centres

Data Access & Roles

Access to client data is:

  • Strictly limited to authorized personnel within your organization
  • Controlled using user roles and permissions
  • Logged and auditable for compliance and monitoring

Sub-Processors and Integrations

We use approved third-party service providers (e.g., AWS, integration partners) to deliver and support our services. All sub-processors operate under binding agreements.

Data Retention & Disposal

We retain your data only for the duration of the client agreement or as otherwise required by law. Upon termination or written request:

  • Data can be exported in a structured format
  • All client data will be securely deleted or de-identified within 30 days

Privacy & Legal Compliance

Our data governance framework complies with:

  • The Privacy Act 1988 (Cth) and Australian Privacy Principles (APPs)
  • Notifiable Data Breaches (NDB) Scheme
  • UK GDPR, where applicable

Breach Notification

In the event of a data breach likely to cause serious harm, Centrim Life will notify affected clients and the Office of the Australian Information Commissioner (OAIC) within 48 hours of becoming aware.

Your Responsibilities

As the data controller, clients are responsible for:

  • Ensuring data entered into the platform is accurate and current
  • Managing user permissions within their organization
  • Notifying us promptly of any suspected misuse or compromise of their data access

For further information or assistance, please contact:

Privacy Officer

Centrim Life

Email: privacy@centrimlife.com.au

Website: www.centrimlife.com.au