Privacy Policy
Last updated: 16 April 2026
1. Overview
BizMentor ("we", "us", "our") is committed to protecting your privacy. This policy explains how we collect, use, store, and protect your personal information in accordance with the Australian Privacy Act 1988 and the Australian Privacy Principles (APPs).
2. Information We Collect
Account information
- Email address and full name (at registration)
- Industry, state, and business details (during consultation setup)
Consultation and document data
- Business context you provide (industry, team size, years in business, specific concerns)
- Chat messages exchanged during AI consultations
- Documents you upload for review (contracts, policies, financial documents)
- AI-generated reports, improved documents, and process flow diagrams
Payment information
- Payment processing is handled entirely by Stripe. We do not store your credit card details. We retain transaction records (amount, date, status) for accounting purposes.
Technical information
- Browser type, device information, and IP address (collected automatically via server logs)
- Usage analytics via Google Analytics 4 (if configured)
3. How We Use Your Information
- To provide AI consultations, document reviews, and process flow diagrams
- To generate personalised reports and improved documents
- To process payments and send transaction confirmations
- To communicate service updates and important notices
- To improve our AI service quality (only with your explicit opt-in consent — see section 5)
4. AI Processing
Your consultation messages and uploaded documents are processed by xAI's Grok AI models to generate advice and improved documents. Under our enterprise agreement with xAI, your data is not used to train their AI models.
AI-generated content is general information only and should not be treated as professional advice. See our Terms of Service for full details.
5. Anonymised Knowledge Base (Opt-in)
You may choose to allow us to anonymise your consultation data and include it in our knowledge base to improve answers for other business owners. This is entirely optional and controlled via your Account Settings.
If you opt in, your data is processed through our anonymisation pipeline which removes all personally identifiable information including names, ABNs, phone numbers, email addresses, physical addresses, and bank details before inclusion. You can opt out at any time.
6. Data Storage and Security
- Your data is stored in Supabase (hosted database) with Row Level Security (RLS) enabled — only you can access your own consultation and document data
- All data is encrypted in transit (TLS) and at rest
- Uploaded documents are stored in private storage buckets accessible only by you and our server
- Administrative access is restricted to authorised personnel only
7. Data Sharing
We do not sell your personal information. We share data only with:
- Stripe — for payment processing
- xAI — for AI processing of your consultations and documents (not used for model training)
- Amazon SES — for sending transactional emails (payment confirmations, report notifications)
- Supabase — for data storage and authentication
We may disclose information if required by Australian law or a valid court order.
8. Cookies and Analytics
We use essential cookies for authentication and session management. If analytics tracking is enabled (Google Analytics, Meta Pixel), these services may set their own cookies. You can manage cookie preferences through your browser settings.
9. Your Rights
Under Australian privacy law, you have the right to:
- Access the personal information we hold about you
- Request correction of inaccurate information
- Delete your account and all associated data (via Account Settings or by contacting us)
- Opt out of the anonymised knowledge base at any time
- Lodge a complaint with the Office of the Australian Information Commissioner (OAIC)
10. Data Retention
Your consultation data, documents, and reports are retained for as long as your account is active. When you delete your account, all associated data is permanently removed. Payment records may be retained for up to 7 years to comply with Australian tax record-keeping requirements.
11. Children
BizMentor is designed for business owners and is not intended for use by individuals under 18 years of age.
12. Changes to This Policy
We may update this policy from time to time. Material changes will be communicated via the platform. The "Last updated" date at the top indicates the most recent revision.
13. Contact
For privacy inquiries or to exercise your rights, reach us via our contact form.