Legal

Privacy Policy

Last updated: 23 March 2026  ·  Effective: 23 March 2026

🇬🇧 UK GDPR Compliant🇦🇺 Australian Privacy Act 1988EU GDPR Compliant

GP2Aus operates from two offices — United Kingdom and Australia. This Privacy Policy applies to both entities and governs how we handle personal data across all GP2Aus services, tools, and communications.

1. Introduction

GP2Aus ("we", "our", "us") operates the gp2aus.com website and related services from offices in the United Kingdom and Australia. This Privacy Policy explains how we collect, use, disclose, and safeguard your personal information when you visit our website, use our tools, or interact with our services. We are committed to protecting the privacy of medical professionals exploring relocation to Australia.

2. Information We Collect

We collect information in the following ways:

  • Account information: name, email address, phone number, country of medical qualification, professional registration details, and practice preferences.
  • Tool usage data: inputs you provide to tools such as the cost calculator, registration checker, or document checklist.
  • Communications: messages you send through our contact form, email, or WhatsApp.
  • Technical data: IP address, browser type, device information, pages visited, and usage patterns collected automatically via cookies and analytics.
  • Newsletter subscriptions: email address and subscription preferences.

3. How We Use Your Information

  • Providing and improving our platform and tools
  • Delivering personalised content and job recommendations
  • Sending registration pathway updates and platform news (with your consent)
  • Responding to your enquiries from our UK or AU office
  • Processing payments for premium services
  • Analysing aggregated, anonymised data to improve the platform
  • Complying with legal obligations in the UK and Australia

4. Data Sharing

We do not sell your personal information. We may share your data with:

  • Recruitment partners and practices: only when you explicitly opt in to job matching or submit an enquiry about a specific role.
  • Service providers: payment processors, email delivery (Resend), database hosting (Supabase), and analytics — all contractually bound to protect your data.
  • Regulatory authorities: when required by law in the UK or Australia.

5. Data Storage & Security

Your data is stored on secure servers with industry-standard encryption in transit (TLS) and at rest. We use Supabase (hosted on AWS) for database storage with row-level security policies. We implement appropriate technical and organisational measures to protect your personal information against unauthorised access, alteration, disclosure, or destruction. While we use commercially acceptable security measures, no internet transmission is 100% secure.

6. Cookies

We use essential cookies for session management and security, and analytics cookies to understand how visitors use the site. You can control cookie preferences through your browser settings, though disabling essential cookies may affect website functionality. We do not use advertising or cross-site tracking cookies.

7. Third-Party Services

Our website links to external sites including AHPRA, the Department of Home Affairs, and other medical bodies. We are not responsible for the privacy practices of these sites. We use Resend for email delivery, Supabase for data storage, and Vercel for hosting — each with their own privacy policies.

8. Your Rights

You have the right to:

  • Access the personal information we hold about you
  • Correct inaccurate or incomplete data
  • Delete your account and associated data
  • Port your data in a machine-readable format
  • Withdraw consent for marketing communications at any time
  • Object to processing in certain circumstances

To exercise any right, email hello@gp2aus.com. We will respond within 30 days.

9. GDPR & UK GDPR

We operate under two privacy frameworks:

🇬🇧 UK GDPR

Our UK office complies with the UK General Data Protection Regulation. You may lodge complaints with the Information Commissioner's Office (ICO) at ico.org.uk.

🇦🇺 Australian Privacy Act

Our Australian office complies with the Privacy Act 1988 (Cth) and the Australian Privacy Principles. Complaints can be made to the OAIC at oaic.gov.au.

10. Data Retention

We retain your personal information while your account is active or as needed to provide services. Closed accounts are deleted or anonymised within 90 days, unless retention is required by law. Anonymised aggregated data may be retained indefinitely for analytics.

11. Changes to This Policy

We may update this Privacy Policy to reflect changes in our practices or legal requirements. Material changes will be communicated by email and by updating the "Last updated" date. Continued use after changes constitutes acceptance of the revised policy.

12. Contact Us

For privacy enquiries, data requests, or complaints:

🇬🇧 UK Office

uk@gp2aus.com

+44 20 0000 0000

🇦🇺 Australian Office

au@gp2aus.com

+61 3 0000 0000

Or email hello@gp2aus.com for any privacy matters.