Legal
Privacy Policy
Effective 8 September 2026
1. Scope
This Privacy Policy explains how Get Renting Pty Ltd (ABN 35 690 434 603), the operator of GetRenting, collects, uses, discloses, protects and retains personal information when providing its website, owner workspace and related services. It applies to owners, authorised account users, tenants and other people whose information is entered into the Service.
2. Information we collect
Depending on the features used, we may collect:
- owner account details, contact details and authentication records;
- property, tenancy and tenant contact information;
- tenancy records, communications, maintenance items, reminders and audit events;
- repair descriptions, photos, videos, PDF quotes or invoices, repair options, access availability and messages submitted by renters, owners or authorised GetRenting support staff;
- documents and structured facts you choose to save;
- payment authority status, billing events and masked account references;
- limited rent-match evidence produced by an authorised banking data connection; and
- device, security, usage and support information needed to operate and protect the Service.
We collect information from the account holder, authorised users, people who communicate with the Service, and service providers acting on an authorised request.
3. Document processing
Where supported, initial document extraction occurs in the owner's browser. Raw source PDFs, images and the full extracted text are not uploaded or stored by GetRenting during that local extraction. The owner reviews the result and chooses which structured facts to save.
Water bills processed by our server workflow are an exception to browser-only extraction. We retain the encrypted bill and reviewed billing data for owner review, tenant usage calculations and supporting records.
Repair photos, videos, PDF attachments, repair options and messages are uploaded and retained with the repair record. Shared repair conversations are accessible to the linked renters, the owner and authorised GetRenting support staff. Notes and repair options marked “Owner and GetRenting only” are not shown to renters. Owners can download the repair record and attachments; renters can download the parts shared with them. Repair records are kept while needed to handle the repair and maintain relevant tenancy records, subject to the retention and deletion arrangements below.
Routine inspection records include visit arrangements, room observations, photos and completed report versions. They are retained for the owner to review and download. The owner decides whether to share an exported report. Creating a repair follow-up copies the selected room’s observations and photos to that repair, where authorised GetRenting support staff can help. Inspection photos are prepared in the browser before upload and encrypted before storage. Inspection drafts also use encrypted local storage, with the same seven-day expiry and logout clearing as repair drafts. Uploaded photos and completed reports remain available under the account’s record-access and deletion arrangements.
Unsent repair drafts and selected files are saved in this browser using encrypted local storage. Drafts expire after seven days and are removed when you next use repair drafts. Logging out clears that account’s local drafts. Browser storage settings or device limits can prevent saving. If you choose to reduce a video’s file size, that processing happens in your browser. Files are uploaded in parts to allow interrupted transfers to resume, and encrypted before storage; unfinished transfers expire after 24 hours and are removed by scheduled cleanup.
If we introduce another document-processing method, we will identify what is uploaded, where it is processed and how long it is retained before the owner uses that feature.
4. Banking data and rent matching
Bank connections are optional. When you use OpenFeed, Biza Pty Ltd operates the accredited Consumer Data Right (CDR) service. You create an OpenFeed account and authorise it to collect data from your bank, then separately choose to share account data with GetRenting. OpenFeed and your bank manage that consent and its renewal.
Data disclosed to GetRenting is handled under the Privacy Act 1988 and this policy. That copy is outside the CDR system and is not covered by the CDR Privacy Safeguards. GetRenting does not claim CDR accreditation. GetRenting does not ask for or receive online banking passwords. This read-only connection cannot move money.
We use account details to let you choose the account receiving rent, then request short transaction periods for that account to match rent. Ongoing checks cover no more than seven calendar days. Raw transaction data is processed transiently and is not stored as a bank statement or reusable transaction feed. We retain the minimum evidence needed for the tenancy record, such as the result of a match, date, amount, property or tenancy reference, rule version and a keyed transaction fingerprint used to prevent duplicate matches.
