What Data we Collect and How we Store It
AnthropTech is committed to providing quality services to you and this policy outlines our ongoing obligations to you in respect of how we manage your Personal Information. This page is provided to detail what exactly we need to collect and have access to when you use our service.
Please also see our Privacy Policy
Our Cloud Management Tools
1. Information We Collect and Store
We collect information required to provide, manage, and secure our cloud services. This includes:
- Individual Identifiers: Name, email address, phone number, provided during account setup or support interactions.
- Device Users: Where the user of a device is different to the account holder we will need a username per person so it can be associated with unique profiles.
- Payment Information: Your payment details as entered by you in our online payment system (typically name, credit card and email address)
- System Identifiers: IP addresses, MAC addresses, device names, and unique user IDs (e.g., AD GUIDs).
- Location: Device location can be recorded and provided in reporting to the account holder only as part of some profiles.
- Software and Patching: Core to the service is managing, blocking, installing and ensure the latest patches are applied.
- Operational Data: Audit logs, session recordings, and configuration details required for IT troubleshooting and security monitoring.
- Sensitive Information: We generally do not require or get provided with sensitive information (e.g., health records, biometric data) for our services. If provided it is removed from our systems as part of our ongoing review of security and privacy.
We do not collect or store:
- Files on your Device: Documents, pictures or any other file or folder is never accessed or able to be viewed unless accessed via a remote support session that requires your explicit approval to begin and your supervision while in process.
- Emails: We don’t access, scan or filter emails.
- Web Traffic: While our service is able to block sites and utilises filtering services, there is no tracking of website visits or data exchanges for your web browsing, bookmarks etc.
- Application Data: We do not access, scan or filter application data.
2. Data Residency and Cross-Border Disclosure (APP 8)
We utilise services that operate in dedicated Australian Data Centres (located in Melbourne and Sydney) to ensure data residency for our AU customers.
- Local Hosting: Your primary data and backups are stored within Australia to comply with local privacy expectations.
- International Access: Limited access may be granted to global support teams (e.g., in India or the US) strictly for technical support or maintenance, governed by standard contractual clauses that mirror APP protections.
3. Use and Disclosure of Information (APP 6)
We use the data collected for:
- Service Delivery: Providing the functional capabilities of the cloud apps you subscribe to.
- Communication: Sending security alerts, product updates, and responding to support tickets.
- Security & Auditing: Monitoring for unauthorized activity and maintaining a clear audit trail of system changes.
Note: AnthropTech does not sell or disclose any personal information or the data of our clients to third parties for any purpose beyond those listed above (services, communication and security).
5. Data Security (APP 11)
We implement robust technical and organizational measures to protect data from misuse, interference, and loss:
- Encryption: Data is encrypted at rest using AES-256 and in transit via TLS 1.2/1.3.
- Access Control: We apply the Principle of Least Privilege (PoLP). Access to production environments is strictly controlled and audited.
- Data Masking: Features within our cloud suite allow administrators to mask or anonymize PII in reports and dashboards.
6. Access and Correction (APP 12 & 13)
Individuals have the right to access the personal information we hold about them.
- If your data is being managed by us, please contact support@anthroptech.com. We will assist with your request.
7. Retention and Deletion
We retain personal information only for as long as necessary to fulfill the purposes outlined in this policy or as required by Australian law.
Purging PII: Administrators use built-in privacy settings to purge specific PII.
Account Termination: Upon termination of a subscription, data is typically deleted or anonymized after a standard retention period (usually 30–60 days).