Privacy Policy
Effective Date: 19 August 2026
1. Introduction
RIAFIN ("we," "our," or "us") is committed to protecting the privacy of our clients, website visitors, and business partners. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website or engage our services.
RIAFIN operates as a remote Business Process Outsourcing (BPO) provider, delivering paraplanning and financial planning support services from India to Australian financial advice practices. We understand the sensitivity of financial data and are committed to maintaining the highest standards of data protection.
2. Information We Collect
2.1 Information You Provide
- Contact Information: Name, email address, phone number, and business address when you enquire about or engage our services.
- Business Information: Company name, AFSL number, practice details, and professional qualifications relevant to our engagement.
- Communication Records: Content of emails, messages, and other correspondence between you and our team.
2.2 Information Collected Automatically
- Usage Data: Pages visited, time spent on our website, referring URLs, and browser type.
- Device Information: IP address, operating system, and device identifiers.
- Cookies: We use essential cookies to ensure our website functions correctly. We do not use advertising or tracking cookies.
2.3 Client Data
In the course of providing our services, we may process financial planning data, client files, and other sensitive information on behalf of our clients. This data is processed strictly in accordance with our service agreements and applicable Australian Privacy Principles (APPs).
3. How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve our paraplanning and business support services.
- Communicate with you about our services, respond to enquiries, and provide support.
- Process and manage our business relationship with you.
- Comply with legal obligations and regulatory requirements.
- Protect against fraud, unauthorised access, and other security threats.
- Analyse website usage to improve user experience.
4. Data Security
We take data security seriously and implement robust measures to protect your information:
- Encryption: All data transfers are encrypted using industry-standard SSL/TLS protocols.
- Access Controls: Strict access controls ensure only authorised personnel can access client data.
- VPN/VDI Access: Our team accesses client systems exclusively through secure Virtual Private Network (VPN) or Virtual Desktop Infrastructure (VDI) connections.
- No Local Storage: Client data is not stored on local devices. All work is performed within secure, controlled environments.
- Non-Disclosure Agreements: All team members are bound by comprehensive confidentiality and non-disclosure agreements.
- Security Pathway: We are actively working towards ISO 27001 certification for information security management.
5. Data Sharing & Disclosure
We do not sell, rent, or trade your personal information. We may share information only in the following circumstances:
- With Your Consent: When you have given us explicit permission to share your information.
- Service Delivery: With our trained team members who require access to perform the services you have engaged us for.
- Legal Requirements: When required by law, regulation, or legal process.
- Business Transfers: In connection with a merger, acquisition, or sale of assets, with appropriate protections in place.
6. Australian Privacy Principles
Although RIAFIN operates from India, we are committed to complying with the Australian Privacy Principles (APPs) under the Privacy Act 1988 (Cth) in relation to the personal information of Australian individuals that we handle on behalf of our clients.
Our clients remain the data controllers for any personal information processed through our services. We act as a data processor and handle all information in accordance with our clients' instructions and applicable privacy legislation.
7. Data Retention
We retain personal information only for as long as necessary to fulfil the purposes outlined in this policy, unless a longer retention period is required by law. Client data processed as part of our services is retained in accordance with our service agreements and returned or securely destroyed upon termination of the engagement.
8. Your Rights
You have the right to:
- Access the personal information we hold about you.
- Request correction of inaccurate or incomplete information.
- Request deletion of your personal information, subject to legal retention requirements.
- Withdraw consent for data processing where consent was the basis for processing.
- Lodge a complaint with the Office of the Australian Information Commissioner (OAIC) if you believe your privacy has been breached.
9. Third-Party Links
Our website may contain links to third-party websites. We are not responsible for the privacy practices or content of these external sites. We encourage you to read the privacy policies of any third-party sites you visit.
10. Changes to This Policy
We may update this Privacy Policy from time to time. Any changes will be posted on this page with an updated effective date. We encourage you to review this policy periodically.
11. Contact Us
If you have questions about this Privacy Policy or wish to exercise your privacy rights, please contact us at:
RIAFIN
Email: support@riafin.com