Disconnecting in Settings stops GetRenting’s future checks, cancels queued work and removes its saved connection credentials. To end your sharing arrangement or bank consent with OpenFeed, use OpenFeed or your bank’s consent controls. Ending a connection does not automatically delete confirmed entries in your ledger.
Connection handles and selected account identifiers are encrypted. Temporary authorisation details expire after ten minutes. Provider access tokens and raw transaction pages are used in memory for the current request and are not saved to the application database.
5. How we use information
We use personal information to:
- provide and secure the Service;
- create property, tenancy, rent, maintenance and communication records;
- run owner-selected workflows, reminders and document extraction;
- match rent payments and prevent duplicate processing;
- administer billing and payment authorities;
- provide support, investigate incidents and meet legal obligations; and
- improve reliability using de-identified or aggregated information where practical.
We do not sell personal information.
6. When we disclose information
We may disclose only the information reasonably needed to:
- service providers that host, secure, email, process payments or support the Service;
- a bank, banking data provider or payment provider for a connection or authority selected by the owner;
- a recipient selected by the owner, such as a tenant, former agent, trade or adviser;
- government, law enforcement or regulatory bodies where disclosure is required or authorised by law; or
- a successor in a genuine business transaction, subject to appropriate confidentiality and privacy controls.
7. Storage and security
We use access controls, encryption in transit, application-level encryption for designated sensitive tenancy fields, audit logging, least-privilege access, authentication controls and documented backup and incident procedures.
We prefer Australian data hosting and processing for production services. Before a feature uses an overseas provider or stores personal information outside Australia, we will assess the arrangement, update relevant disclosures and take reasonable steps required by applicable privacy law. No online service can guarantee absolute security.
8. Retention and deletion
We retain information only while it is reasonably needed to provide the Service, maintain the owner's required records, resolve a tenancy matter, prevent fraud, meet legal obligations or establish legal claims. Retention periods vary by record type.
Cancelling the paid service and deleting your account are separate actions. Cancellation preserves access to your existing ledger and downloads. Paid workflows and new checks stop when the service ends.
Closed tenancy records may remain available to the owner for ledger, correction, bond, water and dispute purposes. Personal contact details may be restricted or deleted when no longer needed, while some ledger and audit records may be retained where lawfully required. Transient banking data and local document-extraction material are handled as described above.
We review deletion requests for specific legal obligations and active disputes. Any retention hold must have a reason and a review date. Approved deletion covers ordinary account records and retained documents. Backup copies remain access-restricted until expiry; deletion instructions must be reapplied before a backup is restored to service.
9. Owner responsibilities
Owners control much of the tenant and property information in the Service. An owner must have a lawful reason to collect and enter that information, restrict access to authorised people, keep it accurate and use exports and communications appropriately.
10. Access, correction and deletion requests
In Settings you can download your ledger or submit an access, correction or account-deletion request after verifying with your authenticator. For help, contact hello@getrenting.com.au. We verify support requests through the existing account or an agreed identity-check process; knowing an email address or property address alone is not sufficient. We may need to verify your identity and may retain information where lawfully required. Tenant requests involving an owner's tenancy records may need to be handled with that owner as the record controller.
11. Service messages and marketing
We may send operational messages needed for account security, billing and selected workflows. Where we send marketing, you can unsubscribe using the message controls. Unsubscribing from marketing does not stop essential service messages.
12. Cookies and technical data
We may use essential browser storage and cookies for login, security and preferences. If we introduce non-essential analytics or advertising technologies, we will provide the notices and choices required by applicable law.
13. Concerns and complaints
For access, correction, deletion or privacy concerns, contact hello@getrenting.com.au. Please include enough detail for us to investigate. We will acknowledge and respond within a reasonable period. If you are not satisfied, you may contact the Office of the Australian Information Commissioner.
14. Changes to this Policy
We may update this Policy as the Service changes. We will publish the new effective date and give reasonable notice where a change materially affects how existing personal information is handled.