我们收集什么数据、为什么收集、保存多久、你能怎么管。Australian Privacy Principles 2014 全文遵守。What we collect, why, how long we keep it, and what you can do about it. Fully compliant with the Australian Privacy Principles 2014.
为了帮你拿到贷款,我们需要采集以下几类信息:To arrange your loan, we collect the following:
我们不收集种族、宗教、政治倾向、医疗记录等敏感信息——除非银行特定产品要求(极少)且你明确同意。We do not collect sensitive information (race, religion, political views, health) unless a specific lender product requires it (rare) and you explicitly consent.
所有收集都有明确目的:Every piece of data has a defined purpose:
所有客户数据存在 <strong>AWS Sydney</strong> 区域(澳洲本地)的加密数据库——AES-256 静态加密,TLS 1.3 传输加密。访问受 MFA 双因素认证保护,所有访问行为审计。Data sits in <strong>AWS Sydney</strong> (Australian soil) encrypted databases — AES-256 at rest, TLS 1.3 in transit. Access requires MFA; every access logged and audited.
| 数据类型Data type | 保留期Retention | 法定依据Basis |
|---|---|---|
| 贷款合同 / 申请Loan contracts/applications | 7 年years | NCCP s.88 |
| 身份验证(KYC)Identity (KYC) | 7 年years | AML/CTF s.107 |
| 通信记录Correspondence | 5 年years | ASIC RG 209 |
| 未签约的咨询Unsigned enquiries | 2 年years | 自定义Internal policy |
保留期满后,所有数据通过 NIST SP 800-88 标准擦除——不可恢复。After retention period, data is wiped per NIST SP 800-88 — non-recoverable.
按照澳洲隐私法,你有以下权利,全部免费:Under Australian privacy law, you have these rights — all free:
申请方式:发邮件到 <a href='mailto:info@ftfinance.com.au'>info@ftfinance.com.au</a>,附身份验证。我们 30 天内处理(OAIC 法定时限)。To exercise: email <a href='mailto:info@ftfinance.com.au'>info@ftfinance.com.au</a> with ID verification. We respond within 30 days (OAIC statutory limit).
如果发生可能影响你的数据泄露,我们会按 <strong>Notifiable Data Breaches Scheme</strong> 在 <strong>72 小时内</strong>同时通知你和 OAIC(澳洲信息专员办公室)。If a breach likely to harm you occurs, we notify you AND the OAIC within <strong>72 hours</strong> under the <strong>Notifiable Data Breaches Scheme</strong>.
过去 36 个月零数据泄露事件——年度审计报告(SOC 2 Type II)公开在合规中心。Zero breaches in last 36 months — annual SOC 2 Type II audit published in our compliance portal.
任何隐私相关问题、请求或投诉,联系我们的隐私官(Privacy Officer):For any privacy questions, requests, or complaints, contact our Privacy Officer:
不满意我们的处理,可以投诉到 <strong>OAIC</strong>(Office of the Australian Information Commissioner):<a href='https://www.oaic.gov.au'>oaic.gov.au</a> · 1300 363 992。Not satisfied? Escalate to <strong>OAIC</strong> (Office of the Australian Information Commissioner): <a href='https://www.oaic.gov.au'>oaic.gov.au</a> · 1300 363 992.
法律 / 合规相关问题,请联系我们的合规负责人。For legal or compliance questions, contact our compliance officer.