Privacy policy

Insight Collective & Co.
ABN: 92 677 587 594
Effective Date: 1st January 2025

1. Who We Are

Insight Collective & Co. (“we”, “us”, “our”) is a psychology and mental health service provider based in New South Wales, Australia. We are committed to protecting your privacy and upholding your rights in accordance with the Privacy Act 1988 (Cth), the Australian Privacy Principles (APPs), and where applicable, the Health Records and Information Privacy Act 2002 (NSW).

This Privacy Policy explains how we collect, use, store, and disclose your personal information when you engage with our services, including through our website, Zanda practice software, social media, and marketing platforms.

2. How to Contact Us

If you have any questions about this Privacy Policy or how your information is handled, you can contact us at:
Email: hello@insightcollectiveco.com

3. Information We Collect

We collect personal and sensitive information when necessary to provide psychological services and operate our business. This may include:

  • Name, address, phone number, email

  • Date of birth, Medicare details, GP information

  • Mental health history, diagnostic notes, session content

  • Information from intake and consent forms

  • Information from parents/guardians when treating children

  • Payment and billing information (encrypted)

  • Interaction data (e.g., completed forms, appointment booking)

  • Feedback, survey responses, or participation in promotions

  • Marketing preferences and email interactions via Mailchimp

  • Data through third-party advertising such as Google Analytics and Meta Ads

We do not collect cookies or browser analytics directly via our website.

4. How We Collect Information

Information is collected via:

  • Online booking and intake forms

  • Emails and direct messages

  • Therapy sessions and assessments

  • Payment processors (Zeller, Stripe, direct deposit)

  • Newsletter sign-ups and promotional campaigns

  • Zanda (our secure electronic practice management software)

We may also collect information about children under 18 with verified parental or guardian consent.

5. Why We Collect Your Information

We collect personal information to:

  • Provide psychological and counselling services

  • Maintain clinical records and administrative functions

  • Schedule appointments and manage communication

  • Issue invoices, process payments, and comply with legal obligations

  • Respond to enquiries, feedback, or complaints

  • Improve and personalise your experience

  • Send educational or promotional material with your consent

  • Meet our regulatory obligations under AHPRA and relevant state/territory legislation

6. Storage and Security

All personal and clinical records are stored electronically using Zanda, a secure, practice management platform that meets Australian data protection and encryption standards. We also use secure third-party payment gateways (Stripe and Zeller) that comply with PCI DSS (Payment Card Industry Data Security Standards).

Access to your information is restricted to authorised team members and subcontractors who are bound by confidentiality and professional ethical obligations.

7. Use and Disclosure of Your Information

We may disclose your information:

  • To your GP or other professionals with your consent

  • To Medicare or other funding bodies for rebate purposes

  • To relevant authorities if required by law or to prevent serious harm

  • To our subcontractors (e.g., psychologists, admin staff) involved in your care

  • To external providers such as Mailchimp, Stripe, or Zanda for necessary business operations

  • To advertising platforms (Google and Meta) for custom audiences, where you have opted in

We do not sell or rent your personal information under any circumstances.

8. Minors

We provide services to individuals under 18 years of age only with verified parental or guardian consent. All records for minors are treated with the same level of confidentiality and security.

9. Marketing and Communications

You may receive occasional emails about services, workshops, or resources if you’ve opted in via forms or bookings. You can opt out at any time by:

  • Clicking “unsubscribe” at the bottom of any email

  • Emailing us at hello@insightcollectiveco.com

We may also send SMS reminders or marketing (e.g., appointment confirmations, promotions). You may opt out by replying “STOP”.

10. Access and Corrections

You may request access to your records at any time by contacting us in writing. We aim to respond within 30 days. If you believe any information we hold is incorrect, we will update it accordingly.

11. Right to Be Forgotten

You have the right to request deletion of your data. However, we may be legally required to retain some records for 7 years (or until a minor turns 25), in accordance with Australian health legislation.

12. Complaints

If you believe your privacy has been breached or mishandled, you can contact us at hello@insightcollectiveco.com.
If unresolved, you may lodge a formal complaint with the Office of the Australian Information Commissioner (OAIC) via www.oaic.gov.au.

13. Changes to This Policy

We may update this Privacy Policy from time to time. The updated version will be posted to our website with a revised effective date.

Governing Law:
This Privacy Policy is governed by the laws of New South Wales, Australia.